Log in to view charts and search reports for this IP.
Log In
Reports Activity
Example preview
Report Categories (Last 60 Days)
Example preview
Top Reporter Countries (Last 60 Days)
Example preview
Account required for the enhanced features
Log inSign up
IP Abuse Reports for 209.38.215.115
This IP address has been reported a total of
92
times from
69 distinct
sources.
209.38.215.115 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Germany
with 27
reports;
France
with 24
reports;
Netherlands
with 8
reports.
The most common categories in these recent reports were:
Port Scan
37
times;
Brute-Force
30
times;
Web App Attack
21
times;
Hacking
18
times;
Bad Web Bot
13
times;
Other
19
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(postfix_disconnect) lost connection after AUTH from 209.38.215.115 (DE/Germany/-): 1 in the last 36 ...
show more(postfix_disconnect) lost connection after AUTH from 209.38.215.115 (DE/Germany/-): 1 in the last 3600 secs; IP: 209.38.215.115; Ports: *; Direction: inout; Trigger: other; Logs: 2026-09-30T01:35:19.034624+02:00 vps1 postfix/smtpd[260953]: disconnect from unknown[209.38.215.115] ehlo=1 starttls=1 commands=2
show less
Honeypot detection: port scan / service probe. 3 events observed. Reported automatically from a hone ...
show moreHoneypot detection: port scan / service probe. 3 events observed. Reported automatically from a honeypot sensor.
show less
Unsolicited TCP connection from 209.38.215.115 to port 0 at 2026-09-29T20:57:06Z. Source IP complete ...
show moreUnsolicited TCP connection from 209.38.215.115 to port 0 at 2026-09-29T20:57:06Z. Source IP completed three-way handshake to non-public service on this host. Detected by automated intrusion monitoring.
show less
Honeypot Finding: repeated TCP service probing on TCP/6443 (service); 3 application-level events acr ...
show moreHoneypot Finding: repeated TCP service probing on TCP/6443 (service); 3 application-level events across 3 source port(s). Sensor(s): Honeytrap.
show less
Honeypot Finding: combined 2 reportable finding type(s) for this source IP; observed 2026-09-29T16:3 ...
show moreHoneypot Finding: combined 2 reportable finding type(s) for this source IP; observed 2026-09-29T16:37:01.000Z to 2026-09-29T17:11:47.000Z. Honeypot Finding: repeated TCP service probing on TCP/6000 (service); 5 application-level events across 5 source port(s). Sensor(s): Honeytrap. | Honeypot Finding: repeated TCP service probing on TCP/8500 (service); 3 application-level events across 3 source port(s). Sensor(s): Honeytrap.
show less
Sep 29 18:57:20 mail postfix/submission/smtpd[2154939]: improper command pipelining after CONNECT fr ...
show moreSep 29 18:57:20 mail postfix/submission/smtpd[2154939]: improper command pipelining after CONNECT from unknown[209.38.215.115]: \026\003\003\001\231\001\000\001\225\003\003\300\203\222u\331\327V\225w>;\v\337N\350\254\364WQ\300\274A;\177\a\247\231@\232\r\363[ \006\315\210\202\a\226k\204\201\350D6\306\303S\230\025\352\340*:U\310@[\272\322\021\026V8t\000\214JJ\300\022\300\023\300\a\300'\314\024\300/\023\001\300\024\023\002\300(
Sep 29 18:57:20 mail postfix/submission/smtpd[2151416]: improper command pipelining after CONNECT from unknown[209.38.215.115]: \026\003\002\001\232\001\000\001\226\003\002\314Oyo\262\277\264\304\ai\367\220\330\367\036\202\n@h\341\235\217+\2207.G\330\234\f\271\327 3QG\311\223\264\r\230\327O\267=@OQ\320'x\220~\3149\004jL\030\212\200\352ZqO\000\212\000\026\0003\000g\300\236\300\242\000\236\0009\000k\300\237\300\243\000\237
Sep 29 18:57:20 mail postfix/submission/smtpd[2154939]: improper command pipelining after CONNECT from unknown[209.38.215.115]: \026\003\001\001\2
...
show less