This IP address has been reported a total of
524
times from
70 distinct
sources.
45.238.64.117 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
2026-08-21T18:59:19.426799+02:00 vps kernel: [3702386.492478] [PORTSCAN DETECTED] IN=ens3 OUT= MAC=f ...
show more2026-08-21T18:59:19.426799+02:00 vps kernel: [3702386.492478] [PORTSCAN DETECTED] IN=ens3 OUT= MAC=fa:16:3e:66:f6:24:02:37:19:0d:c2:f3:08:00 SRC=45.238.64.117 DST=54.37.14.118 LEN=52 TOS=0x00 PREC=0x00 TTL=236 ID=28766 DF PROTO=TCP SPT=59525 DPT=445 WINDOW=8192 RES=0x00 SYN URGP=0
...
show less
🛡️ Honeypot [bsts-tpot-sensor]: Unsolicited SMB connection (dst port 445/tcp, src port 63096) to a p ...
show more🛡️ Honeypot [bsts-tpot-sensor]: Unsolicited SMB connection (dst port 445/tcp, src port 63096) to a passive honeypot sensor. No legitimate SMB service is exposed here; this traffic is consistent with automated internet-wide scanning or exploitation attempts targeting SMB (e.g. EternalBlue-class vulnerabilities).
show less
🛡️ Honeypot [bsts-tpot-sensor]: Unsolicited SMB connection (dst port 445/tcp, src port 60654) to a p ...
show more🛡️ Honeypot [bsts-tpot-sensor]: Unsolicited SMB connection (dst port 445/tcp, src port 60654) to a passive honeypot sensor. No legitimate SMB service is exposed here; this traffic is consistent with automated internet-wide scanning or exploitation attempts targeting SMB (e.g. EternalBlue-class vulnerabilities).
show less
🛡️ Honeypot [bsts-tpot-sensor]: Unsolicited SMB connection (dst port 445/tcp, src port 56490) to a p ...
show more🛡️ Honeypot [bsts-tpot-sensor]: Unsolicited SMB connection (dst port 445/tcp, src port 56490) to a passive honeypot sensor. No legitimate SMB service is exposed here; this traffic is consistent with automated internet-wide scanning or exploitation attempts targeting SMB (e.g. EternalBlue-class vulnerabilities).
show less
portscan on multiple TCP ports :
Firewall: Within 2026-07-22 19:36:22 - 2026-07-22 19:36:23 CEST(+02 ...
show moreportscan on multiple TCP ports :
Firewall: Within 2026-07-22 19:36:22 - 2026-07-22 19:36:23 CEST(+0200) identified: unallowed access from 45.238.64.117/32 on port 445(microsoft-ds) (1 trial)
Fail2ban: Within 2026-07-22 19:36:22 - 2026-07-22 19:36:23 CEST(+0200) banned: 4 times by fail2ban[firewall]; 4 times by fail2ban[recidive]
show less
Unsolicited TCP connection from 45.238.64.117 to port 0 at 2026-07-20T18:12:46Z. Source IP completed ...
show moreUnsolicited TCP connection from 45.238.64.117 to port 0 at 2026-07-20T18:12:46Z. Source IP completed three-way handshake to non-public service on this host. Detected by automated intrusion monitoring.
show less
Unsolicited TCP connection from 45.238.64.117 to port 0 at 2026-07-11T17:58:02Z. Source IP completed ...
show moreUnsolicited TCP connection from 45.238.64.117 to port 0 at 2026-07-11T17:58:02Z. Source IP completed three-way handshake to non-public service on this host. Detected by automated intrusion monitoring.
show less
Unsolicited TCP connection from 45.238.64.117 to port 0 at 2026-07-11T16:43:32Z. Source IP completed ...
show moreUnsolicited TCP connection from 45.238.64.117 to port 0 at 2026-07-11T16:43:32Z. Source IP completed three-way handshake to non-public service on this host. Detected by automated intrusion monitoring.
show less
Port Scan
Hacking
Showing 1 to
15
of 524 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown 🚩