AbuseIPDB » 167.94.138.112
167.94.138.112 was found in our database!
This IP was reported 4,697 times. Confidence of Abuse is 0%: ?
ISP | Censys, Inc. |
---|---|
Usage Type | Commercial |
ASN | AS398324 |
Hostname(s) |
scanner-27.ch1.censys-scanner.com |
Domain Name | censys.com |
Country |
![]() |
City | Chicago, Illinois |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated biweekly.
Important Note: 167.94.138.112 is an IP address from within our whitelist belonging to the subnet 167.94.138.0/24, which we identify as: "Censys (https://about.censys.io/)".
Whitelisted netblocks are typically owned by trusted entities, such as Google or Microsoft who may use them for search engine spiders. However, these same entities sometimes also provide cloud servers and mail services which are easily abused. Pay special attention when trusting or distrusting these IPs.
IP Abuse Reports for 167.94.138.112:
This IP address has been reported a total of 4,697 times from 551 distinct sources. 167.94.138.112 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
Reporter | IoA Timestamp in UTC | Comment | Categories | |
---|---|---|---|---|
![]() |
Port probe to tcp/8843
[srv131] |
Port Scan | ||
![]() |
Automatic report from iptables firewall - detected malicious activity
|
DDoS Attack Port Scan Hacking Brute-Force Web App Attack SSH | ||
![]() |
Noxious/Nuisible/вредоносный Host.
|
Port Scan Exploited Host | ||
![]() |
Honeypot hit: Empty payload (likely service probe); 18244 [1] TCP
|
Port Scan | ||
![]() |
endlessh trap: attempts=4 total_time_stuck=70.074s
|
Port Scan Hacking SSH | ||
![]() |
endlessh trap: attempts=4 total_time_stuck=70.074s
|
Port Scan Hacking SSH | ||
![]() |
endlessh trap: attempts=4 total_time_stuck=70.074s
|
Port Scan Hacking SSH | ||
Anonymous |
|
Port Scan Hacking | ||
![]() |
Jun 26 21:17:32 server UFW BLOCK SRC=167.94.138.112 DF PROTO=TCP SPT=33170
|
Port Scan | ||
![]() |
06/26/2025-17:38:24.819946 167.94.138.112 Protocol: 6 ET DROP Dshield Block Listed Source group 1
|
Hacking | ||
![]() |
IP in Malicious Database
|
Web App Attack | ||
![]() |
RouterOS: Scanning detected TCP 167.94.138.112:45394 > x.x.x.x:2048
|
Port Scan | ||
![]() |
Unauthorized connection attempt detected from IP address 167.94.138.112 to port 22 (ger-03) [r]
|
Brute-Force Exploited Host | ||
![]() |
Censys.io.Scanner
|
Port Scan | ||
![]() |
Port probe to tcp/3128 (squid http proxy)
[srv131] |
Port Scan |
Showing 121 to 135 of 4697 reports
Is this your IP? You may request to takedown any associated reports. We will attempt to verify your ownership. Request Takedown 🚩