This IP address has been reported a total of
3
times from
2 distinct
sources.
37.27.243.26 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Iran (Islamic Republic of)
with 2
reports;
Germany
with 1
report.
The most common categories in these recent reports were:
DDoS Attack
3
times;
Exploited Host
2
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Hello Abuse Team,
We observed repeated high-volume traffic carrying source IP 37.27.243.26 toward o ...
show moreHello Abuse Team,
We observed repeated high-volume traffic carrying source IP 37.27.243.26 toward our network (target 85.133.221.50). This source was observed in 4 separate incident(s) during the last 7 day(s), across 2 destination address(es) in our network. The latest observation ended at 2026-10-01 20:20:28 UTC.
Peak traffic from this source alone in the latest incident: 31949 pps / 369.6 Mbps; this source was active for about 4s.
Detected pattern: bandwidth_flood (severity HIGH).
Incident traffic detail: protocols udp 100%; top dest port(s) udp/80; sample confidence very high (2167 samples).
sFlow evidence: very high confidence, 2167 sample(s), sampling rate 1:4096.
Please investigate the system using this address at the stated time and take appropriate action. Source attribution was withheld when spoofing indicators or known CDN/intermediary ownership were present.
Regards,
ParsAbr Network Abuse Automation
show less
Hello Abuse Team,
We observed repeated high-volume traffic carrying source IP 37.27.243.26 toward o ...
show moreHello Abuse Team,
We observed repeated high-volume traffic carrying source IP 37.27.243.26 toward our network (target 85.133.221.0/24). This source was observed in 2 separate incident(s) during the last 7 day(s), across 2 destination address(es) in our network. The latest observation ended at 2026-09-30 19:23:54 UTC.
Peak traffic from this source alone in the latest incident: 99942 pps / 1156.1 Mbps; this source was active for about 10s.
Detected pattern: carpet_bomb_bw (severity MODERATE).
Incident traffic detail: protocols udp 98%, tcp 2%, icmp 0%; top dest port(s) udp/80, udp/5055, tcp/39457; sample confidence very high (2340 samples).
sFlow evidence: very high confidence, 2340 sample(s), sampling rate 1:4096.
Please investigate the system using this address at the stated time and take appropriate action. Source attribution was withheld when spoofing indicators or known CDN/intermediary ownership were present.
Regards,
ParsAbr Network Abuse Automation
show less