152.53.180.226

Recent Activity This IP has received recent abuse reports, which causes the score to increase.
Abuse confidence score ?
90% Critical
41 reports
18 reporters ยท latest 9 hours ago
ISP netcup GmbH
Usage Type Data Center/Web Hosting/Transit
ASN AS197540
Hostname(s) v2202506282687353340.happysrv.de
Domain Name netcup.de
Country ๐Ÿ‡ฉ๐Ÿ‡ช Germany
City Nuremberg, Bavaria

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Reports Activity

Example preview

Report Categories (Last 60 Days)

Example preview

Top Reporter Countries (Last 60 Days)

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 152.53.180.226

This IP address has been reported a total of 41 times from 18 distinct sources. 152.53.180.226 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: Singapore with 17 reports; France with 12 reports; Germany with 9 reports. The most common categories in these recent reports were: Brute-Force 27 times; Hacking 19 times; Port Scan 15 times; SSH 4 times; IoT Targeted 1 time.

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡ซ๐Ÿ‡ท edoram
SSH brute-force from honeypot. 95 attempts in 24h, 0 unique usernames tried.
Brute-Force SSH
๐Ÿ‡ซ๐Ÿ‡ท Kejult
Port Scan
๐Ÿ‡ซ๐Ÿ‡ท renzo64
SSH Brute-Force
๐Ÿ‡ณ๐Ÿ‡ฑ knock
Knock-Knock honeypot brute-force: RDP (163 total hits)
Brute-Force
๐Ÿ‡ฉ๐Ÿ‡ช DoSammy
neu-RDP-Brute-Force
Brute-Force
๐Ÿ‡ฉ๐Ÿ‡ช Kejult
Port Scan
๐Ÿ‡ฉ๐Ÿ‡ช comped
Brute-Force
๐Ÿ‡ฉ๐Ÿ‡ช numberstorm
Port Scan Hacking Brute-Force IoT Targeted
๐Ÿ‡ซ๐Ÿ‡ท geeek
Port scanning: 3389 TCP Blocked
Port Scan
๐Ÿ‡ฉ๐Ÿ‡ช Luhte
Port Scan Hacking
๐Ÿ‡ซ๐Ÿ‡ท thecocasio
Port Scan
๐Ÿ‡ต๐Ÿ‡ฑ nfsec.pl
Detected: TCP scan on port: 3389 with flags: SYN
Port Scan
๐Ÿ‡ซ๐Ÿ‡ท Coco Bongo
1790792677 - 09/30/2026 20:24:37 Host: 152.53.180.226/152.53.180.226 Port: 3389 TCP Blocked ...
Port Scan
๐Ÿ‡ธ๐Ÿ‡ฌ drewf.ink
[07:20] Connected to RDP honeypot (routing cookie identified client as mstshash='hello')
Brute-Force Hacking
๐Ÿ‡ธ๐Ÿ‡ฌ drewf.ink
[06:33] Connected to RDP honeypot (routing cookie identified client as mstshash='hello')
Brute-Force Hacking

Showing 1 to 15 of 41 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡ป๐Ÿ‡ณ 221.133.3.83
๐Ÿ‡ณ๐Ÿ‡ฑ 204.76.203.18
๐Ÿ‡จ๐Ÿ‡ผ 186.2.187.38
๐Ÿ‡ฎ๐Ÿ‡ฉ 182.253.79.194
๐Ÿ‡ฎ๐Ÿ‡ณ 111.223.27.97
๐Ÿ‡จ๐Ÿ‡ณ 58.209.234.84
๐Ÿ‡จ๐Ÿ‡ณ 47.104.181.46
๐Ÿ‡บ๐Ÿ‡ธ 45.61.115.47
๐Ÿ‡ฐ๐Ÿ‡ท 211.219.254.187
๐Ÿ‡ง๐Ÿ‡ฉ 203.18.158.143
๐Ÿ‡บ๐Ÿ‡ธ 185.191.171.16
๐Ÿ‡ช๐Ÿ‡จ 181.211.35.45
๐Ÿ‡บ๐Ÿ‡ธ 172.104.11.46
๐Ÿ‡บ๐Ÿ‡ธ 162.223.10.11
๐Ÿ‡บ๐Ÿ‡ธ 162.158.154.20
๐Ÿ‡ต๐Ÿ‡ฐ 154.192.169.12
๐Ÿ‡ป๐Ÿ‡ณ 115.146.121.179
๐Ÿ‡ซ๐Ÿ‡ท 91.196.152.61
๐Ÿ‡ณ๐Ÿ‡ฑ 91.92.42.17
๐Ÿ‡บ๐Ÿ‡ธ 45.79.109.4