AbuseIPDB » 189.137.228.139
189.137.228.139 was found in our database!
This IP was reported 6 times. Confidence of
Abuse
is 41% : ?
ISP
Gestión de direccionamiento UniNet
Usage Type
Fixed Line ISP
ASN
AS8151
Hostname(s)
dsl-139-228-137-189-dynamic.prod-infinitum.com.mx
Domain Name
uninet.net.mx
Country
🇲🇽
Mexico
City
Puebla, Puebla
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 189.137.228.139 :
This IP address has been reported a total of
6
times from
6 distinct
sources.
189.137.228.139 was first reported on
August 25th 2026 , and the most recent report was
21 hours ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
🇬🇧
openstrike.co.uk
2026-08-26 08:46:58
(21 hours ago)
6 packets to port 22
Brute-Force
SSH
Anonymous
2026-08-25 16:32:45
(1 day ago)
suricata IPS/IDS detection, ruleset ET SCAN Potential SSH Scan
Port Scan
🇹🇷
SeczarSecureOps
2026-08-25 15:38:10
(1 day ago)
Auto-blocked by Seczar SecureOps — High-Risk Port Probe (admin-managed entries) — SSH (6 events in 5 ...
show more
Auto-blocked by Seczar SecureOps — High-Risk Port Probe (admin-managed entries) — SSH (6 events in 5min) at 2026-08-25 15:38
show less
Web App Attack
Anonymous
2026-08-25 13:44:22
(1 day ago)
Aug 25 09:41:26 localhost kernel: [116010436.724419] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:9 ...
show more
Aug 25 09:41:26 localhost kernel: [116010436.724419] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=189.137.228.139 DST=[mungedIP2] LEN=60 TOS=0x00 PREC=0x00 TTL=46 ID=58687 DF PROTO=TCP SPT=47580 DPT=23 WINDOW=65535 RES=0x00 SYN URGP=0
Aug 25 09:41:26 localhost kernel: [116010436.724442] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=189.137.228.139 DST=[mungedIP2] LEN=60 TOS=0x00 PREC=0x00 TTL=46 ID=58687 DF PROTO=TCP SPT=47580 DPT=23 SEQ=3244240780 ACK=0 WINDOW=65535 RES=0x00 SYN URGP=0 OPT (020405AC0402080A02A5CAB30000000001030306)
Aug 25 09:44:21 localhost kernel: [116010611.941346] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=189.137.228.139 DST=[mungedIP2] LEN=60 TOS=0x00 PREC=0x00 TTL=46 ID=54509 DF PROTO=TCP SPT=37668 DPT=23 WINDOW=65535 RES=0x00 SYN URGP=0
Aug 25 09:44:21 localhost kernel: [116010611.941370] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0
show less
Port Scan
🇫🇷
glmx
2026-08-25 12:08:17
(1 day ago)
SSH honeypot interaction detected. The source host initiated a connection to a monitored SSH endpoin ...
show more
SSH honeypot interaction detected. The source host initiated a connection to a monitored SSH endpoint, behavior consistent with automated SSH scanning or brute-force reconnaissance.
show less
Brute-Force
SSH
🇧🇾
stroytrest
2026-08-25 10:21:54
(1 day ago)
2026-08-25T13:21:53.565443+03:00 gate kernel: [1208433.262484] nftables: JAIL-SSH IN=wan OUT= MAC= S ...
show more
2026-08-25T13:21:53.565443+03:00 gate kernel: [1208433.262484] nftables: JAIL-SSH IN=wan OUT= MAC= SRC=189.137.228.139 DST=xxx.xxx.xxx.xxx LEN=60 TOS=0x00 PREC=0x00 TTL=48 ID=32746 DF PROTO=TCP SPT=56114 DPT=22 WINDOW=65535 RES=0x00 SYN URGP=0
...
show less
Port Scan
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown 🚩
Recently Reported IPs: