Log in to view charts and search reports for this IP.
Log In
Top Reporter Countries (Last 60 Days)
Example preview
Report Categories (Last 60 Days)
Example preview
Reports Activity
Example preview
Account required for the enhanced features
Log inSign up
IP Abuse Reports for 146.148.16.199:
This IP address has been reported a total of
31
times from
31 distinct
sources.
146.148.16.199 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Germany
with 8
reports;
Poland
with 4
reports;
United States of America
with 4
reports.
The most common categories in these recent reports were:
Brute-Force
17
times;
Port Scan
13
times;
Email Spam
8
times;
Hacking
5
times;
Exploited Host
3
times;
Other
4
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2026-08-26T10:23:00.073769+00:00 jomu postfix/postscreen[1894536]: PREGREET 18 after 0.01 from [146. ...
show more2026-08-26T10:23:00.073769+00:00 jomu postfix/postscreen[1894536]: PREGREET 18 after 0.01 from [146.148.16.199]:63554: EHLO example.com\r\n
2026-08-26T10:23:00.419276+00:00 jomu postfix/postscreen[1894536]: PREGREET 1023 after 0 from [146.148.16.199]:63558: \026\003\001\005\304\001\000\005\300\003\003\307y\275x+\377\237\226a\030\356\373F\035\305\327'}\230\
2026-08-26T10:23:00.443708+00:00 jomu postfix/postscreen[1894536]: PREGREET 59 after 0 from [146.148.16.199]:63568: ;\000\000\000\001\000\000\000\000\000\000\000\324\a\000\000\000\000\000\000admin.$cmd\000\000\000\00
...
show less
Honeypot hit: Brute-force attack detected on 23/TELNET
• Credentials: GET / HTTP/1.1:Host: [SOME-IP] ...
show moreHoneypot hit: Brute-force attack detected on 23/TELNET
• Credentials: GET / HTTP/1.1:Host: [SOME-IP]:23, User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36:Accept-Encoding: gzip, *1:$4, OPTIONS rtsp://example.com RTSP/1.0:Cseq: 2195
• Number of login attempts: 4
• 1 command(s) were executed during the session
Reported by: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
Unwanted traffic detected by honeypot on August 25, 2026: port scans (30 port 23 scans), and brute f ...
show moreUnwanted traffic detected by honeypot on August 25, 2026: port scans (30 port 23 scans), and brute force and hacking attacks (4 over telnet).
show less
Automated scan detection against redacted protected targets. Hits=33; port 23 proto 6 detection hone ...
show moreAutomated scan detection against redacted protected targets. Hits=33; port 23 proto 6 detection honeypot_tcp
show less
2026-08-26T08:03:01.013231+02:00 hsx2 postfix/postscreen[257147]: PREGREET 18 after 0.01 from [146.1 ...
show more2026-08-26T08:03:01.013231+02:00 hsx2 postfix/postscreen[257147]: PREGREET 18 after 0.01 from [146.148.16.199]:60770: EHLO example.com\r\n
...
show less
2026-08-26 07:56:11 wonderland sendmail[3446438]: 67Q5uBSo3446438: rejecting commands from 199.16.14 ...
show more2026-08-26 07:56:11 wonderland sendmail[3446438]: 67Q5uBSo3446438: rejecting commands from 199.16.148.146.bc.googleusercontent.com [146.148.16.199] due to pre-greeting traffic after 0 seconds
show less