AbuseIPDB » 41.89.96.253

41.89.96.253 was found in our database!

This IP was reported 149 times. Confidence of Abuse is 100%: ?

100%
ISP Egerton University Njoro campus
Usage Type University/College/School
ASN AS36914
Domain Name eunccu.org
Country ๐Ÿ‡ฐ๐Ÿ‡ช Kenya
City Njoro, Nakuru County

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

IP Abuse Reports for 41.89.96.253:

This IP address has been reported a total of 149 times from 45 distinct sources. 41.89.96.253 was first reported on , and the most recent report was .

Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡ฆ๐Ÿ‡น urnilxfgbez
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
Port Scan
๐Ÿ‡ฉ๐Ÿ‡ช guldkage
Unauthorized connection attempt detected from IP address 41.89.96.253 to port 445 (ger-02) [SMB]
Exploited Host
๐Ÿ‡บ๐Ÿ‡ธ drewf.ink
Hacking Exploited Host
๐Ÿ‡ฉ๐Ÿ‡ช IP Analyzer
Unauthorized connection attempt from IP address 41.89.96.253 on Port 445(SMB)
Port Scan
๐Ÿ‡ฉ๐Ÿ‡ช Luhte
Port Scan Hacking
๐Ÿ‡บ๐Ÿ‡ธ drewf.ink
Hacking Exploited Host
๐Ÿ‡บ๐Ÿ‡ธ cwytech
Fleet-wide ban from the Ghostfleet ๐Ÿ‘ป. Triggered by scenario: cwy/global-exclusion-high.
Hacking
๐Ÿ‡ฉ๐Ÿ‡ช guldkage
Unauthorized connection attempt detected from IP address 41.89.96.253 to port 445 (ger-02) [SMB]
Exploited Host
๐Ÿ‡ฉ๐Ÿ‡ช KPS
PortscanM
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/445 (2 or more attempts)
Port Scan
๐Ÿ‡ซ๐Ÿ‡ท zulzeen
[incypit-web] Blocked by SysWarden Firewall [BLOCK] (SMB/Possible Ransomware Attack)
Hacking Brute-Force
Anonymous
Unauthorized access (tcp/445/smb)
Port Scan
๐Ÿ‡ฆ๐Ÿ‡น Pingger Shikkoken
Hacking
๐Ÿ‡ฌ๐Ÿ‡ง PeravixGroup
Hacking Exploited Host
Anonymous
Try to connect to Port_Scan_445_stealth
Port Scan

Showing 1 to 15 of 149 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡ช๐Ÿ‡ช 213.35.128.24
๐Ÿ‡บ๐Ÿ‡ธ 205.210.31.56
๐Ÿ‡บ๐Ÿ‡ธ 205.210.31.22
๐Ÿ‡ฌ๐Ÿ‡ง 185.216.145.187
๐Ÿ‡ฐ๐Ÿ‡ท 175.118.127.138
๐Ÿ‡บ๐Ÿ‡ธ 172.190.13.234
๐Ÿ‡ธ๐Ÿ‡ช 138.124.29.146
๐Ÿ‡น๐Ÿ‡ญ 119.110.239.76
๐Ÿ‡จ๐Ÿ‡ณ 118.89.62.11
๐Ÿ‡ง๐Ÿ‡ญ 109.63.118.194
๐Ÿ‡ท๐Ÿ‡บ 91.237.183.81
๐Ÿ‡ง๐Ÿ‡ท 45.205.1.68
๐Ÿ‡ณ๐Ÿ‡ฑ 45.156.128.59
๐Ÿ‡ณ๐Ÿ‡ฑ 45.148.10.157
๐Ÿ‡บ๐Ÿ‡ธ 20.118.232.75
๐Ÿ‡จ๐Ÿ‡ด 8.242.151.245
๐Ÿ‡น๐Ÿ‡ผ 198.235.24.87
๐Ÿ‡ณ๐Ÿ‡ฑ 195.178.110.42
๐Ÿ‡ณ๐Ÿ‡ฑ 185.226.197.59
๐Ÿ‡ฎ๐Ÿ‡ฉ 182.8.130.191