This IP address has been reported a total of
320
times from
104 distinct
sources.
162.252.199.70 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Unauthorized attempt on (TCP on port 8834).
Source port: 53577
TTL: 53
Packet length: 52
Timestamp: ...
show moreUnauthorized attempt on (TCP on port 8834).
Source port: 53577
TTL: 53
Packet length: 52
Timestamp: 2026-08-21 19:26:59
show less
UFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly as ...
show moreUFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly associated with port scanning, service discovery, or automated internet probing. Technical: source_ip=162.252.199.70; proto=TCP; source_port=57961; target_port=5986; flags=SYN
show less
byebyte.space auth: TCP packet to port 2376 (high-risk service) at 2026-08-21T13:56:48Z. Source port ...
show morebyebyte.space auth: TCP packet to port 2376 (high-risk service) at 2026-08-21T13:56:48Z. Source port 56916. TCP flags: SYN. Packet: 52B, TTL 57, window 65535, IP id 11109. Single packet, dropped at firewall. p0f: 7 hops, link Ethernet or modem.
show less
Port Scan
Anonymous
Port scanning: unsolicited connection probes to closed ports. Detected and blocked automatically.
byebyte.space auth: TCP packet to port 2376 (high-risk service) at 2026-08-21T13:38:14Z. Source port ...
show morebyebyte.space auth: TCP packet to port 2376 (high-risk service) at 2026-08-21T13:38:14Z. Source port 56916. TCP flags: SYN. Packet: 52B, TTL 57, window 65535, IP id 11109. Single packet, dropped at firewall. p0f: 7 hops, link Ethernet or modem.
show less
Source IP from blacklist is still actively scanning our network. (5 hits in last hour, last seen 202 ...
show moreSource IP from blacklist is still actively scanning our network. (5 hits in last hour, last seen 2026-08-21 13:55:43)
show less
Blocked by UFW on Jellyfin [6380/tcp]
Source port: 60177
TTL: 53
Packet length: 52
TOS: 0x04
This r ...
show moreBlocked by UFW on Jellyfin [6380/tcp]
Source port: 60177
TTL: 53
Packet length: 52
TOS: 0x04
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Blocked by UFW on vps4 [6380/tcp]
Source port: 36130
TTL: 56
Packet length: 52
TOS: 0x00
This repor ...
show moreBlocked by UFW on vps4 [6380/tcp]
Source port: 36130
TTL: 56
Packet length: 52
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Automated scan detection against redacted protected targets. Hits=1; port 5223 proto 6 detection dar ...
show moreAutomated scan detection against redacted protected targets. Hits=1; port 5223 proto 6 detection dark_ip
show less
Blocked by UFW (TCP on 5223)
Source port: 50053
TTL: 56
Packet length: 52
TOS: 0x00
This report (fo ...
show moreBlocked by UFW (TCP on 5223)
Source port: 50053
TTL: 56
Packet length: 52
TOS: 0x00
This report (for 162.252.199.70) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Showing 1 to
15
of 320 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ