AbuseIPDB » 167.94.138.51

167.94.138.51 was found in our database!

This IP was reported 18,146 times. Confidence of Abuse is 0%: ?

0%
ISP Censys, Inc.
Usage Type Commercial
ASN AS398324
Hostname(s) scanner-07.ch1.censys-scanner.com
Domain Name censys.com
Country United States of America
City Chicago, Illinois

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated biweekly.


Important Note: 167.94.138.51 is an IP address from within our whitelist belonging to the subnet 167.94.138.0/24, which we identify as: "Censys (https://about.censys.io/)".

Whitelisted netblocks are typically owned by trusted entities, such as Google or Microsoft who may use them for search engine spiders. However, these same entities sometimes also provide cloud servers and mail services which are easily abused. Pay special attention when trusting or distrusting these IPs.

IP Abuse Reports for 167.94.138.51:

This IP address has been reported a total of 18,146 times from 837 distinct sources. 167.94.138.51 was first reported on , and the most recent report was .

Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.

Reporter IoA Timestamp in UTC Comment Categories
Study Bitcoin 🤗
Port probe to tcp/30357
[srv136]
Port Scan
tedmichalik.com
167.94.138.51 - - [21/May/2025:23:55:10 -0400] "\x16\x03\x01" 400 477 "-" "-"
...
Web App Attack
ScanThe.Net
ID: 2254384177 | PORT: 4839 | https://167-94-138-51.scanthe.net
Port Scan
el-brujo
05/22/2025-05:27:00.226377 167.94.138.51 Protocol: 6 ET DROP Dshield Block Listed Source group 1
Hacking
webnestify
[Webnestify Honeypot - China] Unauthorized connection attempt on port 9999.
Port Scan Hacking Brute-Force
Kinsei Engineering Inc.
DBFilter:Repeated invalid access to unused databases
Port Scan SQL Injection
4server
Port Scan Brute-Force Web App Attack
mkaraki
1747857698 # Service_probe # SIGNATURE_SEND # source_ip:167.94.138.51 # dst_port:38047
...
Port Scan
Jink
Honeypot hit: Empty payload (likely service probe); 55617 [1] TCP
Port Scan
Sawasdee
Port Scan
...
Port Scan
marcel-knorr.de
[MK-Root1] Blocked by UFW
Port Scan Brute-Force
Kraften
Dovecot imap-login
...
DDoS Attack Brute-Force
el-brujo
05/21/2025-14:21:14.097141 167.94.138.51 Protocol: 6 ET DROP Dshield Block Listed Source group 1
Hacking
el-brujo
05/21/2025-08:26:24.304444 167.94.138.51 Protocol: 6 ET DROP Dshield Block Listed Source group 1
Hacking
Maike
ports, 21/24H:1/7D:1
Port Scan

Showing 1 to 15 of 18146 reports


Is this your IP? You may request to takedown any associated reports. We will attempt to verify your ownership. Request Takedown 🚩

Recently Reported IPs: