AbuseIPDB » 154.41.209.212
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
Top Reporter Countries (Last 60 Days)
Example previewReport Categories (Last 60 Days)
Example previewIP Abuse Reports for 154.41.209.212:
This IP address has been reported a total of 41 times from 27 distinct sources. 154.41.209.212 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: Germany with 7 reports; United States of America with 5 reports; France with 3 reports. The most common categories in these recent reports were: Port Scan 16 times; Hacking 9 times; Brute-Force 5 times; Exploited Host 2 times.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| 🇸🇬 drewf.ink |
[08:17] Probed the MSSQL honeypot (PRELOGIN handshake only, no login attempt)
|
Brute-Force Hacking | ||
| 🇹🇷 Domainhizmetleri.com |
Source: DH Hunter (Honeypot) | Reason: Portscan (1 ports, 1 attempts in 480h, non-TR)
|
Port Scan | ||
| 🇩🇪 zupan |
|
Port Scan | ||
| 🇩🇪 mist x |
Honeypot SMB Probe: Port 445 SMB scan and exploit handshake probe.
|
Port Scan Hacking | ||
| 🇩🇪 David Ferneding |
|
Port Scan | ||
| 🇺🇸 MPL |
tcp/445
|
Port Scan | ||
| 🇺🇸 MPL |
tcp/445 (7 or more attempts)
|
Port Scan | ||
| 🇺🇸 MPL |
tcp/445 (2 or more attempts)
|
Port Scan | ||
| 🇳🇱 EGP Abuse Dept |
Unsolicited connection to port 445
|
Port Scan Hacking | ||
| 🇺🇸 xmission.com |
|
Port Scan | ||
| 🇫🇷 ✨ |
|
Port Scan Brute-Force | ||
| 🇩🇪 iNetWorker |
firewall-block, port(s): 445/tcp
|
Port Scan | ||
| 🇧🇷 diego |
|
Hacking | ||
| 🇧🇷 somosbr |
[2026-09-17T16:58:33Z] Unsolicited scan from 154.41.209.212 to port 1433/tcp
|
Port Scan | ||
| 🇨🇿 Countryman |
repeated unauthorized connection attempts, host sweep, port 445
|
Hacking Brute-Force |
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩