IP Address

103.237.38.11

IPv4 Public
BD BD
AS132298
Antaranga Dot Com Ltd
319 Reports
This IP is on the Blacklist High confidence threat - blocking recommended
10/10 Threat
79% Confidence
319 Reports

Threat Intelligence Analysis

AI-generated security assessment based on aggregated threat data

Top 10% High Threat
BD
BD Location
Antaranga Dot Com Ltd ASN 132298
319 Reports
Honeypot Data Source

Maximum Danger

IP 103.237.38.11 is a critical-risk address originating from Bangladesh, operated by Antaranga Dot Com Ltd under ASN AS132298, with a threat level of 10 out of 10 and a 79% confidence score based on 319 total abuse reports. This IP has been linked exclusively to hacking activity, representing systematic intrusion attempts and unauthorized access campaigns detected over approximately two months in early 2026. The volume and consistency of reports indicate persistent threatening behavior rather than opportunistic scanning.

The detection profile for 103.237.38.11 draws from 20 automated honeypot sensors that flagged the address between March and April 2026, with the last confirmed report in April 2026. The honeypot infrastructure recorded suricata alerts indicating spurious retransmission patterns alongside active attack connections, suggesting the IP was engaged in reconnaissance and exploitation attempts against exposed network services. With 319 abuse reports filed against this single address, the sustained attention from detection systems underscores a pattern of repeated hostile activity rather than transient scanning. The Bangladesh-based network operator Antaranga Dot Com Ltd manages the autonomous system from which this threatening traffic originated.

The dominant threat category for 103.237.38.11 is hacking, which encompasses intrusion attempts, vulnerability exploitation and unauthorized access attempts against target systems. The spurious retransmission behavior detected is commonly associated with advanced reconnaissance techniques or the modification of ongoing attack streams to evade detection. For any organization running exposed services such as SSH, RDP, web applications or database interfaces, this IP poses a concrete risk of credential compromise, data exfiltration or system takeover if effective countermeasures are not in place.

Network defenders should immediately block 103.237.38.11 at the firewall level given its maximum threat rating and confirmed malicious activity. Implementing automated blocking mechanisms such as fail2ban or equivalent dynamic denial-of-service tools that monitor honeypot and log data can provide immediate, scalable response. All exposed services should enforce strong, unique credentials alongside multi-factor authentication to prevent credential-stuffing and brute-force success. Regular vulnerability scanning and prompt patching of software on internet-facing systems will reduce the attack surface this and similar IPs attempt to exploit.

More threatening than 94% of monitored IPs

Threat Categories

Hacking 30

Technical Details

General hacking activity includes various intrusion attempts, exploitation of vulnerabilities, and unauthorized access attempts.

Recommended Mitigations

Keep systems patched, implement intrusion detection, and follow security best practices.

Reputable Network

This IP is hosted on a network (ASN 132298) with generally good reputation. The ISP Antaranga Dot Com Ltd maintains standard security practices.

The malicious activity may represent an isolated compromised system rather than systematic abuse.

Security Recommendations

Continue monitoring for emerging patterns.

This analysis is automatically generated from aggregated, anonymized threat intelligence data. No personal information is displayed or stored. Assessment accuracy depends on available data volume and diversity.

Reputation Summary

Threat Level 10/10 Critical
Critical
Activity Frequency 0/10 Inactive
Confidence Score 70% High Confidence

Confidence History

11. Apr 2026 - 13. Apr 2026
79% Current
Stable Trend

The confidence score shows the reliability of the threat assessment based on the number and quality of reports.

Security Reports (30)

Date Categories Source Confidence
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%

Technical Details

Basic Information

IP Address
103.237.38.11
IP Version
IPv4
Network Type
Public
Tor Network
No
Network Class
Class A

Geolocation

Country
BD BD
ASN
AS132298
ISP
Antaranga Dot Com Ltd

DNS Information

Reverse DNS
None
PTR Record
No
Connection Type
Static

Statistics

Total Reports
319
First Reported
3 Mar 2026
Last Reported
13 Apr 2026, 00:05

Network Reputation

Analysis of the entire network (ASN) that this IP address belongs to, providing context about the hosting provider and network-wide threat patterns.

Network Identity

AS132298
Antaranga Dot Com Ltd
BD BD

Network Threat Assessment

1/10
This network appears to be relatively clean with very low threat indicators.

Network Statistics

7
Total IPs Monitored
955
Total Reports
136.4
Reports per IP

Network Context

This IP address belongs to Antaranga Dot Com Ltd (AS132298), which manages 7 IP addresses in our monitoring system. Out of these, 955 have been reported for suspicious activities, resulting in a network-wide threat level of 1/10.

Network status: This network appears to be well-maintained with low threat indicators.

Comparative Analysis

How this IP compares to others in our threat intelligence database

94 %

Global Threat Ranking

This IP is more threatening than 94% of all IPs in our database.

Top 10% Most Dangerous

Global Comparison

Compared against 220,279 reported IPs worldwide

Threat Level 10/10 avg: 5.5 ++
Total Reports 319 avg: 22 ++

Network Comparison

Compared against 14 IPs in ASN 132298

Threat Level 10/10 network avg: 8.0 +
Total Reports 319 network avg: 70 ++
Network Antaranga Dot Com Ltd has overall threat level 1/10

Geographic Comparison

Compared against 895 IPs in BD

Threat Level 10/10 country avg: 5.9 ++
Total Reports 319 country avg: 16 ++
Indicators:
++ Much Higher + Higher = Similar - Lower -- Much Lower

Geographic Threat Distribution

206,481 threat incidents tracked globally • Last 24h: 17,642 Logs

FEED

Top Threat Sources

  1. 01
    US
    United States US
    42,588 20.6%
  2. 02
    IN
    India IN
    33,164 16.1%
  3. 03
    CN
    China CN
    27,730 13.4%
  4. 04
    BR
    Brazil BR
    11,134 5.4%
  5. 05
    DE
    Germany DE
    7,858 3.8%
  6. 06
    SG
    Singapore SG
    6,837 3.3%
  7. 07
    ID
    Indonesia ID
    6,141 3%
  8. 08
    PK
    Pakistan PK
    5,434 2.6%
  9. 09
    RU
    Russia RU
    5,225 2.5%
  10. 10
    NL
    Netherlands NL
    4,731 2.3%

+40 more countries

THREAT LEVEL
LOW MED HIGH

Geographic data is aggregated and anonymized. No personal information displayed.

Map: simplemaps.com (MIT License)

Related IPs

Other IPs associated with this address through network or behavioral similarity

Export & Firewall Rules

Download threat data or generate firewall rules to block this IP

JSON Report

Structured data format for integration with security tools and SIEM systems.

{
    "ip_address": "103.237.38.11",
    "threat_level": 10,
    "confidence_score": 79,
    "total_reports": 319,
    "country_code": "BD",
    "isp_name": "Antaranga Dot Com Ltd",
    "asn": "132298",
    "first_reported": "2026-03-03 17:17:36",
    "last_reported": "2026-04-13 00:05:03",
    "exported_at": "2026-06-19T15:54:50+02:00",
    "source": "https://reportedip.de/ip/103.237.38.11/"
}

GDPR Compliant: Exports contain only IP-related threat data. No personal information or reporter details are included.