AbuseIPDB » 52.165.96.19
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
Top Reporter Countries (Last 60 Days)
Example previewReport Categories (Last 60 Days)
Example previewIP Abuse Reports for 52.165.96.19:
This IP address has been reported a total of 84 times from 45 distinct sources. 52.165.96.19 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 34 reports; Germany with 12 reports; Netherlands with 6 reports. The most common categories in these recent reports were: Port Scan 65 times; Hacking 14 times; Web App Attack 13 times; Brute-Force 11 times; SSH 5 times; Other 8 times.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| 🇺🇸 MPL |
tcp ports: 3389,7473 (3 or more attempts)
|
Port Scan | ||
| 🇩🇪 NetShield-DE |
|
Web App Attack | ||
| 🇮🇹 CoreTech srl |
[DC: IP:151.1.252.27] ntopng alert: blacklisted_client_contact
|
Hacking | ||
| 🇩🇪 von44bis33 |
Cowrie SSH honeypot: unauthorized login attempts/commands observed.
|
Brute-Force SSH | ||
| Anonymous |
5901/tcp (1 or more attempts)
|
Port Scan | ||
| 🇹🇷 pashait |
Auto-blocked by Seczar SecureOps — IPS Web Attack Signature (1 events in 5min) at 2026-08-30 19:09
|
Web App Attack Bad Web Bot | ||
| 🇩🇪 NetShield-DE |
|
Web App Attack | ||
| 🇳🇱 ras07 |
Brute force SSH login attempts.
|
Brute-Force SSH | ||
| 🇺🇸 xmission.com |
|
Port Scan Hacking Brute-Force | ||
| 🇺🇸 MPL |
tcp/3389
|
Port Scan | ||
| 🇺🇸 MPL |
tcp/3011 (3 or more attempts)
|
Port Scan | ||
| 🇺🇸 MPL |
tcp/990 (2 or more attempts)
|
Port Scan | ||
| 🇩🇪 NetShield-DE |
|
Web App Attack | ||
| 🇺🇸 Axel |
|
Port Scan | ||
| 🇺🇸 MPL |
tcp ports: 4333,554 (3 or more attempts)
|
Port Scan |
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩