AbuseIPDB » 65.49.1.101

65.49.1.101 was found in our database!

This IP was reported 22,847 times. Confidence of Abuse is 100%: ?

100%
ISP The Shadowserver Foundation, Inc.
Usage Type Fixed Line ISP
ASN AS6939
Hostname(s) 101.0-24.1.49.65.in-addr.arpa
scan-58h.shadowserver.org
Domain Name shadowserver.org
Country United States of America
City San Francisco, California

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated biweekly.

IP Abuse Reports for 65.49.1.101:

This IP address has been reported a total of 22,847 times from 564 distinct sources. 65.49.1.101 was first reported on , and the most recent report was .

Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.

Reporter IoA Timestamp in UTC Comment Categories
MPL
tcp/49667 (2 or more attempts)
Port Scan
MPL
tcp/33443 (2 or more attempts)
Port Scan
rtbh.com.tr
list.rtbh.com.tr report: tcp/3001
Brute-Force
MPL
tcp/8030 (3 or more attempts)
Port Scan
Study Bitcoin 🤗
Port probe to tcp/447 (ddm-rfm)
[srv127]
Port Scan
Study Bitcoin 🤗
Port probe to tcp/5080
[srv125]
Port Scan
MPL
tcp/9642 (2 or more attempts)
Port Scan
rtbh.com.tr
list.rtbh.com.tr report: tcp/22
Brute-Force
MPL
tcp ports: 5001,8080 (4 or more attempts)
Port Scan
Grizzlytools
Kingcopy(AI-IDS)RouterOS: Portscanner detected.
Port Scan
security.rdmc.fr
IP in Malicious Database
Web App Attack
rtbh.com.tr
list.rtbh.com.tr report: tcp/7777, tcp/8873, udp/161
Brute-Force
el-brujo
07/18/2025-05:32:50.109740 65.49.1.101 Protocol: 17 ET DROP Dshield Block Listed Source group 1
Hacking
MPL
tcp/9060 (2 or more attempts)
Port Scan
centurion
Port Scan

Showing 1 to 15 of 22847 reports


Is this your IP? You may request to takedown any associated reports. We will attempt to verify your ownership. Request Takedown 🚩

Recently Reported IPs: