AbuseIPDB » 131.196.58.252
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
Top Reporter Countries (Last 60 Days)
Example previewReport Categories (Last 60 Days)
Example previewIP Abuse Reports for 131.196.58.252:
This IP address has been reported a total of 15 times from 10 distinct sources. 131.196.58.252 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: Brazil with 1 report; Switzerland with 1 report; Germany with 1 report. The most common categories in these recent reports were: Port Scan 2 times; Bad Web Bot 2 times.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| 🇧🇷 cibersecoptidata |
Port scan / Unsolicited traffic.
|
Port Scan | ||
| 🇺🇸 gui-ying233 |
|
Bad Web Bot | ||
| Anonymous |
denied traffic to a non-approved destination port. destination port 41969.
|
Port Scan | ||
| 🇨🇭 backslash |
block ruleset 3FEF5865CE60FBC6A08037CFE264BD0C46373214
|
Bad Web Bot | ||
| 🇩🇪 SMARTNET |
Aisuru(Mirai variant) DDoS | Incident ID: 6ed80dcf-192e-41b9-b3cf-8e7356812aa9
|
DDoS Attack | ||
| Anonymous |
scanning http requests from known botnet
|
Web App Attack | ||
| Anonymous |
scanning http requests from known botnet
|
Web App Attack | ||
| 🇧🇷 mrcrassi |
Automated SYN flood detection via Mikrotik - 2025-10-25T12:51:22-03:00
|
DDoS Attack | ||
| 🇧🇷 mrcrassi |
Automated SYN flood detection via Mikrotik - 2025-10-23T12:47:28-03:00
|
DDoS Attack | ||
| 🇨🇭 backslash |
block ruleset A5EE6C8F745F0934168261886A3817E5C386412A
|
Bad Web Bot | ||
| 🇺🇸 rsiddall |
IP used faked sender domain, rejected due to DMARC policy, probable botnet member or drive-by VM
|
Email Spam | ||
| 🇺🇸 rsiddall |
IP used faked sender domain, rejected due to DMARC policy, probable botnet member or drive-by VM
|
Email Spam | ||
| 🇺🇸 anon333 |
Hacker syslog review 1757306153
|
Hacking | ||
| Anonymous |
Ports: 2077,2078,2082,2083,2086,2087,2095,2096; Direction: 0; Trigger: LF_DISTATTACK
|
Brute-Force SSH | ||
| Anonymous |
Ports: 2077,2078,2082,2083,2086,2087,2095,2096; Direction: 0; Trigger: LF_DISTATTACK
|
Brute-Force SSH |
Showing 1 to 15 of 15 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩