189.19.206.152 is from Brazil
An Internet Protocol address (IP address 189.19.206.152) is a numerical label that is allocated to a computer (can be any electronic device) which is part of a network (TELECOMUNICACOES DE SAO PAULO S.A. - TELESP) that utilises the Internet Protocol. Every IP address does the following: (1) location addressing and (2) host or network interface identification.
e.g. 209.62.45.34 IPv4/IPv6 format for an IP Address, or maxmind.com for a website
Compare to another IP
| IP Address: | 189.19.206.152 |
|---|---|
| IP Address Country: | |
| IP Address Region: | 27 Sao Paulo |
| IP Address City: | São Bernardo Do Campo |
| IP Postal Code | |
| IP Address Area Code | 0 |
| IP Metro Code | 0 |
| IP Address Latitude: | -23.7000007629 |
| IP Address Longitude: | -46.5499992371 |
| IP Address ISP: | TELECOMUNICACOES DE SAO PAULO S.A. - TELESP |
| Organisation: | TELECOMUNICACOES DE SAO PAULO S.A. - TELESP |
| IP Address Proxy: | |
| IP Address Host: | 189-19-206-152.dsl.telesp.net.br |
Map is loading...
We have 173 complaints about 189.19.206.152
Is 189.19.206.152 misbehaving (engaging in SPAM, brute-force, DOS attack, phishing, or other fraud? Report the abuser now!
View WHOIS information for 189.19.206.152[Querying whois.lacnic.net]
[Redirected to whois.registro.br]
[Querying whois.registro.br]
[whois.registro.br]
% Copyright (c) Nic.br
% The use of the data below is only permitted as described in
% full by the terms of use (http://registro.br/termo/en.html),
% being prohibited its distribution, comercialization or
% reproduction, in particular, to use it for advertising or
% any similar purpose.
% [209.62.45.34] 2011-07-23 21:42:18 (BRT -03:00)
% You don't have permission to use this service
% Security and mail abuse issues should also be addressed to
% cert.br, http://www.cert.br/, respectivelly to cert@cert.br
% and mail-abuse@cert.br
%
% whois.registro.br accepts only direct match queries. Types
% of queries are: domain (.br), ticket, provider, ID, CIDR
% block, IP and ASN.
[Redirected to whois.registro.br]
[Querying whois.registro.br]
[whois.registro.br]
% Copyright (c) Nic.br
% The use of the data below is only permitted as described in
% full by the terms of use (http://registro.br/termo/en.html),
% being prohibited its distribution, comercialization or
% reproduction, in particular, to use it for advertising or
% any similar purpose.
% [209.62.45.34] 2011-07-23 21:42:18 (BRT -03:00)
% You don't have permission to use this service
% Security and mail abuse issues should also be addressed to
% cert.br, http://www.cert.br/, respectivelly to cert@cert.br
% and mail-abuse@cert.br
%
% whois.registro.br accepts only direct match queries. Types
% of queries are: domain (.br), ticket, provider, ID, CIDR
% block, IP and ASN.
15 Latest Attacks
89.108.127.160 - Site is a scam - filed under Fraud
one of the sites through this host, everingame.com has defrauded hundreds of users. http://www.scamb...
114.36.160.94 - mindless stuff - filed under Spam
Hacking attemps, spaming. He has inserted himeslf into our medical servicesrecipients. It has been r...
205.186.130.61 - email hijacking - filed under Hacking
This person has been logging into my gmail account and sent out spam emails to my entire contact lis...
202.104.197.118 - Attempted login to FTP - filed under Brute Force
Brute force attempts to log into my server FTP with the username "administrator."
A sim...
74.128.173.47 - Bet2day casino - filed under Spam
Same as the rest, spam mail every hour now on 3 of my emails. No way to unsubscribe and impossible t...
173.9.198.249 - website was hacked 2 days ago - filed under FTP Hacking
2 days ago from this ip several of our websites we're hacked by logging on to our ftp webhosting ac...
66.147.240.186 - This IP is trying to logon my website - filed under Brute Force
Website: http://www.iphonesp.com.br/
Page: /administrator/index.php
Description: There was an unsu...
94.183.53.255 - Attacking Google account - filed under Hacking
Someone recently tried to sign in to your Google Account, XXXXX. We prevented the sign-in attempt in...
67.205.111.248 - 184.107.157.130 - filed under Hacking
this site keeps port scanning my IP addresses. i have him blocked but clearly theres a problem with...
72.21.194.32 - Risky connection blocked - filed under Malware
Looks to me like 72.21.194.32 is a server leased from Amazon's cloud services server farm by someon...
74.128.173.47 - unsubscribe bet2day from Ryan Hardy - filed under Spam
no way to unsubscribe to their unwanted mail about bet2day; looks to me a kind of spam or other non...
178.33.224.175 - Continuous ICMP ping id-0 to all our public facing IP Addresses - filed under Firewall Alert
[00001] 2012-05-14 18:09:02 [Root]system-critical-00441: ICMP ping id=0! From 178.33.224.175 to 66.2...
92.38.199.150 - Subject: Good Day: Unsolicited, unsigned for 'loan/investment' spam from Russia - filed under Spam
Unsolicited spam from webmaster@arclip.ru -user17662
Received: from s6.cishost.ru ([92.38.199.150])...
2012/05/16 20:18:16 +0300 DEOCAMDATARDS computer IP-BLOCK 77.78.228.62 (Type: incoming)
2012/05/16 2...
More Attacks
66.0.10.82 - 66.0.10.82 performing a port scan - filed under Port Scanning
My netgear router also reported a port scan from 66.0.10.82. Destination 80.229...
Whoever it is ha...
186.8.7.196 - Self-explanatory :- - filed under Phishing
We have detected a slight error in your contact information.
This might be due to either of the ...
64.62.145.242 - This ip 64.62.145.242 is trying to enter to my site - filed under Brute Force
8 failed login attempts from IP: 64.62.145.242
Please, watch it and save this complaint.
By the wa...
60.174.198.82 - 60.174.198.82 HEFEI ASSHOLE WORM ATTACK - filed under Hacking
I THINK IN VAIN THOSE ASSHOLES CHINESE ARE TRYING TO GAIN ACCES TO OUR NETWORK , SENDING THOUSANDS O...
61.139.105.163 - 61.139.105.163: Port scanning - filed under Port Scanning
This IP is constantly port scanning, My ISP will do nothing about it (Tiscali) have blocked it throu...
91.121.92.196 - PHPNuke comment injection - filed under SQL Injection
The IP, along with at least three others, is trying to post comment on one of my servers. The commen...
211.245.185.88 - SSH Dictionary attack - filed under Brute Force
Probably another unwitting Botnet dupe...
209.15.236.190 - Port scanning servers in my DMZ - filed under Port Scanning
date=2012-04-04 time=04:30:44 devname=AAOMSFW01 device_id=FG300B3910602911 log_id=0419016384 type=ip...
206.193.236.89 - Spam & possible phishing - filed under Spam
Email content:
C L I C K H E R E <http://ntbpay.piykohuq.cn/> About this mailing:
Ogjkakyjruav ...
58.221.246.160 - Port scanning - filed under Port Scanning
The guy is scanning my ports every so often....
150.70.89.33 - RST Scan Port 443 - filed under Port Scanning
The ip has repeatedly scanned my network. I blocked all port and re opened them later again. He scan...
89.28.114.111 - Harrasing emails sent through form - filed under Form Post Hijacking
I have received several emails per day from this IP address through the reservations form for my res...
60.161.78.155 - Network Attack Intrusion - filed under Hacking
6/12/2010 10:27:10 PM
Detected: Intrusion.Win.MSSQL.worm.Helkern
UDP from 60.161.78.155 to local...
This ip adress is sending porn spam in german language melanie@mailview.cc with links to page www.ma...
60.161.78.155 - Network attack Intrusion.Win.MSSQL.worm.Helkern - filed under Firewall Alert
2010/04/17 02:18:41 AM Detected: Intrusion.Win.MSSQL.worm.Helkern Absent UDP from 60.161.78.155 to ...
198.228.232.5 - please help - filed under Hacking
someone keeps hacking into my desktop pc and my iphone.i cant figure it out...it has cost me thousan...
222.69.166.149 - sending me emails about world of warcraft issues - filed under Phishing
sent me a email saying to reverifie account due to me buying a store item....
69.175.94.114 - http://www.paypal.com.cgi-bin-ca-marketing-marketingweb.country-lang-true.estilo.com.ec/cc0f9b75244fe3c72a20a2a4f9cbb36a/info1.php - filed under Phishing
fraud@antihotmail.com
-------------------------------
http://www.paypal.com.cgi-bin-ca-marketing-ma...
89.73.46.233 - Email hack - filed under Phishing
email hack email hack email hack email hack email hack email hack email hack email hack email hack e...
88.168.6.140 - smtpd connect/disconnect - filed under SMTP Fraud
more then 100 times a day form this ip for almost a week now. the domain name realted to the up is s...
173.34.61.156 - Port Scanning - filed under Port Scanning
Received firewall alert of Fin Scan of local port 5958...
210.13.118.234 - brute-force - filed under Brute Force
Authentication Failures:
root (210.13.118.234): 21 Time(s)
...
188.138.89.138 - SIP attack - filed under Brute Force
This IP attached and cracked my SIP account. He brootforced my PBX during two days, that was bad for...
83.103.181.125 - try to attack - filed under Brute Force
This ip address has tried multiple times to brute force my ip addres...
184.154.106.250 - http://paypal.com-us.cgi-bin.webscr.cmdflowsession.5evz-w6sy-2cv1um6beooyfoha0tgg1rj8mso2gsy6.wy3e7zoy6mq.msy-dispatch.5885d80a13c0db1f8e263663d3faee8d43b1bb6ed6d43d.thoroughbredglobe.com/active/f4c2ccda3e84aa4d694aa80b5756f14b/ - filed under Phishing
fraud@antihotmail.com
-------------------------------
http://paypal.com-us.cgi-bin.webscr.cmdflowse...

ISP: China Unicom Heilongjiang province network
Organization: China Unicom Heilongjiang province network
Proxy: None detected
Type: Broadband
Assignment: Static IP
Blacklist:
Geolocation Information
Country: China
State/Region: Heilongjiang
City: Harbin
Latitude: 45.75
Longitude: 126.65
Area Code:
Postal Code:
Geolocation Map
Autoban by FTP server..!
Bitches!!!!
The attack comprised of approximately 2,360 login attempts to my FTP server at a rate of one per second. A fragment of the log is attached, and the complete log is available from dave@dnawebdev.net on request.
2010-02-19 08:38:50 189.19.206.152 - 192.168.0.2 21 USER Administrator 331 0 0 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:38:50 189.19.206.152 - 192.168.0.2 21 PASS *** 530 1326 41 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:38:50 189.19.206.152 - 192.168.0.2 21 USER Administrator 331 0 0 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:38:51 189.19.206.152 - 192.168.0.2 21 PASS *** 530 1326 41 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:38:51 189.19.206.152 - 192.168.0.2 21 USER Administrator 331 0 0 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:38:51 189.19.206.152 - 192.168.0.2 21 PASS *** 530 1326 41 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:38:52 189.19.206.152 - 192.168.0.2 21 USER Administrator 331 0 0 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:38:53 189.19.206.152 - 192.168.0.2 21 PASS *** 530 1326 41 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:38:54 189.19.206.152 - 192.168.0.2 21 USER Administrator 331 0 0 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:38:54 189.19.206.152 - 192.168.0.2 21 PASS *** 530 1326 41 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:38:55 189.19.206.152 - 192.168.0.2 21 USER Administrator 331 0 0 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:38:55 189.19.206.152 - 192.168.0.2 21 PASS *** 530 1326 41 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:38:56 189.19.206.152 - 192.168.0.2 21 USER Administrator 331 0 0 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:38:56 189.19.206.152 - 192.168.0.2 21 PASS *** 530 1326 41 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:38:56 189.19.206.152 - 192.168.0.2 21 USER Administrator 331 0 0 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:38:57 189.19.206.152 - 192.168.0.2 21 PASS *** 530 1326 41 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:38:57 189.19.206.152 - 192.168.0.2 21 USER Administrator 331 0 0 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:38:58 189.19.206.152 - 192.168.0.2 21 PASS *** 530 1326 41 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:39:02 189.19.206.152 - 192.168.0.2 21 USER Administrator 331 0 0 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:39:03 189.19.206.152 - 192.168.0.2 21 PASS *** 530 1326 41 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:39:04 189.19.206.152 - 192.168.0.2 21 USER Administrator 331 0 0 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:39:06 189.19.206.152 - 192.168.0.2 21 PASS *** 530 1326 41 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:39:06 189.19.206.152 - 192.168.0.2 21 USER Administrator 331 0 0 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:39:16 189.19.206.152 - 192.168.0.2 21 PASS *** 530 1326 41 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:39:16 189.19.206.152 - 192.168.0.2 21 USER Administrator 331 0 0 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:39:16 189.19.206.152 - 192.168.0.2 21 PASS *** 530 1326 41 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:39:17 189.19.206.152 - 192.168.0.2 21 USER Administrator 331 0 0 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:39:17 189.19.206.152 - 192.168.0.2 21 PASS *** 530 1326 41 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:39:18 189.19.206.152 - 192.168.0.2 21 USER Administrator 331 0 0 58ccc220-c412-4358-a690-7ef84e3f5cf1 -
2010-02-19 08:39:19 189.19.206.152 - 192.168.0.2 21 PASS *** 530 1326 41 58ccc220-c412-4358-a690-7ef84e3f5cf1 -