AbuseIPDB » 91.196.178.167

91.196.178.167
Activity Trending Down This IP hasn't received reports recently, which causes the score to decay.
48 reports found in our database
100% Critical
Abuse confidence score ?
ISP
LUX.NET, LLC
Usage Type
Fixed Line ISP
ASN
Hostname(s)
nat167.lux-net.com.ua
Domain Name
lux-net.com.ua
Country
🇺🇦 Ukraine
City
Malyn, Zhytomyr Oblast

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Top Reporter Countries (Last 60 Days)

Example preview

Report Categories (Last 60 Days)

Example preview

Reports Activity

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 91.196.178.167:

This IP address has been reported a total of 48 times from 35 distinct sources. 91.196.178.167 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: France with 10 reports; United States of America with 7 reports; Germany with 6 reports. The most common categories in these recent reports were: Port Scan 27 times; Brute-Force 12 times; SSH 6 times; IoT Targeted 6 times; Hacking 6 times; Other 11 times.

Reporter IoA Timestamp (UTC) Comment Categories
🇫🇷 security.rdmc.fr
Port Scan Attack proto:TCP src:18779 dst:23
Port Scan
Anonymous
Port scanning: unsolicited connection probes to closed ports. Detected and blocked automatically.
Port Scan
🇫🇷 aki
PortScan: TCP/23
Port Scan
🇳🇱 EGP Abuse Dept
Unauthorized connection to SSH port 22
Port Scan Hacking SSH
🇳🇱 DonAtari
DShield firewall scan - TCP to port 23
Brute-Force SSH
🇦🇺 dyln
Dyls honeypot brute-force: Telnet (9 total hits)
Brute-Force
🇰🇷 2048
Brute-Force IoT Targeted
Anonymous
denied traffic to a honeypot network. destination port 23.
Port Scan Hacking
🇫🇷 Zkillu
DDoS Attack Exploited Host
🇫🇷 Zkillu
DDoS Attack Exploited Host
🇫🇷 Zkillu
DDoS Attack Exploited Host
🇫🇷 dmallet
DDoS Attack Exploited Host
🇨🇦 polycoda
🥶 Part of massive botnet scraping campaign that nearly turned into a DDoS on 2025-11-27
DDoS Attack
Anonymous
scanning http requests from known botnet
Web App Attack
🇺🇸 MPL
tcp/8080 (3 or more attempts)
Port Scan

Showing 31 to 45 of 48 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩

Recently Reported IPs:

🇺🇸 216.180.246.73
🇧🇷 177.222.199.70
🇧🇷 177.53.82.34
🇨🇳 171.83.20.188
🇧🇬 109.160.32.116
🇧🇬 109.160.32.107
🇷🇴 80.94.92.234
🇺🇸 66.132.172.34
🇩🇪 213.209.159.226
🇺🇸 209.207.169.88
🇧🇷 200.218.232.143
🇹🇼 198.235.24.112
🇳🇱 195.178.110.30
🇺🇸 188.211.25.49
🇧🇷 170.80.226.53
🇨🇴 170.78.42.33