AbuseIPDB » 104.152.52.57
104.152.52.57 was found in our database!
This IP was reported 1,544 times. Confidence of Abuse is 100%: ?
| ISP | Rethem Hosting LLC |
|---|---|
| Usage Type | Data Center/Web Hosting/Transit |
| ASN | AS14987 |
| Hostname(s) |
internettl.org |
| Domain Name | rethemhosting.net |
| Country | πΊπΈ United States of America |
| City | Chicago, Illinois |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 104.152.52.57:
This IP address has been reported a total of 1,544 times from 333 distinct sources. 104.152.52.57 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| π³π± donarev419 |
Connection to port 2989 with data transfer.
Data preview: SSH-2.0-Go
|
Port Scan Hacking | ||
| π¬π§ gbzret4d |
|
SSH | ||
| π³π΅ radheykrishna.com.np |
|
Port Scan | ||
| πΊπΈ donarev419 |
Connection to port 500 with data transfer.
Data preview:
|
Port Scan Hacking | ||
| π³π± donarev419 |
Connection to port 4449 with data transfer.
Data preview:
|
Port Scan Hacking | ||
| π©πͺ anycast_ac |
[mirai-detector honeypot] Inbound attack against our honeypot on tcp/9090 (generic).
|
DDoS Attack IoT Targeted Brute-Force | ||
| πΊπΈ sandra361 |
|
Port Scan | ||
| π¬π§ andypiper |
CrowdSec ban for AbuseIPDB Top List
|
Brute-Force Web App Attack | ||
| π©πͺ Axel |
[2026-06-06 01:00:32 UTC] Honeypot Elasticsearch Alt connection attempt | AXFRA HONEYPOT
|
Hacking | ||
| πΊπΈ Xarcotic |
SSH login on honeypot.
|
Brute-Force SSH | ||
| π«π· Elysium Security |
Mass port scanning on a whole network
|
Port Scan | ||
| πΊπΈ LockBlock |
2026-06-05 17:26:03: Port scan detected from 104.152.52.57 on port 119 of racknerd-e7e1a9
|
Port Scan | ||
| π¦πΊ LiftUp Hosting |
Honeypot hit: Unauthorized traffic (3 bytes of payload); 30705 [3], 3352 [1] TCP
|
Port Scan | ||
| π²π³ Public CSIRT/CC of Mongolia |
Honeypot hit: Large payload (1487 bytes); 3471 [1] TCP
|
Hacking | ||
| πΈπ¬ drewf.ink |
[00:21] Port scanning. Port(s) scanned: TCP/3306
|
Port Scan |
Showing 1 to 15 of 1544 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown π©