AbuseIPDB » 167.94.138.112

167.94.138.112 was found in our database!

This IP was reported 4,698 times. Confidence of Abuse is 0%: ?

0%
ISP Censys, Inc.
Usage Type Commercial
ASN AS398324
Hostname(s) scanner-27.ch1.censys-scanner.com
Domain Name censys.com
Country United States of America
City Chicago, Illinois

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated biweekly.


Important Note: 167.94.138.112 is an IP address from within our whitelist belonging to the subnet 167.94.138.0/24, which we identify as: "Censys (https://about.censys.io/)".

Whitelisted netblocks are typically owned by trusted entities, such as Google or Microsoft who may use them for search engine spiders. However, these same entities sometimes also provide cloud servers and mail services which are easily abused. Pay special attention when trusting or distrusting these IPs.

IP Abuse Reports for 167.94.138.112:

This IP address has been reported a total of 4,698 times from 551 distinct sources. 167.94.138.112 was first reported on , and the most recent report was .

Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.

Reporter IoA Timestamp in UTC Comment Categories
sefinek.net
Honeypot hit: Empty payload (likely service probe); 54591 [1] TCP
Port Scan
Anonymous
Brute-Force SSH
diego
Web App Attack
spamverify.com
Honeypot Hit: Port Scan (11211) MEMCACHED
Web Spam Blog Spam Bad Web Bot Web App Attack
mkaraki
1752015412 # Service_probe # SIGNATURE_SEND # source_ip:167.94.138.112 # dst_port:110
...
Port Scan
SuperCores Hosting
[2025-07-08 22:13:33.508998] TELNET/23 Unautorized connection, Suspicious Mirai Botnet.
DDoS Attack Port Scan Hacking Brute-Force IoT Targeted
Study Bitcoin 🤗
Port probe to tcp/3306 (mysql)
[srv125]
Port Scan
Beta
ports, 995/24H:1/7D:1
Port Scan
MazenHost
1751991748 - 07/08/2025 18:22:28 Host: 167.94.138.112/167.94.138.112 Port: 111 TCP Blocked
...
Port Scan
sefinek.net
Honeypot hit: Empty payload (likely service probe); 7000 [3] TCP
Port Scan
security.rdmc.fr
IP in Malicious Database
Web App Attack
CBJ
fail2ban: apache-random-recon
...
Web App Attack
bakunin1848
Firewall IPS Detection on 08-07-2025 at 10:20:05
Port Scan Exploited Host
public csirt
Honeypot hit: Empty payload (likely service probe); 38704 [1] TCP
Port Scan
mkey
Port Scan Hacking

Showing 1 to 15 of 4698 reports


Is this your IP? You may request to takedown any associated reports. We will attempt to verify your ownership. Request Takedown 🚩

Recently Reported IPs: