AbuseIPDB » 52.189.76.2
52.189.76.2 was found in our database!
This IP was reported 2,369 times. Confidence of Abuse is 40%: ?
ISP | Microsoft Corporation |
---|---|
Usage Type | Data Center/Web Hosting/Transit |
ASN | AS8075 |
Domain Name | microsoft.com |
Country |
![]() |
City | Des Moines, Iowa |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated biweekly.
IP Abuse Reports for 52.189.76.2:
This IP address has been reported a total of 2,369 times from 289 distinct sources. 52.189.76.2 was first reported on , and the most recent report was .
Old Reports: The most recent abuse report for this IP address is from . It is possible that this IP is no longer involved in abusive activities.
Reporter | IoA Timestamp in UTC | Comment | Categories | |
---|---|---|---|---|
![]() |
ufw_block_log_banned
|
Port Scan | ||
![]() |
Events: TCP SYN Discovery or Flooding, Seen 5 times in the last 10800 seconds
|
DDoS Attack | ||
![]() |
firewall-block, port(s): 9200/tcp
|
Port Scan | ||
![]() |
|
Hacking | ||
![]() |
list.rtbh.com.tr report: tcp/3389, tcp/8001
|
Brute-Force | ||
![]() |
|
Hacking | ||
![]() |
RouterOS: Scanning detected TCP 52.189.76.2:43138 > x.x.x.x:3389
|
Port Scan | ||
![]() |
Hundreds of Attempts (at least) to Connect to and Access Firewall Ports
|
Port Scan Hacking Brute-Force | ||
![]() |
list.rtbh.com.tr report: tcp/264
|
Brute-Force | ||
![]() |
|
Hacking | ||
![]() |
list.rtbh.com.tr report: tcp/3351
|
Brute-Force | ||
![]() |
Events: TCP SYN Discovery or Flooding, Seen 50 times in the last 10800 seconds
|
DDoS Attack | ||
![]() |
|
Hacking | ||
![]() |
tcp/9042 (92 or more attempts)
|
Port Scan | ||
![]() |
2 port probes: 2x tcp/1583 (simbaexpress)
[srv124,srv129] |
Port Scan |
Showing 1 to 15 of 2369 reports
Is this your IP? You may request to takedown any associated reports. We will attempt to verify your ownership. Request Takedown 🚩