This IP address has been reported a total of
83
times from
47 distinct
sources.
193.30.245.4 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
DDoS flood attack against 31.56.58.0 (2026-08-20 18:41:47 -> 2026-08-20 18:56:47 UTC) targeting AS21 ...
show moreDDoS flood attack against 31.56.58.0 (2026-08-20 18:41:47 -> 2026-08-20 18:56:47 UTC) targeting AS215599. This IP (AS39222) sent ~64904 packets (92.23 MB) during the attack window. Likely a compromised device (botnet).
show less
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0. ...
show moreMozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36
show less
UDP flood (DDoS) vs AS215599: 9017 pkts / 12.89 MB to UDP 80/8443 across 396 dst IP(s), 2026-08-19 2 ...
show moreUDP flood (DDoS) vs AS215599: 9017 pkts / 12.89 MB to UDP 80/8443 across 396 dst IP(s), 2026-08-19 21:46 to 2026-08-20 00:36 CEST. No legitimate service on these UDP ports (7-day baseline 0 GB/day). Carpet-bombing of a /24, likely botnet-compromised host. Evidence: sFlow + hardware ACL counters.
show less
UDP flood (DDoS) vs AS215599: 9017 pkts / 12.89 MB to UDP 80/8443 across 396 dst IP(s), 2026-08-19 2 ...
show moreUDP flood (DDoS) vs AS215599: 9017 pkts / 12.89 MB to UDP 80/8443 across 396 dst IP(s), 2026-08-19 21:46 to 2026-08-20 00:36 CEST. No legitimate service on these UDP ports (7-day baseline 0 GB/day). Carpet-bombing of a /24, likely botnet-compromised host. Evidence: sFlow + hardware ACL counters.
show less
Telnet credential brute-force observed by honeypot.
Source IP: 193.30.245.4
Targeted device: NAS
Fir ...
show moreTelnet credential brute-force observed by honeypot.
Source IP: 193.30.245.4
Targeted device: NAS
First seen: 14 Aug 2026 11:00:42 UTC
Last seen: 14 Aug 2026 11:00:48 UTC
Attempts: 2
Sample credentials: hikvision:hikvision, root:tsgoingon
show less
byebyte.space auth: TCP packet to port 23 (telnet) at 2026-08-14T05:24:59Z. Source port 48936. TCP f ...
show morebyebyte.space auth: TCP packet to port 23 (telnet) at 2026-08-14T05:24:59Z. Source port 48936. TCP flags: SYN. Packet: 60B, TTL 56, window 65535, IP id 56683. Single packet, dropped at firewall. p0f: OS Linux 2.2.x-3.x (generic match), 8 hops, link IPIP or SIT.
show less
Port scan from this IP. Firewall dropped every packet. Targeted TCP ports: 23. Single burst at 2026- ...
show morePort scan from this IP. Firewall dropped every packet. Targeted TCP ports: 23. Single burst at 2026-08-14 05:24 UTC.
show less