AbuseIPDB » 154.64.244.9
154.64.244.9 was found in our database!
This IP was reported 8 times. Confidence of
Abuse
is 30% : ?
ISP
NetLab Global
Usage Type
Commercial
ASN
AS979
Domain Name
as979.net
Country
ππ°
Hong Kong
City
Hong Kong
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 154.64.244.9 :
This IP address has been reported a total of
8
times from
6 distinct
sources.
154.64.244.9 was first reported on
May 21st 2026 , and the most recent report was
1 week ago .
Old Reports:
The most recent abuse report for this IP address is from
1 week ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
π©πͺ
phil2k
2026-05-24 19:52:08
(1 week ago)
portscan on multiple TCP ports :
Firewall: Within 2026-05-21 15:37:42 - 2026-05-22 08:27:43 CEST(+02 ...
show more
portscan on multiple TCP ports :
Firewall: Within 2026-05-21 15:37:42 - 2026-05-22 08:27:43 CEST(+0200) identified: port scan from 154.64.244.9/32 on uncommon port/s: 5173(tcp:5173),5175(tcp:5175),5000(tcp:5000),4098(tcp:4098),4096(tcp:4096) (5 trials)
Fail2ban: Within 2026-05-21 15:37:42 - 2026-05-22 08:27:44 CEST(+0200) banned: 9 times by fail2ban[firewall]; 9 times by fail2ban[recidive]
show less
Port Scan
πΊπΈ
technash
2026-05-22 20:50:00
(2 weeks ago)
Port scanning detection [Fortinet/Sentinel]. Deny/drop traffic.
Port Scan
π¨π¦
unullable
2026-05-22 08:05:24
(2 weeks ago)
CPoT triggered at tcp/4000.ACCESSED: /session
Hacking
πΊπΈ
billybobby
2026-05-22 07:18:30
(2 weeks ago)
Blocked by UFW [4097/tcp] | SPT: 53959 | TTL: 242 | LEN: 44 | TOS: 0x00 β’ Reported by: github.com/se ...
show more
Blocked by UFW [4097/tcp] | SPT: 53959 | TTL: 242 | LEN: 44 | TOS: 0x00 β’ Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
πΈπ¬
drewf.ink
2026-05-22 04:04:14
(2 weeks ago)
[04:04] Port scanning. Port(s) scanned: TCP/8080
Port Scan
πΈπ¬
drewf.ink
2026-05-22 03:14:14
(2 weeks ago)
[03:14] Port scanning. Port(s) scanned: TCP/5000
Port Scan
πΊπΈ
LotPhantom
2026-05-21 23:27:33
(2 weeks ago)
2026-05-21T23:25:12.536794+00:00 bridginggaps kernel: [UFW BLOCK] IN=eth0 OUT= MAC=2e:bc:64:1d:2c:e1 ...
show more
2026-05-21T23:25:12.536794+00:00 bridginggaps kernel: [UFW BLOCK] IN=eth0 OUT= MAC=2e:bc:64:1d:2c:e1:fe:00:00:00:01:01:08:00 SRC=154.64.244.9 DST=157.230.217.55 LEN=44 TOS=0x00 PREC=0x00 TTL=240 ID=32338 PROTO=TCP SPT=45606 DPT=8080 WINDOW=1025 RES=0x00 SYN URGP=0
2026-05-21T23:27:32.762492+00:00 bridginggaps kernel: [UFW BLOCK] IN=eth0 OUT= MAC=2e:bc:64:1d:2c:e1:fe:00:00:00:01:01:08:00 SRC=154.64.244.9 DST=157.230.217.55 LEN=44 TOS=0x00 PREC=0x00 TTL=240 ID=13509 PROTO=TCP SPT=45622 DPT=8084 WINDOW=1025 RES=0x00 SYN URGP=0
...
show less
Port Scan
Hacking
π©πͺ
phil2k
2026-05-21 22:44:17
(2 weeks ago)
fail2ban:firewall:2026-05-22T00:42:08.187815+02:00 <SRV> firewall: filter IN=<ANONYMIZED_INTERFACE> ...
show more
fail2ban:firewall:2026-05-22T00:42:08.187815+02:00 <SRV> firewall: filter IN=<ANONYMIZED_INTERFACE> OUT= MAC=<ANONYMIZED_MAC> SRC=154.64.244.9 DST=<ANONYMIZED_IP> LEN=44 TOS=0x00 PREC=0x00 TTL=243 ID=16098 PROTO=TCP SPT=43035 DPT=5175 WINDOW=1025 RES=0x00 SYN URGP=0
2026-05-22T00:44:14.273699+02:00 <SRV> firewall: filter IN=<ANONYMIZED_INTERFACE> OUT= MAC=<ANONYMIZED_MAC> SRC=154.64.244.9 DST=<ANONYMIZED_IP> LEN=44 TOS=0x00 PREC=0x00 TTL=243 ID=54279 PROTO=TCP SPT=43035 DPT=5000 WINDOW=1025 RES=0x00 SYN URGP=0
show less
DDoS Attack
Port Scan
Showing 1 to
8
of 8 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown π©
Recently Reported IPs: