AbuseIPDB » 189.131.55.217
189.131.55.217 was found in our database!
This IP was reported 21 times. Confidence of Abuse is 100%: ?
| ISP | Gestión de direccionamiento UniNet |
|---|---|
| Usage Type | Fixed Line ISP |
| ASN | AS8151 |
| Hostname(s) |
dsl-217-55-131-189-dynamic.prod-infinitum.com.mx |
| Domain Name | uninet.net.mx |
| Country | 🇲🇽 Mexico |
| City | Mexico City, Mexico City |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 189.131.55.217:
This IP address has been reported a total of 21 times from 20 distinct sources. 189.131.55.217 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| 🇺🇸 HamSammich |
Automated sensor: 1 MSSQL connection/probe attempts over the last 24h (latest 2026-09-20T21:19Z).
|
Hacking Brute-Force | ||
| Anonymous |
Unauthorized connection to SMB port 445
|
Port Scan | ||
| Anonymous |
[TCP/445] Unsolicited connection attempt on a port with no legitimate public service.
|
Port Scan Hacking | ||
| 🇬🇧 knock |
Knock-Knock honeypot brute-force: SMB (3 total hits)
|
Brute-Force | ||
| 🇨🇭 cybsecaoccol |
multiple malicious connection attempts on tcp port 445 - sch
|
DDoS Attack Port Scan Hacking Brute-Force | ||
| 🇺🇸 donarev419 |
Connection to port 445 with data transfer.
Data preview:
|
Port Scan Hacking | ||
| 🇧🇷 SOC-BR |
|
Port Scan Hacking | ||
| 🇺🇸 sumnone |
Port probing on unauthorized port 445
|
Port Scan Hacking Exploited Host | ||
| 🇭🇰 mutebot.net |
SRC=189.131.55.217, PROTO=TCP, SPT=55077, DPT=445
|
Port Scan | ||
| 🇫🇮 iamxorum |
|
Port Scan | ||
| 🇺🇸 OceanTreasure |
tcp/1433; SCAN Suspicious inbound to MSSQL port 1433 @ 2026-09-17T18:49:44Z
|
Port Scan | ||
| 🇩🇪 Jochen Pretli |
connection to honeypot
|
Email Spam Port Scan | ||
| 🇩🇪 Admins@Storch |
IPS:drop <match> dstport=1433
|
Brute-Force Exploited Host | ||
| 🇳🇱 knock |
Knock-Knock honeypot brute-force: SMB (3 total hits)
|
Brute-Force | ||
| 🇹🇷 Domainhizmetleri.com |
Source: DH Hunter (Honeypot) | Reason: Portscan (1 ports, 1 attempts in 480h, non-TR)
|
Port Scan |
Showing 1 to 15 of 21 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩