AbuseIPDB » 54.164.21.212
54.164.21.212 was found in our database!
This IP was reported 20 times. Confidence of Abuse is 70%: ?
| ISP | Amazon Technologies Inc. |
|---|---|
| Usage Type | Data Center/Web Hosting/Transit |
| ASN | AS14618 |
| Hostname(s) |
ec2-54-164-21-212.compute-1.amazonaws.com |
| Domain Name | amazon.com |
| Country | ๐บ๐ธ United States of America |
| City | Ashburn, Virginia |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 54.164.21.212:
This IP address has been reported a total of 20 times from 13 distinct sources. 54.164.21.212 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐ฉ๐ช DasDuo |
|
Port Scan | ||
| Anonymous |
Repeated unauthorized connection attempts to restricted service observed.
|
Port Scan Hacking Bad Web Bot Web App Attack | ||
| ๐จ๐ฟ kronos |
IDS: FlowIntel scan-like source | SID:9900001 | session_sigs:42 | alerts5m:42
|
Port Scan | ||
| ๐จ๐ฟ lp |
anomaly: icmp_src_session, 161 > threshold 160, repeats 89 times
|
Port Scan | ||
| ๐ง๐ท SOC Blue Team |
IPs get by Hunting on SIEM
|
Phishing Web Spam Port Scan Hacking | ||
| ๐จ๐ฟ lp |
anomaly: icmp_src_session, 161 > threshold 160, repeats 29 times
|
Port Scan | ||
| ๐ต๐ฑ bart@ |
|
Port Scan | ||
| ๐ฌ๐ง kiwi.network |
Incessant port scan:
|
Port Scan Hacking Exploited Host | ||
| Anonymous |
Repeated unauthorized connection attempts to restricted service observed.
|
Port Scan Hacking Bad Web Bot Web App Attack | ||
| ๐ท๐ด cataa33 |
|
DDoS Attack Brute-Force Web App Attack | ||
| ๐จ๐ฟ kronos |
IDS: FlowIntel scan-like source | SID:9900001 | session_sigs:41 | alerts5m:41
|
Port Scan | ||
| ๐จ๐ฟ lp |
anomaly: icmp_src_session, 161 > threshold 160, repeats 143 times
|
Port Scan | ||
| ๐บ๐ธ COMPLEX |
Unsolicited ICMP traffic | Action: DROP | Port N/A
|
Brute-Force | ||
| Anonymous |
Repeated inbound connection attempts blocked by firewall. Observed at least twice within 24 hours.
|
Hacking | ||
| ๐จ๐ฆ DRI |
Unsolicited ICMP traffic on Honeypot
|
Port Scan Hacking |
Showing 1 to 15 of 20 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ