71.6.239.166
| ISP | Root Evidence, Inc |
|---|---|
| Usage Type | Data Center/Web Hosting/Transit |
| ASN | AS10439 |
| Hostname(s) | rootevidence.com |
| Domain Name | rootevidence.com |
| Country | ๐บ๐ธ United States of America |
| City | Los Angeles, California |
ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 71.6.239.166
This IP address has been reported a total of 30 times from 25 distinct sources. 71.6.239.166 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: Turkey with 2 reports; Brazil with 1 report; Germany with 1 report. The most common categories in these recent reports were: Hacking 4 times; Web App Attack 2 times; Exploited Host 2 times; SSH 1 time; Port Scan 1 time; Other 3 times.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| Anonymous |
suricata IPS/IDS detection, ruleset ET SCAN Potential SSH Scan, ET SCAN Potential VNC Scan 5800-5820
|
Port Scan | ||
| ๐น๐ท ugurcoskun |
Seczar SecureOps โ Crypto Miner / C2 Outbound (3 events) โ quarantined 43200m
|
Exploited Host | ||
| ๐ฉ๐ช xavier-momain.eu |
CrowdSec ban โ scenario: ssh:bruteforce
|
Brute-Force SSH | ||
| ๐น๐ท neron |
CrowdSec blocked: ssh:bruteforce detected via OPNsense firewall
|
Hacking Web App Attack | ||
| ๐บ๐ธ cwytech |
Fleet-wide ban from the Ghostfleet ๐ป. Triggered by scenario: cwy/tactical-rmm-lockdown-high.
|
Hacking | ||
| ๐ฌ๐ง myintarweb |
71.6.239.166 - - [01/Sep/2026:13:20:21 +0100] 80 "\x16\x03\x01\x05\xfc\x01" 400 1467 "-" "-"
...
|
Hacking Bad Web Bot Web App Attack | ||
| ๐ง๐ท ICS Labs |
ICS Labs identified 71.6.239.166 as a malicious indicator from threat intelligence.
|
DDoS Attack Hacking Exploited Host | ||
| ๐ท๐ธ Scan |
MultiHost/MultiPort Probe, Scan, Hack -
|
Port Scan Hacking | ||
| ๐ณ๐ฑ DonAtari |
DShield firewall scan - TCP to port 8080
|
Brute-Force SSH | ||
| Anonymous |
Aggressive web scan
|
Web App Attack | ||
| ๐ฉ๐ช samba.org |
spam (f2b h2)
|
Brute-Force | ||
| Anonymous |
Unauthorized connection attempt on Port 23
|
Port Scan Hacking Exploited Host | ||
| ๐ฌ๐ง consul.to |
Web attack/malicious scanning detected
|
Web App Attack | ||
| ๐บ๐ธ RAP |
2026-06-25 21:57:25 UTC Unauthorized activity to TCP port 25.
|
Port Scan | ||
| ๐ฎ๐ช RoboSOC |
SCAN: TCP Port Scan CloudCIX Reconnaissance Scan Detected, PTR: rootevidence.com.
|
Port Scan |
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ