Loading threats
Detects authenticated access to the IPC$ administrative share over SMB. This behavior indicates remote interaction with Windows inter-process communication mechanisms and is commonly observed during lateral movement, service enumeration, or preparation for remote command execution.
| IP Address | Risk | Events | Sessions | Country | ASN | Last Seen |
|---|---|---|---|---|---|---|
| 219.130.137.68 | 87% | 6,406 | 1,556 | 🇨🇳 CN | AS136199 | 2026-04-09 |
| 189.124.135.33 | 99% | 1,996 | 1,100 | 🇧🇷 BR | AS28220 | 2026-04-07 |
| 119.93.117.30 | 82% | 1,404 | 906 | 🇵🇭 PH | AS9299 | 2026-04-02 |
| 81.10.42.74 | 100% | 1,086 | 310 | 🇪🇬 EG | AS8452 | 2026-03-02 |
| 47.243.150.134 | 100% | 837 | 835 | 🇭🇰 HK | AS45102 | 2026-04-09 |
| 81.10.105.2 | 65% | 791 | 249 | 🇪🇬 EG | AS8452 | 2026-03-09 |
| 5.232.55.15 | 99% | 661 | 378 | 🇮🇷 IR | AS58224 | 2026-02-28 |
| 5.42.224.14 | 100% | 578 | 563 | 🇸🇦 SA | AS35753 | 2026-03-25 |
| 124.43.12.1 | 99% | 361 | 181 | 🇱🇰 LK | AS9329 | 2026-04-01 |
| 177.139.224.139 | 62% | 328 | 100 | 🇧🇷 BR | AS27699 | 2026-02-18 |
| 178.150.183.66 | 100% | 225 | 225 | 🇺🇦 UA | AS13188 | 2026-03-24 |
| 5.160.164.26 | 94% | 204 | 204 | 🇮🇷 IR | AS49847 | 2026-02-28 |
| 45.140.225.62 | 99% | 202 | 157 | 🇮🇷 IR | AS44285 | 2026-02-27 |
| 2.179.186.248 | 90% | 156 | 128 | 🇮🇷 IR | AS58224 | 2026-02-27 |
| 5.160.103.76 | 98% | 106 | 94 | 🇮🇷 IR | AS42337 | 2026-02-28 |
| 196.221.208.51 | 100% | 101 | 101 | 🇪🇬 EG | AS24835 | 2026-02-28 |
| 77.104.76.214 | 81% | 98 | 60 | 🇮🇷 IR | AS42337 | 2026-02-25 |
| 81.12.5.246 | 96% | 95 | 83 | 🇮🇷 IR | AS42337 | 2026-02-28 |
| 2.186.120.236 | 98% | 63 | 63 | 🇮🇷 IR | AS58224 | 2026-02-23 |
| 103.155.56.170 | 90% | 44 | 44 | 🇮🇳 IN | AS136306 | 2026-04-01 |