AbuseIPDB » 54.148.245.63

54.148.245.63 was found in our database!

This IP was reported 49 times. Confidence of Abuse is 100%: ?

100%
ISP Amazon Technologies Inc.
Usage Type Data Center/Web Hosting/Transit
ASN AS16509
Hostname(s) ec2-54-148-245-63.us-west-2.compute.amazonaws.com
Domain Name amazon.com
Country πŸ‡ΊπŸ‡Έ United States of America
City Boardman, Oregon

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

IP Abuse Reports for 54.148.245.63:

This IP address has been reported a total of 49 times from 30 distinct sources. 54.148.245.63 was first reported on , and the most recent report was .

Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.

Reporter IoA Timestamp (UTC) Comment Categories
πŸ‡ΊπŸ‡Έ drewf.ink
Brute-Force Hacking
πŸ‡ΊπŸ‡Έ drewf.ink
[06:30] RDP NLA authentication attempt as Przemys?aw (NTLMv2 captured, workstation='workstation')
Brute-Force Hacking
πŸ‡ΊπŸ‡Έ drewf.ink
[06:12] RDP NLA authentication attempt as PawelMadera (NTLMv2 captured, workstation='workstation')
Brute-Force Hacking
πŸ‡ΊπŸ‡Έ [email protected]
RdpGuard detected brute-force attempt on RDP
Brute-Force
πŸ‡ΊπŸ‡Έ drewf.ink
[05:56] RDP NLA authentication attempt as NataliaBobryk (NTLMv2 captured, workstation='workstation')
Brute-Force Hacking
πŸ‡ΊπŸ‡Έ LSPCCU
Port Scan Hacking Brute-Force Web App Attack SSH
πŸ‡­πŸ‡° CyberFox
3389/tcp (1 or more attempts)
Port Scan
πŸ‡ΊπŸ‡Έ drewf.ink
[05:02] RDP NLA authentication attempt as MarioVPS (NTLMv2 captured, workstation='workstation')
Brute-Force Hacking
πŸ‡ΊπŸ‡Έ drewf.ink
Brute-Force Hacking
πŸ‡ΊπŸ‡Έ ShadowWhisperer
Brute-Force Hacking
πŸ‡ΊπŸ‡Έ drewf.ink
Brute-Force Hacking
πŸ‡ΊπŸ‡Έ sargetun
Honeypot: RDP probe on port 3389 at 2026-09-16 03:39:59.511879. Automated report from VPS honeypot.
Port Scan
πŸ‡ΊπŸ‡Έ wristhulk
Honeypot: RDP brute-force on OpenCanary honeypot (port 3389). Username: '173'.
Brute-Force
πŸ‡¨πŸ‡¦ alexbfr
Fail2Ban report from custom-honeypot; automated RDP honeypot detection.
Brute-Force
πŸ‡ΊπŸ‡Έ mibbsdevs
CoffeePot: Connection attempt detected on closed service bait ports (21/22/23/3306/3389/5432).
Port Scan

Showing 1 to 15 of 49 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩

Recently Reported IPs:

πŸ‡§πŸ‡΄ 190.129.74.148
πŸ‡ΊπŸ‡Έ 147.182.253.151
πŸ‡ΊπŸ‡Έ 138.197.28.52
πŸ‡§πŸ‡¬ 109.160.32.28
πŸ‡ΊπŸ‡Έ 65.49.1.213
πŸ‡©πŸ‡ͺ 20.218.199.175
πŸ‡°πŸ‡· 20.196.88.55
πŸ‡ΊπŸ‡Έ 20.106.19.223
πŸ‡ΊπŸ‡Έ 2607:f8b0:4864:20::f45
πŸ‡©πŸ‡ͺ 213.209.159.159
πŸ‡―πŸ‡΄ 212.34.11.166
πŸ‡¬πŸ‡§ 195.140.214.22
πŸ‡¨πŸ‡³ 117.40.113.30
πŸ‡¨πŸ‡¦ 85.217.149.11
πŸ‡ΊπŸ‡Έ 66.132.172.150
πŸ‡±πŸ‡Ή 62.60.130.215
πŸ‡ΊπŸ‡Έ 54.210.155.69
πŸ‡ͺπŸ‡Έ 45.223.194.221
πŸ‡ΊπŸ‡Έ 40.119.28.140
πŸ‡§πŸ‡· 18.228.157.55