This IP address has been reported a total of
13
times from
12 distinct
sources.
212.47.137.157 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
endlessh: 2026-08-27 15:32:28.266969112 2026-08-27T13:32:28.266Z CLOSE host=212.47.137.157 port=147 ...
show moreendlessh: 2026-08-27 15:32:28.266969112 2026-08-27T13:32:28.266Z CLOSE host=212.47.137.157 port=14799 fd=4 time=20.019 bytes=17
...
show less
UDP flood (DDoS) vs AS215599: 508 pkts / 0.73 MB to UDP 80/8443 across 201 dst IP(s), 2026-08-19 21: ...
show moreUDP flood (DDoS) vs AS215599: 508 pkts / 0.73 MB to UDP 80/8443 across 201 dst IP(s), 2026-08-19 21:46 to 2026-08-20 00:36 CEST. No legitimate service on these UDP ports (7-day baseline 0 GB/day). Carpet-bombing of a /24, likely botnet-compromised host. Evidence: sFlow + hardware ACL counters.
show less
UDP flood (DDoS) vs AS215599: 508 pkts / 0.73 MB to UDP 80/8443 across 201 dst IP(s), 2026-08-19 21: ...
show moreUDP flood (DDoS) vs AS215599: 508 pkts / 0.73 MB to UDP 80/8443 across 201 dst IP(s), 2026-08-19 21:46 to 2026-08-20 00:36 CEST. No legitimate service on these UDP ports (7-day baseline 0 GB/day). Carpet-bombing of a /24, likely botnet-compromised host. Evidence: sFlow + hardware ACL counters.
show less
CrowdSec: Distributed L7 HTTP flood on WordPress 'The Events Calendar' AJAX endpoints (request_forma ...
show moreCrowdSec: Distributed L7 HTTP flood on WordPress 'The Events Calendar' AJAX endpoints (request_format~json) - DDoS | req: /calendrier-2/action~agenda/time_limit~1764370800/cat_ids~258,141/tag_ids~655,726,247,339,576,385/request_format~json/ | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36
show less
received unsolicited smtp data stream:
Message-ID: <C55419E99F88A46FFEB34335220EC554@0W2D0E3>
From: ...
show morereceived unsolicited smtp data stream:
Message-ID: <C55419E99F88A46FFEB34335220EC554@0W2D0E3>
From: <[email protected]>
To: <[email protected]>
Subject: =?utf-8?B?U3UgY3VlbnRhIGhhIHNpZG8gaGFja2VhZGEuIEhlIHJvYmFkbyBzdXMgZGF0b3MuIEF2ZXJpZ8O8ZSBj?= =?utf-8?B?w7NtbyByZWN1cGVyYXIgZWwgYWNjZXNvLg==?=
Date: 8 Aug 2023 19:50:08 +0300
MIME-Version: 1.0
Content-Type: multipart/alternative;
boundary="----=_NextPart_000_0023_01D9CA1B.047D2A0C"
X-Priority: 3
X-MSMail-Priority: Normal
Importance: Normal
X-Mailer: Microsoft Windows Live Mail 16.4.3505.912
X-MimeOLE: Produced By Microsoft MimeOLE V16.4.3505.912
This is a multi-part message in MIME format.
------=_NextPart_000_0023_01D9CA1B.047D2A0C
Content-Type: text/plain;
charset="cp-850"
Content-Transfer-Encoding: quoted-printable
Hola,Soy hacker y he conseguido acceder a su sistema =
operativo.También tengo total acceso a su cuenta.Llevo varios meses =
vigilándole.La cuestión es que su ordenador se infectó =
con un malware cuando usted visitó
show less
Email Spam
Showing 1 to
13
of 13 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ