IP Address

103.237.38.14

IPv4 Public
BD BD
AS132298
Antaranga Dot Com Ltd
311 Reports
This IP is on the Blacklist High confidence threat - blocking recommended
10/10 Threat
80% Confidence
311 Reports

Threat Intelligence Analysis

AI-generated security assessment based on aggregated threat data

Top 5% Most Dangerous
BD
BD Location
Antaranga Dot Com Ltd ASN 132298
311 Reports
Honeypot Data Source

Maximum Danger

IP 103.237.38.14 is a critical-risk address originating from Bangladesh that has accumulated 311 total abuse reports and is associated with active hacking intrusion attempts, making it a threat that defenders should treat with high urgency. The address, registered to Antaranga Dot Com Ltd under autonomous system AS132298, was first flagged by automated honeypot sensors in March 2026 and most recently reported in April 2026, indicating sustained hostile activity over a concentrated timeframe. With a threat-level score of 10 out of 10 and an 80 percent confidence rating, this IP presents a credible and dangerous risk to any exposed network service.

The detection picture is entirely driven by automated honeypot infrastructure, which logged all 20 recent hacking-category reports against this address. The volume of 311 total reports across all categories far exceeds typical noise levels, signalling deliberate and repeated targeting behaviour rather than incidental scanning. Network-level telemetry further shows Suricata stream-anomaly alerts consistent with retransmission manipulation, a technique frequently employed to fragment or evade detection signatures during intrusion attempts. The geographic origin in Bangladesh places this actor outside many Western threat-intelligence feeds, potentially reducing the IP's visibility in some defensive pipelines.

The dominant hacking activity represents general intrusion attempts, vulnerability probing and unauthorized-access efforts against exposed services. These are not passive reconnaissance probes but active exploitation attempts that, if successful, could grant initial access to a target environment for further compromise. The stream-retransmission pattern observed suggests the actor may be attempting to bypass stateful inspection or intrusion-detection systems by injecting malformed packets designed to trigger reassembly errors. For any service directly reachable from the internet, this IP represents a concrete, documented threat vector.

Site operators are advised to block 103.237.38.14 at the network perimeter and ensure the block extends to any related subnets operated by Antaranga Dot Com Ltd. Implement fail2ban or equivalent rate-limiting rules on exposed services, particularly SSH and authentication endpoints, to absorb brute-force patterns. Enforce strong multi-factor authentication on all remote-access pathways and maintain up-to-date patching cycles to close vulnerabilities targeted by this actor. Continuous monitoring for repeated connection attempts from this address will help confirm whether blocks are effective and whether the actor attempts to circumvent restrictions using alternate source addresses.

More threatening than 95% of monitored IPs

Threat Categories

Hacking 30

Technical Details

General hacking activity includes various intrusion attempts, exploitation of vulnerabilities, and unauthorized access attempts.

Recommended Mitigations

Keep systems patched, implement intrusion detection, and follow security best practices.

Reputable Network

This IP is hosted on a network (ASN 132298) with generally good reputation. The ISP Antaranga Dot Com Ltd maintains standard security practices.

The malicious activity may represent an isolated compromised system rather than systematic abuse.

Security Recommendations

Continue monitoring for emerging patterns.

This analysis is automatically generated from aggregated, anonymized threat intelligence data. No personal information is displayed or stored. Assessment accuracy depends on available data volume and diversity.

Reputation Summary

Threat Level 10/10 Critical
Critical
Activity Frequency 0/10 Inactive
Confidence Score 70% High Confidence

Confidence History

11. Apr 2026 - 20. Apr 2026
80% Current
Stable Trend

The confidence score shows the reliability of the threat assessment based on the number and quality of reports.

Security Reports (30)

Date Categories Source Confidence
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%

Technical Details

Basic Information

IP Address
103.237.38.14
IP Version
IPv4
Network Type
Public
Tor Network
No
Network Class
Class A

Geolocation

Country
BD BD
ASN
AS132298
ISP
Antaranga Dot Com Ltd

DNS Information

Reverse DNS
None
PTR Record
No
Connection Type
Static

Statistics

Total Reports
311
First Reported
4 Mar 2026
Last Reported
20 Apr 2026, 21:13

Network Reputation

Analysis of the entire network (ASN) that this IP address belongs to, providing context about the hosting provider and network-wide threat patterns.

Network Identity

AS132298
Antaranga Dot Com Ltd
BD BD

Network Threat Assessment

1/10
This network appears to be relatively clean with very low threat indicators.

Network Statistics

7
Total IPs Monitored
955
Total Reports
136.4
Reports per IP

Network Context

This IP address belongs to Antaranga Dot Com Ltd (AS132298), which manages 7 IP addresses in our monitoring system. Out of these, 955 have been reported for suspicious activities, resulting in a network-wide threat level of 1/10.

Network status: This network appears to be well-maintained with low threat indicators.

Comparative Analysis

How this IP compares to others in our threat intelligence database

95 %

Global Threat Ranking

This IP is more threatening than 95% of all IPs in our database.

Top 10% Most Dangerous

Global Comparison

Compared against 220,044 reported IPs worldwide

Threat Level 10/10 avg: 5.5 ++
Total Reports 311 avg: 22 ++

Network Comparison

Compared against 14 IPs in ASN 132298

Threat Level 10/10 network avg: 7.9 +
Total Reports 311 network avg: 70 ++
Network Antaranga Dot Com Ltd has overall threat level 1/10

Geographic Comparison

Compared against 895 IPs in BD

Threat Level 10/10 country avg: 5.9 ++
Total Reports 311 country avg: 16 ++
Indicators:
++ Much Higher + Higher = Similar - Lower -- Much Lower

Geographic Threat Distribution

206,192 threat incidents tracked globally • Last 24h: 17,575 Logs

FEED

Top Threat Sources

  1. 01
    US
    United States US
    42,552 20.6%
  2. 02
    IN
    India IN
    33,078 16%
  3. 03
    CN
    China CN
    27,693 13.4%
  4. 04
    BR
    Brazil BR
    11,123 5.4%
  5. 05
    DE
    Germany DE
    7,851 3.8%
  6. 06
    SG
    Singapore SG
    6,834 3.3%
  7. 07
    ID
    Indonesia ID
    6,133 3%
  8. 08
    PK
    Pakistan PK
    5,417 2.6%
  9. 09
    RU
    Russia RU
    5,221 2.5%
  10. 10
    NL
    Netherlands NL
    4,725 2.3%

+40 more countries

THREAT LEVEL
LOW MED HIGH

Geographic data is aggregated and anonymized. No personal information displayed.

Map: simplemaps.com (MIT License)

Related IPs

Other IPs associated with this address through network or behavioral similarity

Export & Firewall Rules

Download threat data or generate firewall rules to block this IP

JSON Report

Structured data format for integration with security tools and SIEM systems.

{
    "ip_address": "103.237.38.14",
    "threat_level": 10,
    "confidence_score": 80,
    "total_reports": 311,
    "country_code": "BD",
    "isp_name": "Antaranga Dot Com Ltd",
    "asn": "132298",
    "first_reported": "2026-03-04 04:14:57",
    "last_reported": "2026-04-20 21:13:14",
    "exported_at": "2026-06-19T12:39:04+02:00",
    "source": "https://reportedip.de/ip/103.237.38.14/"
}

GDPR Compliant: Exports contain only IP-related threat data. No personal information or reporter details are included.