154.159.238.89

Activity Trending Down This IP hasn't received reports recently, which causes the score to decay.
Abuse confidence score ?
35% Elevated
25 reports
18 reporters Β· latest 1 week ago
ISP Airtel Networks Kenya Limited
Usage Type Mobile ISP
ASN AS36926
Hostname(s) 89-238-159-154.r.airtelkenya.com
Domain Name airtel.in
Country πŸ‡°πŸ‡ͺ Kenya
City Kisumu, Kisumu County

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Reports Activity

Example preview

Report Categories (Last 60 Days)

Example preview

Top Reporter Countries (Last 60 Days)

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 154.159.238.89

This IP address has been reported a total of 25 times from 18 distinct sources. 154.159.238.89 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 5 reports; Germany with 2 reports; Australia with 1 report. The most common categories in these recent reports were: Bad Web Bot 7 times; Web App Attack 4 times; Brute-Force 2 times; Hacking 1 time; DDoS Attack 1 time.

Reporter IoA Timestamp (UTC) Comment Categories
πŸ‡©πŸ‡ͺ ghostwarriors
Webpage scraping
Brute-Force Bad Web Bot Web App Attack
πŸ‡©πŸ‡ͺ FD-IX
Fail2Ban: WordPress XML-RPC brute-force attack detected.
Bad Web Bot Web App Attack
πŸ‡¦πŸ‡Ί QT
Unauthorised WordPress admin login attempted at 2026-09-29 18:52:16 +1000
Web App Attack
Anonymous
IP matched detection query 20 more in short time bad rqs.
Brute-Force Web App Attack Hacking
πŸ‡ΊπŸ‡Έ ι¬Όε½±233
Bad Web Bot
πŸ‡ΊπŸ‡Έ ι¬Όε½±233
Bad Web Bot
πŸ‡ΊπŸ‡Έ ι¬Όε½±233
Bad Web Bot
πŸ‡ΊπŸ‡Έ kosada.com
Web bot: denial-of-service flood
DDoS Attack Bad Web Bot
πŸ‡ΊπŸ‡Έ floreriaexpress
Bad Web Bot
πŸ‡ΊπŸ‡Έ kosada.com
Web bot: denial-of-service flood
DDoS Attack Bad Web Bot
Anonymous
Unauthorized connection attempt
Port Scan Hacking Exploited Host
Anonymous
Unauthorized connection attempt on Port 23
Port Scan Hacking Exploited Host
πŸ‡«πŸ‡· security.rdmc.fr
Port Scan Attack proto:TCP src:58251 dst:23
Port Scan
πŸ‡¨πŸ‡¦ polycoda
πŸ₯Ά Part of massive botnet scraping campaign that nearly turned into a DDoS on 2025-11-27
DDoS Attack
Anonymous
scanning http requests from known botnet
Web App Attack

Showing 1 to 15 of 25 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩

Recently Reported IPs:

πŸ‡¬πŸ‡§ 165.227.228.51
πŸ‡ΊπŸ‡Έ 104.197.133.217
πŸ‡·πŸ‡Ί 87.229.254.207
πŸ‡³πŸ‡± 45.148.10.157
πŸ‡¬πŸ‡­ 41.139.60.247
πŸ‡¨πŸ‡³ 221.1.214.234
πŸ‡·πŸ‡Ί 188.232.28.238
πŸ‡ΊπŸ‡Έ 172.236.112.138
πŸ‡¬πŸ‡§ 139.59.171.235
πŸ‡¦πŸ‡· 138.117.14.70
πŸ‡ΊπŸ‡Έ 138.68.41.255
πŸ‡ΊπŸ‡Έ 136.67.166.57
πŸ‡ΊπŸ‡Έ 100.29.192.104
πŸ‡ΊπŸ‡Έ 66.132.195.51
πŸ‡©πŸ‡ͺ 34.185.207.157
πŸ‡ΈπŸ‡¬ 15.235.192.186
πŸ‡³πŸ‡± 213.126.211.10
πŸ‡§πŸ‡· 205.210.31.141
πŸ‡¦πŸ‡· 148.222.222.234
πŸ‡¬πŸ‡§ 138.68.180.19