AbuseIPDB » 138.204.159.187

138.204.159.187
Recent Activity This IP has received recent abuse reports, which causes the score to increase.
29 reports found in our database
38% Elevated
Abuse confidence score ?
ISP
LEVEL SEVEN SRL
Usage Type
Fixed Line ISP
ASN
Domain Name
arlab.com.ar
Country
🇦🇷 Argentina
City
San Miguel de Tucuman, Tucuman

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Top Reporter Countries (Last 60 Days)

Example preview

Report Categories (Last 60 Days)

Example preview

Reports Activity

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 138.204.159.187:

This IP address has been reported a total of 29 times from 19 distinct sources. 138.204.159.187 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: Germany with 4 reports; United States of America with 3 reports; Brazil with 1 report. The most common categories in these recent reports were: Port Scan 7 times; Brute-Force 5 times; SSH 4 times; Hacking 2 times; Web App Attack 1 time; Other 2 times.

Reporter IoA Timestamp (UTC) Comment Categories
🇫🇮 mikkopal88
Telnet probe or brute-force attempt
Port Scan Brute-Force
Anonymous
denied SSH access attempt. destination port 22.
Port Scan Brute-Force SSH
🇩🇪 FD-IX
Fail2Ban: Automated WooCommerce filter abuse from distributed botnet activity.
Bad Web Bot
🇧🇷 noconex
Port Scan Brute-Force SSH
🇺🇸 RAP
2026-08-18 11:03:28 UTC Unauthorized activity to TCP port 22. SSH
SSH
🇰🇷 winter
Connection attemp from 138.204.159.187 to port 22
Brute-Force SSH
🇺🇸 RAP
2026-08-13 05:11:54 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
🇺🇸 RAP
2026-08-13 00:05:49 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
Anonymous
denied traffic to a honeypot network. destination port 22.
Port Scan Hacking
🇩🇪 Vegascosmetics
Hacking Exploited Host Web App Attack
🇫🇷 matthieul.dev
Blocked by os-abuseipdb; 3 hits, proto=udp, ports=57423
Port Scan Brute-Force
🇺🇸 kosada.com
Web bot: denial-of-service flood
DDoS Attack Bad Web Bot
Anonymous
Port scan on port 12995/UDP to unused IP
Port Scan
Anonymous
Automated report (2026-06-26T16:42:24-04:00). Scraper detected.
Bad Web Bot
🇩🇪 SMARTNET
Aisuru(Mirai variant) DDoS | Incident ID: 0a9278f2-ffb8-4472-8b4f-87e634c16433
DDoS Attack

Showing 1 to 15 of 29 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩

Recently Reported IPs:

🇨🇿 176.62.231.59
🇺🇸 162.216.149.212
🇬🇧 35.203.210.134
🇨🇭 34.65.109.148
🇻🇳 222.255.200.20
🇨🇦 139.28.218.28
🇫🇷 77.239.124.213
🇮🇩 69.5.20.133
🇳🇱 45.148.10.151
🇨🇦 34.118.158.44
🇱🇰 220.247.224.226
🇬🇷 195.251.255.69
🇲🇽 186.96.145.241
🇺🇾 186.51.220.150
🇨🇴 181.54.70.40
🇵🇭 138.124.144.53
🇮🇩 103.207.99.32
🇺🇸 68.207.240.157
🇮🇳 66.116.248.86
🇷🇴 2.57.121.112