189.239.89.135

Recent Activity This IP has received recent abuse reports, which causes the score to increase.
Abuse confidence score ?
96% Critical
42 reports
31 reporters ยท latest 1 day ago
ISP Uninet S.A. de C.V.
Usage Type Fixed Line ISP
ASN AS8151
Hostname(s) acceso-189.239.89.135.prod-infinitum.com.mx
Domain Name telmex.com
Country ๐Ÿ‡ฒ๐Ÿ‡ฝ Mexico
City Zacatecas, Zacatecas

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Reports Activity

Example preview

Report Categories (Last 60 Days)

Example preview

Top Reporter Countries (Last 60 Days)

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 189.239.89.135

This IP address has been reported a total of 42 times from 31 distinct sources. 189.239.89.135 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 6 reports; Germany with 4 reports; Netherlands with 2 reports. The most common categories in these recent reports were: Port Scan 14 times; Brute-Force 5 times; Hacking 5 times; SSH 1 time; IoT Targeted 1 time; Other 2 times.

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡ณ๐Ÿ‡ฑ knock
Knock-Knock honeypot brute-force: SMB (3 total hits)
Brute-Force
๐Ÿ‡ณ๐Ÿ‡ฑ EGP Abuse Dept
Unauthorized connection to MSSQL port 1433
Port Scan Hacking
Anonymous
Network service scanning detected by FortiGate; source quarantined.
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ Bankbook8585
T-Pot honeypot | Dionaea honeypot: mssqld
Port Scan Hacking
๐Ÿ‡ฒ๐Ÿ‡ณ Public CSIRT/CC of Mongolia
Honeypot hit: SMB traffic on port 445
IoT Targeted
๐Ÿ‡ฉ๐Ÿ‡ช KPS
PortscanT
Port Scan
๐Ÿ‡ฏ๐Ÿ‡ต knock
Knock-Knock honeypot brute-force: SMB (3 total hits)
Brute-Force
๐Ÿ‡จ๐Ÿ‡ฟ Countryman
repeated unauthorized connection attempts, host sweep, port 445
Hacking Brute-Force
๐Ÿ‡บ๐Ÿ‡ธ RAP
2026-09-29 15:42:16 UTC Unauthorized activity to TCP port 445. SMB
Port Scan
๐Ÿ‡ท๐Ÿ‡ธ Smel
SQL/MH Probe, Scan, Hack -
Port Scan Hacking SQL Injection
๐Ÿ‡ฎ๐Ÿ‡น Fusty
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ HamSammich
Automated sensor: 2 MSSQL connection/probe attempts over the last 24h (latest 2026-09-29T04:17Z).
Hacking Brute-Force
๐Ÿ‡ฉ๐Ÿ‡ช bancix
Heimdallr NIDS: Automatic ban triggered. Reason: TRAP_PORT_HIT (porta 1433)
Port Scan
๐Ÿ‡น๐Ÿ‡ท savasboluk
Seczar SecureOps โ€” Database Service Brute Force (8 events) โ€” quarantined 43200m
Brute-Force SSH
๐Ÿ‡ต๐Ÿ‡ฑ bart@
Port Scan

Showing 1 to 15 of 42 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡ญ๐Ÿ‡ฐ 199.45.154.47
๐Ÿ‡ท๐Ÿ‡ด 193.46.255.51
๐Ÿ‡ต๐Ÿ‡พ 186.16.210.130
๐Ÿ‡ญ๐Ÿ‡ฐ 156.240.1.168
๐Ÿ‡ฎ๐Ÿ‡ณ 144.24.102.3
๐Ÿ‡จ๐Ÿ‡ณ 111.21.255.4
๐Ÿ‡ง๐Ÿ‡ฉ 103.171.69.179
๐Ÿ‡ซ๐Ÿ‡ท 91.231.89.121
๐Ÿ‡ต๐Ÿ‡ฐ 72.255.5.60
๐Ÿ‡ฌ๐Ÿ‡ง 35.203.210.9
๐Ÿ‡ต๐Ÿ‡ฑ 217.96.191.2
๐Ÿ‡ง๐Ÿ‡ช 198.235.24.240
๐Ÿ‡บ๐Ÿ‡ธ 192.3.143.114
๐Ÿ‡บ๐Ÿ‡ธ 130.131.220.95
๐Ÿ‡ฎ๐Ÿ‡ณ 110.225.251.40
๐Ÿ‡ฎ๐Ÿ‡ณ 103.70.189.19
๐Ÿ‡ณ๐Ÿ‡ฑ 94.154.43.70
๐Ÿ‡ท๐Ÿ‡บ 62.84.120.152
๐Ÿ‡ง๐Ÿ‡พ 37.215.13.180
๐Ÿ‡ณ๐Ÿ‡ฑ 192.253.248.226