2.59.21.47
| ISP | Black HOST Ltd. |
|---|---|
| Usage Type | Data Center/Web Hosting/Transit |
| ASN | AS12989 |
| Hostname(s) | scanner-info.rootevidence.com |
| Domain Name | black.host |
| Country | ๐ฆ๐น Austria |
| City | Vienna, Vienna |
ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 2.59.21.47
This IP address has been reported a total of 25 times from 21 distinct sources. 2.59.21.47 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 3 reports; Canada with 1 report; Germany with 1 report. The most common categories in these recent reports were: Web App Attack 5 times; Port Scan 2 times; Brute-Force 1 time; Bad Web Bot 1 time; Hacking 1 time; Other 2 times.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐บ๐ธ RAP |
2026-10-09 02:08:01 UTC Unauthorized activity to TCP port 8443. Web App
|
Port Scan Web App Attack | ||
| ๐ฏ๐ต gomasy |
|
Web App Attack | ||
| ๐ฉ๐ช lolyay |
|
Web App Attack Bad Web Bot | ||
| Anonymous |
Fuzzing/Looking for credentials files.
|
Brute-Force Web App Attack | ||
| ๐ธ๐ฐ GOVCERT |
Excessive Firewall Denies
|
DDoS Attack Web Spam | ||
| ๐ญ๐บ bcsaba |
Suricata: Alert - NON-HTTP traffic on Port 80 detected - Blocked
|
Web App Attack | ||
| ๐บ๐ธ RAP |
2026-08-19 20:48:32 UTC Unauthorized activity to TCP port 23. Telnet
|
Port Scan | ||
| ๐จ๐ฆ alexbfr |
Fail2Ban report from custom-honeypot; automated SMB honeypot detection.
|
Hacking | ||
| ๐บ๐ธ legionMCCXV |
Non-HTTP protocol data (e.g. MQTT/TLS handshake bytes) sent to HTTP(S) port.
|
Port Scan Hacking | ||
| ๐ช๐ธ masterguru |
|
Port Scan | ||
| ๐ธ๐ฐ GOVCERT |
Excessive Firewall Denies
|
DDoS Attack Web Spam | ||
| ๐ฆ๐บ FireGuard Server |
Blocked by os-abuseipdb; 9 hits, proto=tcp, ports=443
|
Port Scan Hacking | ||
| ๐ธ๐ฐ GOVCERT |
Excessive Firewall Denies
|
DDoS Attack Web Spam | ||
| ๐บ๐ธ jhuisi |
Mod Security Hit
|
Web App Attack | ||
| ๐บ๐ธ en0 |
|
Port Scan |
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ