AbuseIPDB » 54.148.245.63
54.148.245.63 was found in our database!
This IP was reported 49 times. Confidence of Abuse is 100%: ?
| ISP | Amazon Technologies Inc. |
|---|---|
| Usage Type | Data Center/Web Hosting/Transit |
| ASN | AS16509 |
| Hostname(s) |
ec2-54-148-245-63.us-west-2.compute.amazonaws.com |
| Domain Name | amazon.com |
| Country | πΊπΈ United States of America |
| City | Boardman, Oregon |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 54.148.245.63:
This IP address has been reported a total of 49 times from 30 distinct sources. 54.148.245.63 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| πΊπΈ drewf.ink |
|
Brute-Force Hacking | ||
| πΊπΈ drewf.ink |
[06:30] RDP NLA authentication attempt as Przemys?aw (NTLMv2 captured, workstation='workstation')
|
Brute-Force Hacking | ||
| πΊπΈ drewf.ink |
[06:12] RDP NLA authentication attempt as PawelMadera (NTLMv2 captured, workstation='workstation')
|
Brute-Force Hacking | ||
| πΊπΈ [email protected] |
RdpGuard detected brute-force attempt on RDP
|
Brute-Force | ||
| πΊπΈ drewf.ink |
[05:56] RDP NLA authentication attempt as NataliaBobryk (NTLMv2 captured, workstation='workstation')
|
Brute-Force Hacking | ||
| πΊπΈ LSPCCU |
|
Port Scan Hacking Brute-Force Web App Attack SSH | ||
| ππ° CyberFox |
3389/tcp (1 or more attempts)
|
Port Scan | ||
| πΊπΈ drewf.ink |
[05:02] RDP NLA authentication attempt as MarioVPS (NTLMv2 captured, workstation='workstation')
|
Brute-Force Hacking | ||
| πΊπΈ drewf.ink |
|
Brute-Force Hacking | ||
| πΊπΈ ShadowWhisperer |
|
Brute-Force Hacking | ||
| πΊπΈ drewf.ink |
|
Brute-Force Hacking | ||
| πΊπΈ sargetun |
Honeypot: RDP probe on port 3389 at 2026-09-16 03:39:59.511879. Automated report from VPS honeypot.
|
Port Scan | ||
| πΊπΈ wristhulk |
Honeypot: RDP brute-force on OpenCanary honeypot (port 3389). Username: '173'.
|
Brute-Force | ||
| π¨π¦ alexbfr |
Fail2Ban report from custom-honeypot; automated RDP honeypot detection.
|
Brute-Force | ||
| πΊπΈ mibbsdevs |
CoffeePot: Connection attempt detected on closed service bait ports (21/22/23/3306/3389/5432).
|
Port Scan |
Showing 1 to 15 of 49 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown π©