Log in to view charts and search reports for this IP.
Log In
Top Reporter Countries (Last 60 Days)
Example preview
Report Categories (Last 60 Days)
Example preview
Reports Activity
Example preview
Account required for the enhanced features
Log inSign up
IP Abuse Reports for 159.223.134.160:
This IP address has been reported a total of
84
times from
43 distinct
sources.
159.223.134.160 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Germany
with 21
reports;
United States of America
with 18
reports;
France
with 12
reports.
The most common categories in these recent reports were:
Port Scan
55
times;
Hacking
44
times;
Brute-Force
17
times;
Bad Web Bot
13
times;
SSH
5
times;
Other
8
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Honeypot [fra-de-honeypot]: HTTP/1.1 request on 9301
GET /solr/admin/info/system
User-Agent: Go-htt ...
show moreHoneypot [fra-de-honeypot]: HTTP/1.1 request on 9301
GET /solr/admin/info/system
User-Agent: Go-http-client/1.1; 9301 [10] TCP
Reported by DisPaisy Enterprises (dispaisy.systems) using: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
🛡️ Honeypot [bsts-tpot-sensor]: HTTP/1.1 request on 27018
GET /cgi-bin/authLogin.cgi
User-Agent: Go ...
show more🛡️ Honeypot [bsts-tpot-sensor]: HTTP/1.1 request on 27018
GET /cgi-bin/authLogin.cgi
User-Agent: Go-http-client/1.1; 27018 [9] TCP
show less
2026-09-07T00:55:01.982604+0000 inbound port scan detected by Suricata. src=159.223.134.160:34192 ds ...
show more2026-09-07T00:55:01.982604+0000 inbound port scan detected by Suricata. src=159.223.134.160:34192 dst=51.68.231.122:3306 proto=TCP. signature="ET SCAN Suspicious inbound to mySQL port 3306" category="Potentially Bad Traffic" sid=2010937 reason=scan_signature.
show less
Port Scan
Anonymous
Automated Report: Fail2Ban block triggered by docker-postgres jail.
Honeypot hit: HTTP/1.1 request on 9302
GET /cgi-bin/authLogin.cgi
User-Agent: Go-http-client/1.1; 9 ...
show moreHoneypot hit: HTTP/1.1 request on 9302
GET /cgi-bin/authLogin.cgi
User-Agent: Go-http-client/1.1; 9302 [9] TCP
show less
Honeypot [fra-de-honeypot]: HTTP/1.1 request on 9302
GET /solr/admin/info/system
User-Agent: Go-htt ...
show moreHoneypot [fra-de-honeypot]: HTTP/1.1 request on 9302
GET /solr/admin/info/system
User-Agent: Go-http-client/1.1; 9302 [8] TCP
Reported by DisPaisy Enterprises (dispaisy.systems) using: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
Honeypot hit: HTTP/1.1 request on 27018
GET /v2/_catalog
User-Agent: Go-http-client/1.1; 27018 [11] ...
show moreHoneypot hit: HTTP/1.1 request on 27018
GET /v2/_catalog
User-Agent: Go-http-client/1.1; 27018 [11] TCP
show less
2026-09-07T02:22:43.794830+07:00 rapi postfix/8087/smtpd[2392947]: improper command pipelining after ...
show more2026-09-07T02:22:43.794830+07:00 rapi postfix/8087/smtpd[2392947]: improper command pipelining after CONNECT from unknown[159.223.134.160]: GET /query?q=SHOW+DIAGNOSTICS HTTP/1.1\r\nHost: 192.25.205.17:8087\r\nUser-Agent: Go-http-client/1.1\r\nCo
2026-09-07T02:22:44.256311+07:00 rapi postfix/8087/smtpd[2392947]: improper command pipelining after CONNECT from unknown[159.223.134.160]: GET /query?q=SHOW+DIAGNOSTICS HTTP/1.1\r\nHost: 192.25.205.17:8087\r\nUser-Agent: Go-http-client/1.1\r\nCo
show less