173.212.205.22

Recent Activity This IP has received recent abuse reports, which causes the score to increase.
Abuse confidence score ?
100% Critical
168 reports
96 reporters Β· latest 1 day ago
ISP Contabo GmbH
Usage Type Data Center/Web Hosting/Transit
ASN AS51167
Hostname(s) vmi3319144.contaboserver.net
Domain Name contabo.com
Country πŸ‡«πŸ‡· France
City Lauterbourg, Grand Est

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Reports Activity

Example preview

Report Categories (Last 60 Days)

Example preview

Top Reporter Countries (Last 60 Days)

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 173.212.205.22

This IP address has been reported a total of 168 times from 96 distinct sources. 173.212.205.22 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 67 reports; France with 32 reports; Germany with 26 reports. The most common categories in these recent reports were: Port Scan 149 times; Hacking 22 times; Brute-Force 21 times; SSH 8 times; Bad Web Bot 4 times; Other 6 times.

Reporter IoA Timestamp (UTC) Comment Categories
πŸ‡©πŸ‡ͺ reznekcs
Blocked by UFW firewall
Brute-Force
πŸ‡ΊπŸ‡Έ donarev419
Port scan detected on port 5901 (connection without data transfer)
Port Scan
πŸ‡ΊπŸ‡Έ MPL
tcp ports: 5901,9002 (4 or more attempts)
Port Scan
πŸ‡«πŸ‡· thecocasio
Port Scan
πŸ‡ΊπŸ‡Έ MPL
tcp port scan (10 or more attempts)
Port Scan
πŸ‡³πŸ‡± i-turnradio.nl
2026-09-29 01:06:01 +02:00 - Unsolicited TCP connection to a port honeypot; probing port 5900.
Port Scan
πŸ‡ΊπŸ‡Έ uhhhhhhyeahnotanythingthatislikemyotheraccountsanywhereelse
T-Pot honeypot: 56 credential/exploit attempts (Heralding) in the last hour
Brute-Force SSH
Anonymous
Heralding honeypot: vnc on port 5900, 1 auth attempts
Brute-Force
πŸ‡ΊπŸ‡Έ MPL
tcp port scan (12 or more attempts)
Port Scan
πŸ‡ΊπŸ‡Έ RAP
2026-09-28 21:48:42 UTC Unauthorized activity to TCP port 5900.
Port Scan
πŸ‡ΊπŸ‡Έ schematics.cc
Port Scan
Anonymous
Port Scan
πŸ‡ΊπŸ‡Έ xmission.com
Port Scan
πŸ‡«πŸ‡· security.rdmc.fr
Port Scan Attack proto:TCP src:56696 dst:5900
Port Scan
πŸ‡ΊπŸ‡Έ uhhhhhhyeahnotanythingthatislikemyotheraccountsanywhereelse
T-Pot honeypot: 32 credential/exploit attempts (Heralding) in the last hour
Brute-Force SSH

Showing 1 to 15 of 168 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩

Recently Reported IPs:

πŸ‡¨πŸ‡³ 220.197.14.60
πŸ‡ΉπŸ‡Ό 198.235.24.99
πŸ‡ΊπŸ‡Έ 192.241.134.160
πŸ‡§πŸ‡· 177.144.103.201
πŸ‡¨πŸ‡¦ 174.0.229.135
πŸ‡©πŸ‡ͺ 167.94.146.36
πŸ‡ΊπŸ‡Έ 147.185.132.242
πŸ‡¨πŸ‡³ 123.148.197.97
πŸ‡ΊπŸ‡Έ 97.213.153.134
πŸ‡ΊπŸ‡Έ 91.230.168.15
πŸ‡ΊπŸ‡Έ 50.114.172.201
πŸ‡¬πŸ‡§ 35.203.211.196
πŸ‡ΊπŸ‡Έ 18.221.179.104
πŸ‡­πŸ‡° 219.77.169.219
πŸ‡ΊπŸ‡Έ 209.38.69.12
πŸ‡­πŸ‡° 199.45.154.62
πŸ‡©πŸ‡ͺ 194.187.176.128
πŸ‡¨πŸ‡± 190.215.237.20
πŸ‡ΊπŸ‡Έ 172.56.181.75
πŸ‡©πŸ‡ͺ 102.220.160.39