AbuseIPDB » 5.180.252.158
5.180.252.158 was found in our database!
This IP was reported 45 times. Confidence of Abuse is 68%: ?
| ISP | DDOS PROTECTED BY ZUW-IT.COM |
|---|---|
| Usage Type | Data Center/Web Hosting/Transit |
| ASN | AS44486 |
| Hostname(s) |
ip-de-5.180.252.158.rivehost.com |
| Domain Name | zuw-it.com |
| Country | ๐ฉ๐ช Germany |
| City | Frankfurt am Main, Hesse |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 5.180.252.158:
This IP address has been reported a total of 45 times from 40 distinct sources. 5.180.252.158 was first reported on , and the most recent report was .
Old Reports: The most recent abuse report for this IP address is from . It is possible that this IP is no longer involved in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐ซ๐ท geeek |
Port scanning: 3389 TCP Blocked
|
Port Scan | ||
| ๐ฉ๐ช Luhte |
|
Port Scan Hacking | ||
| ๐บ๐ธ azminawwar |
[5.180.252.158] triggered by honeypot on port [3389], Timestamp [2026-08-19T10:25:49Z]
|
Port Scan Hacking | ||
| Anonymous |
Trying ports that it shouldn't be.
|
Port Scan Hacking Exploited Host | ||
| ๐ต๐ฑ nfsec.pl |
Detected: TCP scan on port: 3389 with flags: SYN
|
Port Scan | ||
| ๐ท๐บ genokrad |
Unauthorized connection try on TCP/3389 (RDP)
|
Port Scan | ||
| ๐ฑ๐น NotACaptcha |
|
Port Scan | ||
| ๐ซ๐ท zulzeen |
[incypit-web] Blocked by SysWarden Firewall [BLOCK] (RDP/VNC Attack)
|
Brute-Force | ||
| Anonymous |
|
Port Scan Brute-Force | ||
| ๐ซ๐ท Hiigara |
connection attempt : 5.180.252.158 on port : tcp/3389 (RDP)
|
Port Scan | ||
| ๐ซ๐ท EDSL |
[SRV-VPN1] Blocked by SysWarden Firewall (RDP/VNC Attack)
|
Brute-Force Port Scan | ||
| Anonymous |
Try to connect to Port_Scan_3389_stealth
|
Port Scan | ||
| ๐ซ๐ท Entalpi.net |
Tried to hit sensible closed port commonly used in attacks
|
Port Scan Hacking | ||
| ๐จ๐ญ Elysium Security |
Mass port scanning on a whole network
|
Port Scan | ||
| ๐จ๐ฟ kronos |
IDS: FlowIntel scan-like source | SID:9900001 | session_sigs:40 | alerts5m:40
|
Port Scan |
Showing 1 to 15 of 45 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ