194.48.251.116

Neutral Activity There is no recent abuse activity, or the IP address is whitelisted.
Abuse confidence score ?
0% Low Risk
58 reports
35 reporters ยท latest 2 months ago
ISP Neterra Ltd.
Usage Type Data Center/Web Hosting/Transit
ASN Unknown
Domain Name neterra.net
Country ๐Ÿ‡ซ๐Ÿ‡ท France
City Paris, Ile-de-France

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

No reports in the last 60 days

194.48.251.116 has been reported 58 times. The most recent report is from .

The full history is preserved below and remains searchable. A 0% score reflects the absence of recent activity, but this is not a guarantee that earlier reports were invalid. Abuse confidence score decays, naturally, over time, when the abusive activity stops.

IP Abuse Reports for 194.48.251.116

This IP address has been reported a total of 58 times from 35 distinct sources. 194.48.251.116 was first reported on , and the most recent report was .

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡บ๐Ÿ‡ธ drewf.ink
[11:27] Queried Docker API /version
Hacking
๐Ÿ‡ช๐Ÿ‡ธ NullBlue
Docker API exploitation attempt. Captured by NullBlue67 honeypot.
Hacking Exploited Host Web App Attack
๐Ÿ‡บ๐Ÿ‡ธ drewf.ink
[02:34] Sent dangerous Redis command: CONFIG SET dir /tmp - likely RCE/persistence attempt
Hacking
๐Ÿ‡บ๐Ÿ‡ธ HamSammich
Automated sensor: 1 Redis connection/probe attempts over the last 24h (latest 2026-07-25T02:24Z).
Hacking Brute-Force
๐Ÿ‡ฌ๐Ÿ‡ง G4zabus3r
*Port Scan* detected from 194.48.251.116 (BG/Bulgaria/-).
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ drewf.ink
[08:17] Sent dangerous Redis command: CONFIG GET maxmemory - likely RCE/persistence attempt
Hacking
๐Ÿ‡บ๐Ÿ‡ธ HamSammich
Automated sensor: 3 Redis connection/probe attempts over the last 24h (latest 2026-07-22T07:02Z).
Hacking Brute-Force
๐Ÿ‡ฉ๐Ÿ‡ช cloudmax
Port Scan
Anonymous
Port Scan Brute-Force
๐Ÿ‡บ๐Ÿ‡ธ drewf.ink
[04:36] Attempted MySQL login as 'root' with an empty password
Brute-Force Hacking
๐Ÿ‡บ๐Ÿ‡ธ k3rn3l109
Sentinel honeypot: opencanary-redis hit on fake Redis service (server-01-CA) UA=opencanary
Port Scan Hacking
๐Ÿ‡ฏ๐Ÿ‡ต Execoop
HTTP honeypot | Command Execution | 3 cmds, 1 HTTP
Hacking SSH
๐Ÿ‡ซ๐Ÿ‡ท security.rdmc.fr
IP in Malicious Database
Web App Attack
๐Ÿ‡บ๐Ÿ‡ธ drewf.ink
[02:46] Listed pods via exposed Kubelet API
Hacking Exploited Host
๐Ÿ‡ฆ๐Ÿ‡บ HostFission
PSAD port scan detected
Port Scan

Showing 1 to 15 of 58 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡ต๐Ÿ‡ฆ 190.140.106.75
๐Ÿ‡ฉ๐Ÿ‡ช 185.30.32.18
๐Ÿ‡จ๐Ÿ‡ณ 157.18.2.116
๐Ÿ‡ฉ๐Ÿ‡ช 89.116.39.148
๐Ÿ‡บ๐Ÿ‡ธ 43.130.1.43
๐Ÿ‡บ๐Ÿ‡ธ 20.15.201.41
๐Ÿ‡บ๐Ÿ‡ธ 195.184.76.237
๐Ÿ‡ฐ๐Ÿ‡ท 115.68.208.117
๐Ÿ‡ต๐Ÿ‡ฐ 111.92.157.214
๐Ÿ‡ฎ๐Ÿ‡ฉ 103.164.174.93
๐Ÿ‡ซ๐Ÿ‡ท 51.75.21.168
๐Ÿ‡ฉ๐Ÿ‡ช 34.179.249.216
๐Ÿ‡น๐Ÿ‡ผ 1.172.127.144
๐Ÿ‡ฒ๐Ÿ‡ฝ 187.148.30.89
๐Ÿ‡บ๐Ÿ‡ธ 172.252.129.11
๐Ÿ‡บ๐Ÿ‡ธ 162.216.149.11
๐Ÿ‡บ๐Ÿ‡ธ 152.32.182.8
๐Ÿ‡ง๐Ÿ‡ท 108.174.145.192
๐Ÿ‡ฌ๐Ÿ‡ง 81.102.131.25
๐Ÿ‡ง๐Ÿ‡ท 45.238.2.124