This IP address has been reported a total of
48
times from
25 distinct
sources.
66.231.79.9 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
United States of America
with 9
reports;
France
with 7
reports;
Germany
with 6
reports.
The most common categories in these recent reports were:
Port Scan
9
times;
DDoS Attack
9
times;
Hacking
8
times;
Bad Web Bot
8
times;
Exploited Host
7
times;
Other
11
times.
Old Reports
The most recent abuse report for this IP address is from
. It is possible that this IP is no
longer involved in abusive activities.
Repeated requests classified as pathological web bot behavior, for example: /[redacted]?topics[34]=3 ...
show moreRepeated requests classified as pathological web bot behavior, for example: /[redacted]?topics[34]=35&topics[37]=48&topics[38]=66&topics[39]=28 (HTTP/2.0 port 443, user agent: "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36")
show less
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Sa ...
show moreMozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36 Edg/144.0.0.0
show less
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0. ...
show moreMozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36
show less
DDoS flood attack against 82.152.54.114 (2026-09-10 18:56:59 -> 2026-09-10 19:11:59 UTC) targeting A ...
show moreDDoS flood attack against 82.152.54.114 (2026-09-10 18:56:59 -> 2026-09-10 19:11:59 UTC) targeting AS215599. This IP (AS271874) sent ~4909 packets (0.35 MB) during the attack window. Likely a compromised device (botnet).
show less
DDoS Attack
Exploited Host
Anonymous
Large-scale coordinated botnet (4M+ IPs). Ordered by Alexander Pen'kov (alexander-pen-kov-7b41aa6a/S ...
show moreLarge-scale coordinated botnet (4M+ IPs). Ordered by Alexander Pen'kov (alexander-pen-kov-7b41aa6a/Shursky [yordim|LIS|MOW]); Attacker: Mikhail Smirnov (mikhail-smirnov-79830323/Aidan [MOW]) employed by Angara Technologies Group | Catalog Search Abuse Blocked: /catalogsearch/result/?cat=41+&product_vc_mcu=106&product_vc_type=103&q=lifesize+icon+600&rating=6 | UA: Mozilla/5.0 (iPhone; CPU iPhone OS 12_4_8 like Mac OS X) AppleWebKit/534.2 (KHTML, like Gecko) CriOS/20.0.899.0 Mobile/96A510 Safari/534.2 | (Magento Site)
show less
Repeated requests classified as pathological web bot behavior, for example: /[redacted]/search?f%5B0 ...
show moreRepeated requests classified as pathological web bot behavior, for example: /[redacted]/search?f%5B0%5D=digest_edition%3A505&f%5B1%5D=digest_key_terms%3A336&f%5B2%5D=digest_key_terms%3A520&f%5B3%5D=digest_key_terms%3A526&f%5B4%5D=digest_publication_type%3A927&field_article_edition%5B504%5D=504&field_key_terms%5B328%5D=328 (HTTP/2.0 port 443, user agent: "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 Edg/145.0.0.0")
show less
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Sa ...
show moreMozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Safari/537.36
show less
Verified scan activity detected by local IDS/firewall correlation. SCAN: HIGHRISK_SINGLEPORT | PORTS ...
show moreVerified scan activity detected by local IDS/firewall correlation. SCAN: HIGHRISK_SINGLEPORT | PORTS=23 | HITS=2 | IPSET=ADD | FIRST=2026-08-26 08:38:15 | LAST=2026-08-26 08:38:45. Last seen 2026-08-26 08:38:46.
show less
Port Scan
Anonymous
denied traffic to a honeypot network. destination port 23.
DDoS flood attack against 82.152.54.0 (2026-08-20 16:18:25 -> 2026-08-20 16:33:25 UTC) targeting AS2 ...
show moreDDoS flood attack against 82.152.54.0 (2026-08-20 16:18:25 -> 2026-08-20 16:33:25 UTC) targeting AS215599. This IP (AS271874) sent ~8996 packets (12.78 MB) during the attack window. Likely a compromised device (botnet).
show less