AbuseIPDB » 2001:470:1:332::28
2001:470:1:332::28 was found in our database!
This IP was reported 2,952 times. Confidence of Abuse is 100%: ?
Important Note: Public IPv6 addresses may implement the SLAAC privacy extension. With this, the interface identifier is randomly generated. The SLAAC privacy extension also implements a time out, which is configurable, so that the IPv6 interface addresses will be discarded and a new interface identifier is generated.
| ISP | The Shadowserver Foundation, Inc. |
|---|---|
| Usage Type | Fixed Line ISP |
| ASN | AS6939 |
| Hostname(s) |
scan-46p.shadowserver.io |
| Domain Name | shadowserver.org |
| Country | ๐บ๐ธ United States of America |
| City | Pleasanton, California |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 2001:470:1:332::28:
This IP address has been reported a total of 2,952 times from 194 distinct sources. 2001:470:1:332::28 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐บ๐ธ drewf.ink |
[04:42] Port scanning. Port(s) scanned: TCP/83, TCP/995
|
Port Scan | ||
| ๐ฉ๐ช VentryShield |
p0t honeypot: unknown connection on port 8443/tcp, 128 bytes received from client
|
Port Scan | ||
| Anonymous |
Fail2Ban triggered
|
Web App Attack | ||
| ๐ฉ๐ช VentryShield |
p0t honeypot: unknown connection on port 8001/tcp, 231 bytes received from client
|
Port Scan | ||
| ๐ซ๐ท LRob |
SSH brute-force: unauthorised login attempts | 2026-08-24 08:29 UTC
|
Brute-Force SSH | ||
| ๐บ๐ธ thororen |
|
Port Scan | ||
| ๐ฉ๐ช ecs.ge |
Automatic Fail2Ban report from jail plesk-modsecurity: multiple matching events detected.
|
Web App Attack Hacking | ||
| ๐ฌ๐ง paradoxnetworks |
|
Brute-Force SSH | ||
| ๐ฉ๐ช LRob |
Unauthorised SSH login attempts
|
Brute-Force SSH | ||
| ๐ฉ๐ช Benny Pedersen |
|
Brute-Force | ||
| ๐ฉ๐ช Viveronese |
SASL LOGIN authentication failed
|
Brute-Force | ||
| ๐ท๐ด SpamStopper |
Dovecot SSL Probe - IMAP Gate Knocking
|
Brute-Force Bad Web Bot | ||
| ๐ฉ๐ช VentryShield |
p0t honeypot: unknown connection on port 800/tcp, 218 bytes received from client
|
Port Scan | ||
| ๐ฉ๐ช Lino Project |
2001:470:1:332::28 - - [23/Aug/2026:02:54:37 +0200] "\x16\x03\x01" 400 392 "-" "-"
...
|
Blog Spam | ||
| ๐น๐ผ CowGL |
|
Brute-Force SSH |
Showing 1 to 15 of 2952 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ