138.0.189.12

Recent Activity This IP has received recent abuse reports, which causes the score to increase.
Abuse confidence score ?
18% Caution
18 reports
14 reporters ยท latest 2 days ago
ISP WN TELECOM LTDA - ME
Usage Type Fixed Line ISP
ASN AS52838
Hostname(s) 138-0-189-12.dyn.wntelecom.net.br
Domain Name wntelecom.net.br
Country ๐Ÿ‡ง๐Ÿ‡ท Brazil
City Araguari, Minas Gerais

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Reports Activity

Example preview

Report Categories (Last 60 Days)

Example preview

Top Reporter Countries (Last 60 Days)

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 138.0.189.12

This IP address has been reported a total of 18 times from 14 distinct sources. 138.0.189.12 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: Germany with 1 report; France with 1 report; United States of America with 1 report. The most common categories in these recent reports were: Port Scan 3 times; Hacking 1 time; Web App Attack 1 time; Bad Web Bot 1 time; Brute-Force 1 time.

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡บ๐Ÿ‡ธ TPI-Abuse
Brute-Force Bad Web Bot Web App Attack
๐Ÿ‡ซ๐Ÿ‡ท security.rdmc.fr
Port Scan Attack proto:TCP src:8052 dst:23
Port Scan
Anonymous
denied traffic to a honeypot network. destination port 23.
Port Scan Hacking
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/23
Port Scan
๐Ÿ‡ฉ๐Ÿ‡ช genokrad
Unauthorized connection attempt on TCP/23 (Telnet)
Port Scan
๐Ÿ‡น๐Ÿ‡ผ kk_it_man
honey catch
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ RAP
2026-08-05 02:41:09 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ kosada.com
Web bot: denial-of-service flood
DDoS Attack Bad Web Bot
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/23 (2 or more attempts)
Port Scan
๐Ÿ‡จ๐Ÿ‡ญ backslash
block ruleset A5EE6C8F745F0934168261886A3817E5C386412A
Bad Web Bot
๐Ÿ‡ฉ๐Ÿ‡ช SMARTNET
Aisuru(Mirai variant) DDoS
DDoS Attack
๐Ÿ‡ฉ๐Ÿ‡ช SMARTNET
Aisuru(Mirai variant) DDoS
DDoS Attack
Anonymous
scanning http requests from known botnet
Web App Attack
Anonymous
scanning http requests from known botnet
Web App Attack
๐Ÿ‡ช๐Ÿ‡ธ Global Cyber Police
Malicious bot activity detected: Hitting honeypot page (200 OK with 258/259 bytes sent).
Port Scan Brute-Force Web App Attack

Showing 1 to 15 of 18 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡ธ๐Ÿ‡ฌ 139.59.234.78
๐Ÿ‡บ๐Ÿ‡ฆ 213.109.135.82
๐Ÿ‡ง๐Ÿ‡ท 177.92.52.103
๐Ÿ‡ธ๐Ÿ‡ฌ 129.212.239.121
๐Ÿ‡ง๐Ÿ‡ฌ 91.191.209.118
๐Ÿ‡จ๐Ÿ‡ฆ 85.217.149.10
๐Ÿ‡ฏ๐Ÿ‡ต 35.213.70.112
๐Ÿ‡ท๐Ÿ‡ด 2.57.121.112
๐Ÿ‡ฆ๐Ÿ‡ช 217.138.193.106
๐Ÿ‡ฎ๐Ÿ‡ฉ 202.180.8.8
๐Ÿ‡ณ๐Ÿ‡ฑ 193.47.62.69
๐Ÿ‡น๐Ÿ‡ท 188.132.230.188
๐Ÿ‡ฎ๐Ÿ‡ฉ 180.242.78.169
๐Ÿ‡จ๐Ÿ‡ฆ 172.71.120.94
๐Ÿ‡บ๐Ÿ‡ธ 170.205.31.190
๐Ÿ‡บ๐Ÿ‡ธ 104.196.178.138
๐Ÿ‡ฒ๐Ÿ‡ฉ 80.97.124.197
๐Ÿ‡บ๐Ÿ‡ธ 44.220.185.64
๐Ÿ‡บ๐Ÿ‡ธ 43.130.113.45
๐Ÿ‡ฒ๐Ÿ‡ฝ 38.43.88.170