AbuseIPDB » 164.160.94.149

Enter an IP Address, Domain Name, or Subnet:

e.g.   54.227.186.112, microsoft.com, or 5.188.10.0/23

164.160.94.149 was found in our database!

This IP was reported 54 times. Confidence of Abuse is 43%: ?

43%
ISP Sos Group IP Allocation
Usage Type Commercial
Domain Name Unknown
Country South Africa
City Johannesburg, Gauteng

Spot an error? IP info including ISP, Usage Type, and Location provided by IP2Location. Contact them to update it!

IP Abuse Reports for 164.160.94.149:

This IP address has been reported a total of 54 times from 9 distinct sources. 164.160.94.149 was first reported on , and the most recent report was .

Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.

Reporter Date Comment Categories
stfw
445/tcp 1433/tcp 1433/tcp...
[2018-10-26/12-15]4pkt,2pt.(tcp)
Port Scan
andrew.stream
[SMB remote code execution attempt: port tcp/445]

*(RWIN=1024)(09:55)
Port Scan Hacking Brute-Force
andrew.stream
[SMB remote code execution attempt: port tcp/445]

*(RWIN=1024)(12:07)
Port Scan Hacking Brute-Force
secureshock.nl
Hit our honeypot for 34324 times at 1433/TCP -- Resubmit, still active.
Port Scan
secureshock.nl
Hit our honeypot for 34323 times at 1433/TCP -- Resubmit, still active.
Port Scan
Scan
MultiHost/MultiPort Probe, Scan, Hack -
Port Scan Hacking
secureshock.nl
Hit our honeypot for 32806 times at 1433/TCP -- Resubmit, still active.
Port Scan
secureshock.nl
Hit our honeypot for 29904 times at 1433/TCP -- Resubmit, still active.
Port Scan
secureshock.nl
Hit our honeypot for 27000 times at 1433/TCP -- Resubmit, still active.
Port Scan
secureshock.nl
Hit our honeypot for 22936 times at 1433/TCP -- Resubmit, still active.
Port Scan
secureshock.nl
Hit our honeypot for 17274 times at 1433/TCP -- Resubmit, still active.
Port Scan
secureshock.nl
Hit our honeypot for 11579 times at 1433/TCP -- Resubmit, still active.
Port Scan
secureshock.nl
Hit our honeypot for 5827 times at 1433/TCP -- Resubmit, still active.
Port Scan
andrew.stream
[portscan] tcp/1433 [MsSQL]

*(RWIN=1024)(10:10)
Port Scan Hacking SQL Injection Brute-Force Exploited Host
secureshock.nl
Hit our honeypot for 55 times at 1433/TCP -- First time seen.
Port Scan

Showing 1 to 15 of 54 reports


Is this your IP? You may request to takedown any associated reports. We will attempt to verify your ownership.

Recently Reported IPs:

** This Document Provided By AbuseIPDB **
Source: https://www.abuseipdb.com/check/164.160.94.149