This IP address has been reported a total of
29
times from
23 distinct
sources.
165.22.141.152 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Blocked by UFW (TCP on 8161)
Source port: 59687
TTL: 236
Packet length: 40
TOS: 0x00
This report (f ...
show moreBlocked by UFW (TCP on 8161)
Source port: 59687
TTL: 236
Packet length: 40
TOS: 0x00
This report (for 165.22.141.152) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
[rede-arem1] 08/25/2026-03:52:50.467172, 165.22.141.152, Protocol: 6, ET SCAN Suspicious inbound to ...
show more[rede-arem1] 08/25/2026-03:52:50.467172, 165.22.141.152, Protocol: 6, ET SCAN Suspicious inbound to mySQL port 3306
show less
[probe-44-49] 2026-08-25 06:06:28, Client: 165.22.141.152, Protocol: 6, Unauthorized activity to HTT ...
show more[probe-44-49] 2026-08-25 06:06:28, Client: 165.22.141.152, Protocol: 6, Unauthorized activity to HTTP: GET /
show less
Graylog firewall DROP detected. Hits=1384, ASN=AS14061, Provider=DigitalOcean, LLC, Country=US, Rang ...
show moreGraylog firewall DROP detected. Hits=1384, ASN=AS14061, Provider=DigitalOcean, LLC, Country=US, Range=165.22.128.0/20, AbuseScore=93, Reports=17
show less
Port Scan
Hacking
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Suspicious inbound to PostgreSQL port 5432) ...
show moreWazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Suspicious inbound to PostgreSQL port 5432) detectado de 165.22.141.152
show less
Graylog firewall DROP detected. Hits=1002, ASN=AS14061, Provider=DigitalOcean, LLC, Country=US, Rang ...
show moreGraylog firewall DROP detected. Hits=1002, ASN=AS14061, Provider=DigitalOcean, LLC, Country=US, Range=165.22.128.0/20, AbuseScore=93, Reports=17
show less
Port Scan
Hacking
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
Honeypot connection to elastic decoy port โ banner-match: . Source: HyveHeim/HyveGuard tripwire (aut ...
show moreHoneypot connection to elastic decoy port โ banner-match: . Source: HyveHeim/HyveGuard tripwire (auto-report).
show less
Port Scan
Hacking
Exploited Host
Anonymous
Honeypot wireguard: source IP triggered 3+ blocked attempts in 24h (ports: 8443/tcp (HTTPS-alt))
Port Scan
Showing 1 to
15
of 29 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ