This IP address has been reported a total of
211
times from
142 distinct
sources.
159.223.17.160 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Germany
with 45
reports;
France
with 40
reports;
United States of America
with 32
reports.
The most common categories in these recent reports were:
Port Scan
78
times;
Brute-Force
62
times;
Web App Attack
55
times;
Hacking
45
times;
Bad Web Bot
24
times;
Other
41
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Honeypot hit: HTTP/1.1 request on 10250
GET /query?q=SHOW+DIAGNOSTICS
User-Agent: Go-http-client/1. ...
show moreHoneypot hit: HTTP/1.1 request on 10250
GET /query?q=SHOW+DIAGNOSTICS
User-Agent: Go-http-client/1.1; 10250 [3] TCP
Reported by: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
Honeypot hit: HTTP/1.1 request on 8000
GET /query?q=SHOW+DIAGNOSTICS
User-Agent: Go-http-client/1.1 ...
show moreHoneypot hit: HTTP/1.1 request on 8000
GET /query?q=SHOW+DIAGNOSTICS
User-Agent: Go-http-client/1.1; 8000 [3] TCP
show less
Honeypot Finding: repeated TCP service probing on TCP/1234 (service); 2 application-level events acr ...
show moreHoneypot Finding: repeated TCP service probing on TCP/1234 (service); 2 application-level events across 2 source port(s). Sensor(s): Honeytrap.
show less
2026-10-0814:51:35SMTPcallfrom[159.223.17.160]:59320dropped:toomanysyntaxorprotocolerrors\(lastcomma ...
show more2026-10-0814:51:35SMTPcallfrom[159.223.17.160]:59320dropped:toomanysyntaxorprotocolerrors\(lastcommandwas\"\?\"\,NULL\)2026-10-0814:51:40SMTPcallfrom[159.223.17.160]:45766dropped:toomanysyntaxorprotocolerrors\(lastcommandwas\"\?\"\,NULL\)2026-10-0814:51:45SMTPcallfrom[159.223.17.160]:45768dropped:toomanysyntaxorprotocolerrors\(lastcommandwas\"\?\"\,NULL\)2026-10-0814:51:50SMTPcallfrom[159.223.17.160]:48076dropped:toomanysyntaxorprotocolerrors\(lastcommandwas\"\?\"\,NULL\)2026-10-0814:51:55SMTPcallfrom[159.223.17.160]:48082dropped:toomanysyntaxorprotocolerrors\(lastcommandwas\"\?\"\,NULL\)
show less
F2B postfix ban. Logs: 2026-10-08T11:48:42.202858+02:00 isp postfix/submission/smtpd[1991207]: lost ...
show moreF2B postfix ban. Logs: 2026-10-08T11:48:42.202858+02:00 isp postfix/submission/smtpd[1991207]: lost connection after STARTTLS from unknown[159.223.17.160]
2026-10-08T11:48:43.593682+02:00 isp postfix/submission/smtpd[1991187]: improper command pipelining after CONNECT from unknown[159.223.17.160]: \026\003\003\001\246\001\000\001\242\003\003\316\223\375r\037o\330\270\351XNY\360\256\251:kAJ\221\301\250\303 q&NS\302\275\224\263 \337\003s\322\036\276\3449\364\306Y\271<\231\267x\267FW\254@j[S\367G3+=I$p\000\212\000\026\0003\000g\300\236\300\242\000\236\0009\000k\300\237\300\243\000\237
2026-10-08T11:48:43.593725+02:00 isp postfix/submission/smtpd[1991187]: lost connection after UNKNOWN from unknown[159.223.17.160]
show less