This IP address has been reported a total of
103
times from
57 distinct
sources.
41.61.20.45 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
2026-07-20T13:43:20.267982+02:00 vps kernel: [918659.927029] [PORTSCAN DETECTED] IN=ens3 OUT= MAC=fa ...
show more2026-07-20T13:43:20.267982+02:00 vps kernel: [918659.927029] [PORTSCAN DETECTED] IN=ens3 OUT= MAC=fa:16:3e:66:f6:24:02:37:19:0d:c2:f3:08:00 SRC=41.61.20.45 DST=54.37.14.118 LEN=40 TOS=0x00 PREC=0x00 TTL=236 ID=52335 PROTO=TCP SPT=60000 DPT=5902 WINDOW=1024 RES=0x00 SYN URGP=0
...
show less
portscan on multiple TCP ports :
Firewall: Within 2026-07-18 02:50:37 - 2026-07-20 11:11:16 CEST(+02 ...
show moreportscan on multiple TCP ports :
Firewall: Within 2026-07-18 02:50:37 - 2026-07-20 11:11:16 CEST(+0200) identified: unallowed access from 41.61.20.45/32 on uncommon port/s: 5902(tcp:5902),5901(tcp:5901) (2 trials)
Fail2ban: Within 2026-07-18 02:50:37 - 2026-07-20 11:11:16 CEST(+0200) banned: 4 times by fail2ban[firewall]
show less
Honeypot [fra-de-honeypot]: Empty payload (likely service probe); 5902 [1] TCP
Reported by DisPaisy ...
show moreHoneypot [fra-de-honeypot]: Empty payload (likely service probe); 5902 [1] TCP
Reported by DisPaisy Enterprises (dispaisy.systems) using: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
Automatically generated from firewall_v2 logs on Server_ID: SPPX01
Category: Port Scan
Occurrences ...
show moreAutomatically generated from firewall_v2 logs on Server_ID: SPPX01
Category: Port Scan
Occurrences: 10
Unique Ports: 2
Destination Ports:
5901, 5902
First Seen:
2026-07-18 02:40 UTC
Last Seen:
2026-07-20 10:10 UTC
show less
Blocked by UFW [5902/tcp]
Source port: 60000
TTL: 236
Packet length: 40
TOS: 0x00
This report was g ...
show moreBlocked by UFW [5902/tcp]
Source port: 60000
TTL: 236
Packet length: 40
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Showing 1 to
15
of 103 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ