Log in to view charts and search reports for this IP.
Log In
Reports Activity
Example preview
Report Categories (Last 60 Days)
Example preview
Top Reporter Countries (Last 60 Days)
Example preview
Account required for the enhanced features
Log inSign up
IP Abuse Reports for 137.184.2.159
This IP address has been reported a total of
20
times from
15 distinct
sources.
137.184.2.159 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
United States of America
with 7
reports;
Germany
with 3
reports;
Australia
with 2
reports.
The most common categories in these recent reports were:
Port Scan
9
times;
Hacking
2
times;
Brute-Force
2
times;
Web App Attack
1
time;
DDoS Attack
1
time;
Other
3
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Blocked by UFW (TCP on 31337)
Source port: 61008
TTL: 245
Packet length: 44
TOS: 0x00
This report ( ...
show moreBlocked by UFW (TCP on 31337)
Source port: 61008
TTL: 245
Packet length: 44
TOS: 0x00
This report (for 137.184.2.159) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
๐ก๏ธ Honeypot [bsts-tpot-sensor]: Unsolicited SMB connection (dst port 445/tcp, src port 59052) to a p ...
show more๐ก๏ธ Honeypot [bsts-tpot-sensor]: Unsolicited SMB connection (dst port 445/tcp, src port 59052) to a passive honeypot sensor. No legitimate SMB service is exposed here; this traffic is consistent with automated internet-wide scanning or exploitation attempts targeting SMB (e.g. EternalBlue-class vulnerabilities).
show less
Blocked by UFW (TCP on 8443)
Source port: 61003
TTL: 245
Packet length: 44
TOS: 0x00
This report (f ...
show moreBlocked by UFW (TCP on 8443)
Source port: 61003
TTL: 245
Packet length: 44
TOS: 0x00
This report (for 137.184.2.159) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Honeypot hit: HTTP/1.1 request on 5173
GET /
User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKi ...
show moreHoneypot hit: HTTP/1.1 request on 5173
GET /
User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Safari/537.36
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8
Accept-Language: en-US,en;q=0.5
Accept-Encoding: gzip, deflate; 5173 [2] TCP
show less
tcp/7000; Unsolicited SYN to a dark IP that has never hosted any service (darknet, no DNS name) @ 20 ...
show moretcp/7000; Unsolicited SYN to a dark IP that has never hosted any service (darknet, no DNS name) @ 2026-09-17T09:04:10Z
show less
Port Scan
Anonymous
2026-09-17T10:52:55.890555+02:00 gollum postfix/smtps/smtpd[1831270]: lost connection after CONNECT ...
show more2026-09-17T10:52:55.890555+02:00 gollum postfix/smtps/smtpd[1831270]: lost connection after CONNECT from unknown[137.184.2.159]
2026-09-17T10:52:56.216293+02:00 gollum postfix/smtps/smtpd[1831270]: lost connection after CONNECT from unknown[137.184.2.159]
2026-09-17T10:52:56.544994+02:00 gollum postfix/smtps/smtpd[1831270]: lost connection after CONNECT from unknown[137.184.2.159]
...
show less