AbuseIPDB » 189.123.96.1
189.123.96.1 was found in our database!
This IP was reported 16 times. Confidence of Abuse is 32%: ?
| ISP | Claro NXT Telecomunicacoes Ltda |
|---|---|
| Usage Type | Fixed Line ISP |
| ASN | AS28573 |
| Hostname(s) |
bd7b6001.virtua.com.br |
| Domain Name | claro.com.br |
| Country | ๐ง๐ท Brazil |
| City | Ribeirao Preto, Sao Paulo |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 189.123.96.1:
This IP address has been reported a total of 16 times from 12 distinct sources. 189.123.96.1 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐ธ๐ช NordhTech |
More than 3 malicious connection attempts, trying port(s) 7338/tcp, then blocked from services ...
|
Port Scan Hacking | ||
| Anonymous |
|
Port Scan | ||
| ๐ซ๐ท Duggy_Tuxy๐งฑ |
[DS-BLKS-PROD01] Blocked by SysWarden Firewall (Traffic from Blocked Country (GeoIP))
|
Port Scan | ||
| ๐บ๐ธ Cyber Crusader |
Hundreds of Attempts (at least) to Connect to and Access Firewall Ports
|
Port Scan Hacking Brute-Force | ||
| Anonymous |
unsolicited UDP packet to port 33695 (1380 bytes)
|
Hacking | ||
| Anonymous |
unsolicited UDP packet to port 65133 (26 bytes)
|
Hacking | ||
| ๐ฉ๐ช AS213449.net |
04/25/2026-23:37:59.027342 189.123.96.1 ET SCAN Suspicious inbound to mySQL port 3306
|
SQL Injection | ||
| ๐บ๐ธ Cyber Crusader |
Hundreds of Attempts (at least) to Connect to and Access Firewall Ports
|
Port Scan Hacking Brute-Force | ||
| Anonymous |
Unauthorized connection attempt
|
Port Scan Hacking Exploited Host | ||
| Anonymous |
Unauthorized connection attempt
|
Port Scan Hacking Exploited Host | ||
| ๐บ๐ธ quilla |
Botnet infected device observed in honeypot (Vector: TCP HANDSHAKE ATTACK)
|
DDoS Attack | ||
| ๐จ๐ฆ polycoda |
๐ฅถ Part of massive botnet scraping campaign that nearly turned into a DDoS on 2025-11-27
|
DDoS Attack | ||
| ๐ฉ๐ช SMARTNET |
Aisuru(Mirai variant) DDoS
|
DDoS Attack | ||
| Anonymous |
scanning http requests from known botnet
|
Web App Attack | ||
| Anonymous |
scanning http requests from known botnet
|
Web App Attack |
Showing 1 to 15 of 16 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ