Loading threats
Detects authenticated access to the IPC$ administrative share over SMB. This behavior indicates remote interaction with Windows inter-process communication mechanisms and is commonly observed during lateral movement, service enumeration, or preparation for remote command execution.
| IP Address | Risk | Events | Sessions | Country | ASN | Last Seen |
|---|---|---|---|---|---|---|
| 219.130.137.68 | 88% | 6,330 | 1,480 | 🇨🇳 CN | AS136199 | 2026-03-16 |
| 35.216.195.77 | 100% | 4,876 | 1,775 | 🇨🇭 CH | AS15169 | 2026-03-16 |
| 189.124.135.33 | 99% | 1,796 | 900 | 🇧🇷 BR | AS28220 | 2026-03-18 |
| 119.93.117.30 | 99% | 1,250 | 752 | 🇵🇭 PH | AS9299 | 2026-03-18 |
| 81.10.42.74 | 100% | 1,086 | 310 | 🇪🇬 EG | AS8452 | 2026-03-02 |
| 5.232.55.15 | 99% | 661 | 378 | 🇮🇷 IR | AS58224 | 2026-02-28 |
| 5.42.224.14 | 100% | 372 | 357 | 🇸🇦 SA | AS35753 | 2026-03-06 |
| 177.139.224.139 | 62% | 328 | 100 | 🇧🇷 BR | AS27699 | 2026-02-18 |
| 104.155.119.125 | 100% | 325 | 322 | 🇧🇪 BE | AS396982 | 2026-03-12 |
| 124.43.12.1 | 99% | 305 | 125 | 🇱🇰 LK | AS9329 | 2026-03-18 |
| 5.160.164.26 | 94% | 204 | 204 | 🇮🇷 IR | AS49847 | 2026-02-28 |
| 178.150.183.66 | 100% | 202 | 202 | 🇺🇦 UA | AS13188 | 2026-02-25 |
| 45.140.225.62 | 99% | 202 | 157 | 🇮🇷 IR | AS44285 | 2026-02-27 |
| 2.179.186.248 | 90% | 156 | 128 | 🇮🇷 IR | AS58224 | 2026-02-27 |
| 5.160.103.76 | 98% | 106 | 94 | 🇮🇷 IR | AS42337 | 2026-02-28 |
| 196.221.208.51 | 100% | 101 | 101 | 🇪🇬 EG | AS24835 | 2026-02-28 |
| 77.104.76.214 | 81% | 98 | 60 | 🇮🇷 IR | AS42337 | 2026-02-25 |
| 81.12.5.246 | 96% | 95 | 83 | 🇮🇷 IR | AS42337 | 2026-02-28 |
| 185.244.173.215 | 54% | 73 | 9 | 🇷🇺 RU | AS204997 | 2026-02-17 |
| 2.186.120.236 | 98% | 63 | 63 | 🇮🇷 IR | AS58224 | 2026-02-23 |