General Information

Submitter Diversity: Low
Risk (0-10)details: 1
RESEARCHER: THIS IP IS USED FOR INTERNET WIDE RESEARCH SCANS
IP Address (click for more detail): 45.79.181.251
Hostname: guernsey.scan.bufferover.run
Country:  US
ASN: 63949
AS Name:  AKAMAI-LINODE-AP - Akamai Connected Cloud, SG
Network:  45.79.176.0/20 (45.79.176.0-45.79.191.255) 45.79.192.0
Reports:  - none -
Targets:  - none -
First Reported: N/A
Most Recent Report: N/A
Comment: - none -
Abuse Contact for AS63949: [email protected]
Links to articles about the IP from rosti.bin.re

Note: We update the data once an hour. To refresh the data, click here. Not all source IPs in our database are "attackers". There are a few common false positives. For example, hosts that participate in P2P networks, mail servers, load balancers and DNS servers are some of the most common issues. For details, click on the number of reports. Clicking on the number of reports may allow you to conclude if a report is a false positive or not. Scroll down for information from other data feeds.

SSH/Telnet Logs

no ssh logs.

Web Honeypot Logs

Date Reports Different URLs Different User Agents
2026-10-06811
2026-10-053211
2026-10-042511
2026-10-032111
2026-10-022111
2026-10-011811
2026-09-301011
2026-09-291411
2026-09-282111
2026-09-271211
2026-09-261711
2026-09-251111
2026-09-241011
2026-09-231411

For more details about the web honeypot, see the Weblogs Page. Do not use these reports to identify IP addresses as "bad" for now.

External Threat Feeds

This data was retrieved from various external data feeds.

First Seen Last Seen Feed
2022-09-102026-10-06Port 22 Scanner
2023-01-202026-10-06Port 443 Scanner
2023-01-202026-10-06Port 80 Scanner
2023-01-202026-10-06Apache Web Server Scanner
2023-01-202026-10-06Bruteforce
2024-02-252026-10-06tls.bufferover.run
2024-02-252026-10-06Internet Research Project
Check Threatstop for more data link arrow