General Information

Submitter Diversity: Low
Risk (0-10)details: 1
RESEARCHER: THIS IP IS USED FOR INTERNET WIDE RESEARCH SCANS
IP Address (click for more detail): 199.45.154.78
Hostname: 78.154.45.199.censys-scanner.com
Country:  US
ASN: 398722
AS Name:  CENSYS-ARIN-03 - Censys, Inc., US
Network:  199.45.154.0/24 (199.45.154.0-199.45.154.255) 199.45.155.0
Reports:  - none -
Targets:  - none -
First Reported: N/A
Most Recent Report: N/A
Comment: - none -
Abuse Contact for AS398722: 
Links to articles about the IP from rosti.bin.re

Note: We update the data once an hour. To refresh the data, click here. Not all source IPs in our database are "attackers". There are a few common false positives. For example, hosts that participate in P2P networks, mail servers, load balancers and DNS servers are some of the most common issues. For details, click on the number of reports. Clicking on the number of reports may allow you to conclude if a report is a false positive or not. Scroll down for information from other data feeds.

SSH/Telnet Logs

no ssh logs.

Web Honeypot Logs

Date Reports Different URLs Different User Agents
2026-09-30952
2026-09-29952
2026-09-271052
2026-09-2630102
2026-09-251572
2026-09-242392
2026-09-222592
2026-09-211242
2026-09-20641
2026-09-19641
2026-09-171762
2026-09-161252
2026-09-13742
2026-09-12111

For more details about the web honeypot, see the Weblogs Page. Do not use these reports to identify IP addresses as "bad" for now.

External Threat Feeds

This data was retrieved from various external data feeds.

First Seen Last Seen Feed
2024-05-162026-09-30Port 110 Scanner
2024-05-162026-09-30Port 143 Scanner
2024-04-262026-09-30Port 22 Scanner
2024-05-162026-09-30Port 25 Scanner
2024-05-162026-09-30Port 993 Scanner
2024-05-162026-09-30courier imap attacker
2026-07-312026-09-30Censys
2024-04-272026-09-30CI Army List
Check Threatstop for more data link arrow