AbuseIPDB » 197.248.126.217
197.248.126.217 was found in our database!
This IP was reported 461 times. Confidence of Abuse is 100%: ?
| ISP | Safaricom Limited |
|---|---|
| Usage Type | Fixed Line ISP |
| ASN | AS37061 |
| Hostname(s) |
197-248-126-217.safaricombusiness.co.ke |
| Domain Name | safaricom.co.ke |
| Country | ๐ฐ๐ช Kenya |
| City | Kikuyu, Kiambu County |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 197.248.126.217:
This IP address has been reported a total of 461 times from 107 distinct sources. 197.248.126.217 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐บ๐ธ drewf.ink |
[15:57] Triggered SMB honeypot on port 445. Type: NetBIOS + SMB1. Dialect(s): NT LM 0.12
|
Hacking Exploited Host | ||
| ๐บ๐ธ MPL |
tcp/445
|
Port Scan | ||
| ๐บ๐ธ drewf.ink |
[01:18] Port scanning. Port(s) scanned: TCP/1433
|
Port Scan | ||
| ๐บ๐ธ RAP |
2026-06-19 23:18:38 UTC Unauthorized activity to TCP port 1433. SQL
|
Port Scan | ||
| ๐บ๐ธ RAP |
2026-06-19 19:54:23 UTC Unauthorized activity to TCP port 1433. SQL
|
Port Scan | ||
| ๐บ๐ธ RAP |
2026-06-19 16:55:13 UTC Unauthorized activity to TCP port 1433. SQL
|
Port Scan | ||
| ๐ซ๐ท zulzeen |
[distribamap-0] Blocked by SysWarden Firewall [BLOCK] (SMB/Possible Ransomware Attack)
|
Hacking Brute-Force | ||
| ๐ฆ๐น urnilxfgbez |
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
|
Port Scan | ||
| ๐บ๐ธ drewf.ink |
[20:04] Port scanning. Port(s) scanned: TCP/1433
|
Port Scan | ||
| ๐บ๐ธ RAP |
2026-06-18 18:43:10 UTC Unauthorized activity to TCP port 445. SMB
|
Port Scan | ||
| ๐ฌ๐ง knock |
Knock-Knock honeypot brute-force: SMB (3 total hits)
|
Brute-Force | ||
| ๐บ๐ธ RAP |
2026-06-18 15:54:13 UTC Unauthorized activity to TCP port 445. SMB
|
Port Scan | ||
| ๐บ๐ธ RAP |
2026-06-18 13:10:10 UTC Unauthorized activity to TCP port 445. SMB
|
Port Scan | ||
| ๐บ๐ธ RAP |
2026-06-18 12:13:45 UTC Unauthorized activity to TCP port 445. SMB
|
Port Scan | ||
| ๐ฆ๐บ LiftUp Hosting |
Honeypot hit: MSSQL traffic (on 1433) with username sa and empty password
|
Brute-Force |
Showing 1 to 15 of 461 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ