38.101.89.149

Recent Activity This IP has received recent abuse reports, which causes the score to increase.
Abuse confidence score ?
71% Elevated
36 reports
25 reporters ยท latest 1 day ago
ISP Cogent Communications, LLC
Usage Type Fixed Line ISP
ASN AS272403
Hostname(s) customer-38-101-89-149.orbithtelecom.mx
Domain Name cogentco.com
Country ๐Ÿ‡ฒ๐Ÿ‡ฝ Mexico
City Ixtlahuaca de Rayon, Mexico

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Reports Activity

Example preview

Report Categories (Last 60 Days)

Example preview

Top Reporter Countries (Last 60 Days)

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 38.101.89.149

This IP address has been reported a total of 36 times from 25 distinct sources. 38.101.89.149 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: Germany with 8 reports; United States of America with 7 reports; France with 6 reports. The most common categories in these recent reports were: Port Scan 25 times; Brute-Force 14 times; SSH 14 times; Hacking 7 times; Exploited Host 1 time; Other 1 time.

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡ง๐Ÿ‡ท rotabrrmds
Automated report by Fail2Ban - jail ufw-scan
Port Scan
๐Ÿ‡ฉ๐Ÿ‡ช DasDuo
Port Scan Hacking Brute-Force
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp ports: 22,23 (22 or more attempts)
Port Scan
๐Ÿ‡น๐Ÿ‡ญ Sawasdee
SSH break in attempt ...
SSH
๐Ÿ‡ซ๐Ÿ‡ท security.rdmc.fr
Port Scan Attack proto:TCP src:58196 dst:23
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ sumnone
Port probing on unauthorized port 22
Port Scan Hacking Exploited Host
๐Ÿ‡ท๐Ÿ‡ด DamonOne
Blocked by OPNsense; 8 hits, proto=tcp, ports=22,23
Port Scan Hacking
๐Ÿ‡ซ๐Ÿ‡ท aki
PortScan: TCP/23
Port Scan
๐Ÿ‡ง๐Ÿ‡ท noconex
Port Scan Brute-Force SSH
๐Ÿ‡บ๐Ÿ‡ธ HamSammich
Automated sensor: 4 SSH connection/probe attempts over the last 24h (latest 2026-09-07T11:01Z).
Brute-Force SSH
๐Ÿ‡ต๐Ÿ‡ฑ mkey
Port Scan
๐Ÿ‡ฎ๐Ÿ‡น RaffOne
SSH - Attempt to login using invalid or illegal credential
Brute-Force SSH
Anonymous
Port Scan
๐Ÿ‡จ๐Ÿ‡ฆ DRI
Unsolicited TCP traffic on Honeypot, srcport=48020 dstport=23
Port Scan Hacking
๐Ÿ‡ฆ๐Ÿ‡บ Ticketebo Pty. Ltd.
$f2bV_matches
Brute-Force

Showing 1 to 15 of 36 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡บ๐Ÿ‡ฆ 188.124.228.197
๐Ÿ‡ฎ๐Ÿ‡ฉ 182.253.156.184
๐Ÿ‡ซ๐Ÿ‡ฎ 178.20.210.151
๐Ÿ‡ฎ๐Ÿ‡ฉ 103.95.40.58
๐Ÿ‡ซ๐Ÿ‡ท 79.137.67.86
๐Ÿ‡ฌ๐Ÿ‡ง 35.203.211.243
๐Ÿ‡ฎ๐Ÿ‡ณ 223.181.25.81
๐Ÿ‡ท๐Ÿ‡บ 194.154.92.163
๐Ÿ‡ฌ๐Ÿ‡ง 193.163.125.171
๐Ÿ‡ฎ๐Ÿ‡ฉ 182.8.164.241
๐Ÿ‡ฏ๐Ÿ‡ต 161.33.162.158
๐Ÿ‡บ๐Ÿ‡ฆ 159.224.231.88
๐Ÿ‡ธ๐Ÿ‡ฌ 114.119.141.2
๐Ÿ‡จ๐Ÿ‡ณ 111.174.126.15
๐Ÿ‡ณ๐Ÿ‡ฑ 109.160.32.107
๐Ÿ‡ณ๐Ÿ‡ฑ 91.92.42.113
๐Ÿ‡ง๐Ÿ‡ฌ 79.124.49.70
๐Ÿ‡ฑ๐Ÿ‡น 62.60.130.201
๐Ÿ‡ณ๐Ÿ‡ฑ 45.148.10.152
๐Ÿ‡ฌ๐Ÿ‡ง 34.147.173.176