AbuseIPDB » 20.127.154.194
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
Top Reporter Countries (Last 60 Days)
Example previewReport Categories (Last 60 Days)
Example previewIP Abuse Reports for 20.127.154.194:
This IP address has been reported a total of 116 times from 60 distinct sources. 20.127.154.194 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 55 reports; Germany with 17 reports; France with 7 reports. The most common categories in these recent reports were: Port Scan 99 times; Hacking 19 times; Brute-Force 15 times; Web App Attack 9 times; SSH 4 times; Other 10 times.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| 🇪🇸 raiolanetworks.com |
|
Port Scan | ||
| 🇺🇸 MPL |
tcp/18245 (2 or more attempts)
|
Port Scan | ||
| 🇩🇪 Admins@FBN |
IPS:drop <match> dstport=8580
|
Brute-Force Exploited Host | ||
| 🇺🇸 MPL |
tcp/3351
|
Port Scan | ||
| 🇺🇸 sumnone |
Port probing on unauthorized port 8000
|
Port Scan Hacking Exploited Host | ||
| 🇺🇸 RAP |
2026-08-30 08:12:31 UTC Unauthorized activity to TCP port 8443. Web App
|
Port Scan Web App Attack | ||
| 🇺🇸 MPL |
tcp/512
|
Port Scan | ||
| 🇺🇸 NetVexor |
Attack source identified and submitted via NetVexor BGP Blackhole Network
|
Port Scan Hacking Brute-Force | ||
| 🇧🇷 SOC-BR |
|
Port Scan Hacking | ||
| 🇺🇸 MPL |
tcp ports: 1930,18480 (3 or more attempts)
|
Port Scan | ||
| 🇺🇸 MPL |
tcp ports: 2000,1930 (3 or more attempts)
|
Port Scan | ||
| 🇺🇸 gu-alvareza |
ZGrab.Scanner
|
Port Scan | ||
| 🇧🇷 noconex |
|
Port Scan Brute-Force SSH | ||
| 🇩🇪 David Ferneding |
|
Port Scan | ||
| 🇺🇸 drewf.ink |
[22:18] Connected to RDP honeypot
|
Brute-Force Hacking |
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩