AbuseIPDB » 65.49.1.38

65.49.1.38 was found in our database!

This IP was reported 13,330 times. Confidence of Abuse is 100%: ?

100%
ISP Hurricane Electric LLC
Usage Type Fixed Line ISP
Hostname(s) 38.0-24.1.49.65.in-addr.arpa
scan-54a.shadowserver.org
Domain Name he.net
Country United States of America
City San Francisco, California

IP Abuse Reports for 65.49.1.38:

This IP address has been reported a total of 13,330 times from 467 distinct sources. 65.49.1.38 was first reported on , and the most recent report was .

Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.

Reporter IoA Timestamp in UTC Comment Categories
ThreatBook.io
SSH
diego
Events: TCP SYN Discovery or Flooding, Seen 5 times in the last 10800 seconds
DDoS Attack
Crxa
Port Scan
MPL
tcp/4899
Port Scan
MPL
tcp ports: 1801,4899 (3 or more attempts)
Port Scan
Study Bitcoin 🤗
Port probe to tcp/2375
[srv127]
Port Scan
Largnet SOC
65.49.1.38 triggered Icarus honeypot on port 3389. Check us out on github.
Port Scan Hacking
diego
Events: TCP SYN Discovery or Flooding, Seen 12 times in the last 10800 seconds
DDoS Attack
MPL
tcp/11211 (2 or more attempts)
Port Scan
RAP
2024-12-13 16:56:52 UTC Unauthorized activity to TCP port 135.
Port Scan
invalidLuca
[UFW2] Unauthorized connection attempt from 65.49.1.38
Port Scan
diego
Events: TCP SYN Discovery or Flooding, Seen 10 times in the last 10800 seconds
DDoS Attack
Lia
[UFW] 2031 (TCP)
Port Scan
onkeltom
Unauthorized connection attempts
Hacking Brute-Force
diego
Events: TCP SYN Discovery or Flooding, Seen 9 times in the last 10800 seconds
DDoS Attack

Showing 1 to 15 of 13330 reports


Is this your IP? You may request to takedown any associated reports. We will attempt to verify your ownership. Request Takedown 🚩

Recently Reported IPs: