This IP address has been reported a total of
178
times from
43 distinct
sources.
180.95.238.248 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Honeypot detection: VNC remote desktop brute-force authentication attempt on port 5900. Severity: ME ...
show moreHoneypot detection: VNC remote desktop brute-force authentication attempt on port 5900. Severity: MEDIUM. Aaran.cloud
show less
Honeypot detection: Jenkins CI unauthorized access / script console abuse attempt (CVE-2024-23897) o ...
show moreHoneypot detection: Jenkins CI unauthorized access / script console abuse attempt (CVE-2024-23897) on port 50000. Severity: MEDIUM. Aaran.cloud
show less
Port scan from this IP. Firewall dropped every packet. Targeted UDP ports: 80. Single burst at 2026- ...
show morePort scan from this IP. Firewall dropped every packet. Targeted UDP ports: 80. Single burst at 2026-05-28 16:20 UTC.
show less
Honeypot detection: Web application scanning / reconnaissance attempt on port 8443. Severity: LOW. A ...
show moreHoneypot detection: Web application scanning / reconnaissance attempt on port 8443. Severity: LOW. Aaran.cloud
show less
Honeypot detection: Memcached unauthorized access / amplification attempt on port 11211. Severity: M ...
show moreHoneypot detection: Memcached unauthorized access / amplification attempt on port 11211. Severity: MEDIUM. Aaran.cloud
show less
Honeypot detection: Windows Remote Management (WinRM) unauthorized access attempt on port 5986. Seve ...
show moreHoneypot detection: Windows Remote Management (WinRM) unauthorized access attempt on port 5986. Severity: MEDIUM. Aaran.cloud
show less
Blocked by UFW (TCP on 12016)
Source port: 22513
TTL: 237
Packet length: 44
TOS: 0x08
This report ( ...
show moreBlocked by UFW (TCP on 12016)
Source port: 22513
TTL: 237
Packet length: 44
TOS: 0x08
This report (for 180.95.238.248) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Honeypot detection: Remote Desktop Protocol (RDP) brute-force attempt on port 3389. Severity: HIGH. ...
show moreHoneypot detection: Remote Desktop Protocol (RDP) brute-force attempt on port 3389. Severity: HIGH. Aaran.cloud
show less
Honeypot detection: Remote Desktop Protocol (RDP) brute-force attempt on port 3389. Severity: HIGH. ...
show moreHoneypot detection: Remote Desktop Protocol (RDP) brute-force attempt on port 3389. Severity: HIGH. Aaran.cloud
show less
ThreatBook Intelligence: Zombie,Dynamic IP more details on https://threatbook.io/ip/180.95.238.248
2 ...
show moreThreatBook Intelligence: Zombie,Dynamic IP more details on https://threatbook.io/ip/180.95.238.248
2026-04-19 15:01:40 http://110.242.68.4/
show less