AbuseIPDB » 128.0.167.0
128.0.167.0 was found in our database!
This IP was reported 9 times. Confidence of
Abuse
is 43% : ?
ISP
LLC Ekran
Usage Type
Fixed Line ISP
ASN
AS196742
Domain Name
ekran39.ru
Country
๐ท๐บ
Russian Federation
City
Kaliningrad, Kaliningrad Oblast
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 128.0.167.0 :
This IP address has been reported a total of
9
times from
7 distinct
sources.
128.0.167.0 was first reported on
July 20th 2026 , and the most recent report was
2 days ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ซ๐ท
sthoyer.de
2026-07-28 13:10:41
(2 days ago)
Jul 28 15:10:40 sthoyer kernel: [IPTables-Block] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd:10:f ...
show more
Jul 28 15:10:40 sthoyer kernel: [IPTables-Block] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd:10:f7:08:00 SRC=128.0.167.0 DST=173.212.223.67 LEN=52 TOS=0x00 PREC=0x00 TTL=116 ID=21913 DF PROTO=TCP SPT=49320 DPT=445 WINDOW=8192 RES=0x00 SYN URGP=0
...
show less
Port Scan
๐ซ๐ท
sthoyer.de
2026-07-28 09:03:43
(3 days ago)
Jul 28 11:03:42 sthoyer kernel: [IPTables-Block] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd:10:f ...
show more
Jul 28 11:03:42 sthoyer kernel: [IPTables-Block] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd:10:f7:08:00 SRC=128.0.167.0 DST=173.212.223.67 LEN=52 TOS=0x00 PREC=0x00 TTL=116 ID=5443 DF PROTO=TCP SPT=61337 DPT=445 WINDOW=8192 RES=0x00 SYN URGP=0
...
show less
Port Scan
๐ซ๐ท
Little Iguana
2026-07-28 08:14:15
(3 days ago)
trying to access non-authorized port
Port Scan
๐ซ๐ท
sthoyer.de
2026-07-28 08:09:21
(3 days ago)
Jul 28 10:09:19 sthoyer kernel: [IPTables-Block] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd:10:f ...
show more
Jul 28 10:09:19 sthoyer kernel: [IPTables-Block] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd:10:f7:08:00 SRC=128.0.167.0 DST=173.212.223.67 LEN=52 TOS=0x00 PREC=0x00 TTL=116 ID=5293 DF PROTO=TCP SPT=54469 DPT=445 WINDOW=8192 RES=0x00 SYN URGP=0
...
show less
Port Scan
๐ฉ๐ช
BULLSEYE
2026-07-26 08:00:26
(5 days ago)
Automated detection from Windows Firewall. Observed patterns: Top: TCP/445=2 (possible SMB scan/exp ...
show more
Automated detection from Windows Firewall. Observed patterns: Top: TCP/445=2 (possible SMB scan/exploit attempt). Traffic characteristics strongly indicate automated scanning activity.
show less
Port Scan
Hacking
Anonymous
2026-07-24 06:20:25
(1 week ago)
denied SMB access attempt. destination port 445.
Port Scan
Hacking
๐ซ๐ท
EvoX
2026-07-22 05:53:43
(1 week ago)
๐ก๏ธ Honeypot [bsts-tpot-sensor]: Unsolicited SMB connection (dst port 445/tcp, src port 55878) to a p ...
show more
๐ก๏ธ Honeypot [bsts-tpot-sensor]: Unsolicited SMB connection (dst port 445/tcp, src port 55878) to a passive honeypot sensor. No legitimate SMB service is exposed here; this traffic is consistent with automated internet-wide scanning or exploitation attempts targeting SMB (e.g. EternalBlue-class vulnerabilities).
show less
Hacking
๐ฉ๐ช
check-the-sum.fr
2026-07-21 16:17:09
(1 week ago)
Port Scanning
Port Scan
๐ฉ๐ช
crnpekgoz
2026-07-20 07:28:27
(1 week ago)
[PortScan] Risk=100 ASN=196742 (portscan) Port=445 HoneypotTrap=true | Reported by WardenIPS: https: ...
show more
[PortScan] Risk=100 ASN=196742 (portscan) Port=445 HoneypotTrap=true | Reported by WardenIPS: https://github.com/msncakma/WardenIPS
show less
Port Scan
Showing 1 to
9
of 9 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: