AbuseIPDB » 2.189.173.81

2.189.173.81 was found in our database!

This IP was reported 35 times. Confidence of Abuse is 100%: ?

100%
ISP Nimadd net co.
Usage Type Fixed Line ISP
ASN AS42337
Domain Name ito.gov.ir
Country ๐Ÿ‡ฎ๐Ÿ‡ท Iran (Islamic Republic of)
City Tehran, Tehran

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

IP Abuse Reports for 2.189.173.81:

This IP address has been reported a total of 35 times from 21 distinct sources. 2.189.173.81 was first reported on , and the most recent report was .

Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡บ๐Ÿ‡ธ ShadowWhisperer
SMB port scan / probe. SMB1 Negotiate
Port Scan Hacking
Anonymous
Honeypot hit: SMB traffic on port 445 Reported by: https://github.com/sefinek/T-Pot-To-AbuseIPDB
Hacking
๐Ÿ‡ณ๐Ÿ‡ฑ BIV
Port Scan Hacking
๐Ÿ‡บ๐Ÿ‡ธ RAP
2026-06-05 13:10:42 UTC Unauthorized activity to TCP port 445. SMB
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ RAP
2026-06-05 10:08:53 UTC Unauthorized activity to TCP port 445. SMB
Port Scan
๐Ÿ‡ซ๐Ÿ‡ท zulzeen
[incypit-web] Blocked by SysWarden Firewall [GEO] (Database/Cache Attack)
Hacking Brute-Force
๐Ÿ‡ฌ๐Ÿ‡ง PeravixGroup
Hacking Exploited Host
๐Ÿ‡บ๐Ÿ‡ธ xmission.com
Port Scan
๐Ÿ‡ง๐Ÿ‡ท SOC Blue Team
IPs get by Hunting on SIEM
Phishing Web Spam Port Scan Hacking
๐Ÿ‡ฉ๐Ÿ‡ช Honeypot-EU-Fru
1780567524 - 06/04/2026 12:05:24 Host: 2.189.173.81/2.189.173.81 Port: 445 TCP Blocked ...
Port Scan
๐Ÿ‡ฉ๐Ÿ‡ช D3RP4UL
MSSQL traffic (on 1433) with username sa and empty password
Brute-Force
๐Ÿ‡บ๐Ÿ‡ธ xmission.com
Port Scan
๐Ÿ‡ซ๐Ÿ‡ท Hiigara
connection attempt : 2.189.173.81 on port : tcp/1433 (MSSQL)
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ RAP
2026-06-03 19:09:07 UTC Unauthorized activity to TCP port 1433. SQL
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ RAP
2026-06-03 16:23:46 UTC Unauthorized activity to TCP port 1433. SQL
Port Scan

Showing 1 to 15 of 35 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡บ๐Ÿ‡ธ 165.154.36.71
๐Ÿ‡ฎ๐Ÿ‡ท 31.7.66.163
๐Ÿ‡ง๐Ÿ‡ท 179.189.87.231
๐Ÿ‡น๐Ÿ‡ท 176.91.198.105
๐Ÿ‡ณ๐Ÿ‡ฑ 176.65.139.231
๐Ÿ‡ฎ๐Ÿ‡ฉ 163.223.227.44
๐Ÿ‡จ๐Ÿ‡ณ 110.53.234.245
๐Ÿ‡ง๐Ÿ‡ฉ 103.163.170.35
๐Ÿ‡ญ๐Ÿ‡ฐ 101.36.127.85
๐Ÿ‡ธ๐Ÿ‡พ 91.144.21.210
๐Ÿ‡บ๐Ÿ‡ธ 45.33.52.85
๐Ÿ‡ฎ๐Ÿ‡ฉ 43.249.140.69
๐Ÿ‡บ๐Ÿ‡ธ 34.174.26.94
๐Ÿ‡บ๐Ÿ‡ธ 20.168.12.53
๐Ÿ‡จ๐Ÿ‡ณ 14.103.113.212
๐Ÿ‡ช๐Ÿ‡น 196.188.116.56
๐Ÿ‡ฉ๐Ÿ‡ช 167.94.145.28
๐Ÿ‡บ๐Ÿ‡ธ 147.185.132.55
๐Ÿ‡ฎ๐Ÿ‡ณ 106.204.228.33
๐Ÿ‡ง๐Ÿ‡ฉ 103.171.233.64