AbuseIPDB » 64.62.197.104

64.62.197.104 was found in our database!

This IP was reported 22,318 times. Confidence of Abuse is 100%: ?

100%
ISP The Shadow Server Foundation
Usage Type Data Center/Web Hosting/Transit
Hostname(s) 104.0-24.197.62.64.in-addr.arpa
scan-39m.shadowserver.org
Domain Name shadowserver.org
Country United States of America
City Pleasanton, California

IP info including ISP, Usage Type, and Location provided by IP2Location. Updated monthly.

IP Abuse Reports for 64.62.197.104:

This IP address has been reported a total of 22,318 times from 519 distinct sources. 64.62.197.104 was first reported on , and the most recent report was .

Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.

Reporter IoA Timestamp in UTC Comment Categories
Dan
RDP on port 80 scanning
Port Scan Brute-Force
MPL
tcp/9642 (3 or more attempts)
Port Scan
diego
Events: TCP SYN Discovery or Flooding, Seen 11 times in the last 10800 seconds
DDoS Attack
MPL
tcp ports: 8080,1337 (5 or more attempts)
Port Scan
MPL
tcp/4434 (4 or more attempts)
Port Scan
diego
Events: TCP SYN Discovery or Flooding, Seen 11 times in the last 10800 seconds
DDoS Attack
RAP
2024-09-30 05:36:43 UTC Unauthorized activity to TCP port 8080. Web App
Port Scan Web App Attack
MPL
tcp ports: 2031,8080 (4 or more attempts)
Port Scan
jk jk
GoPot Honeypot 1
Hacking Web App Attack
diego
Events: TCP SYN Discovery or Flooding, Seen 8 times in the last 10800 seconds
DDoS Attack
☠|ʂɧąɖơῳ|☠
Port Scan
spyra.rocks
PSAD Intrusion Detection
Port Scan
MPL
tcp/9001 (2 or more attempts)
Port Scan
MPL
tcp ports: 63210,8888 (4 or more attempts)
Port Scan
diego
Events: TCP SYN Discovery or Flooding, Seen 10 times in the last 10800 seconds
DDoS Attack

Showing 136 to 150 of 22318 reports


Is this your IP? You may request to takedown any associated reports. We will attempt to verify your ownership. Request Takedown 🚩

Recently Reported IPs: