This IP address has been reported a total of
22,854
times from
600 distinct
sources.
5.61.209.92 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Automatically generated from firewall_v2 logs on SID:VTSP4
Category: Port Scan
Occurrences: 22
Un ...
show moreAutomatically generated from firewall_v2 logs on SID:VTSP4
Category: Port Scan
Occurrences: 22
Unique Ports: 13
Destination Ports:
, 8081, 8082, 90, 88, 65004, 80, 81, 82, 83, 84, 85, 8080
First Seen:
2026-08-18 13:20 UTC
Last Seen:
2026-08-19 06:45 UTC
show less
Unauthorized connection / reconnaissance against my server on 2026-08-19 UTC. Persistent repeat offe ...
show moreUnauthorized connection / reconnaissance against my server on 2026-08-19 UTC. Persistent repeat offender: 31 attempts observed across 31 day(s). Source AS206264 (AMARUTU-TECHNOLOGY - Ama). Possibly a compromised host or a direct attacker.
show less
[rede-arem1] 08/19/2026-09:36:15.807118, 5.61.209.92, Protocol: 6, ET DROP Dshield Block Listed Sour ...
show more[rede-arem1] 08/19/2026-09:36:15.807118, 5.61.209.92, Protocol: 6, ET DROP Dshield Block Listed Source group 1
show less
[rede-top188] 08/19/2026-09:02:22.964750, 5.61.209.92, Protocol: 6, ET DROP Dshield Block Listed Sou ...
show more[rede-top188] 08/19/2026-09:02:22.964750, 5.61.209.92, Protocol: 6, ET DROP Dshield Block Listed Source group 1
show less
Detectado por Wazuh SIEM en api-ux.com | Alertas: 2 | Nivel max: 5 | Agentes: web-apiux-2025 | Web s ...
show moreDetectado por Wazuh SIEM en api-ux.com | Alertas: 2 | Nivel max: 5 | Agentes: web-apiux-2025 | Web server 400 error code.
show less
Suricata Detected 687 attacks from 5.61.209.92.; ET CINS Active Threat Intelligence Poor Reputation ...
show moreSuricata Detected 687 attacks from 5.61.209.92.; ET CINS Active Threat Intelligence Poor Reputation IP group 5; IP: 5.61.209.92; Ports: 41098; Direction: to_server; Trigger: CINS; Category: Misc Attack; Severity: 2
show less
[rede-arem1] 08/19/2026-08:09:53.322983, 5.61.209.92, Protocol: 6, ET DROP Dshield Block Listed Sour ...
show more[rede-arem1] 08/19/2026-08:09:53.322983, 5.61.209.92, Protocol: 6, ET DROP Dshield Block Listed Source group 1
show less
[rede-top188] 08/19/2026-07:35:55.919996, 5.61.209.92, Protocol: 6, ET DROP Dshield Block Listed Sou ...
show more[rede-top188] 08/19/2026-07:35:55.919996, 5.61.209.92, Protocol: 6, ET DROP Dshield Block Listed Source group 1
show less
[rede-arem1] 08/19/2026-06:45:25.828813, 5.61.209.92, Protocol: 6, ET DROP Dshield Block Listed Sour ...
show more[rede-arem1] 08/19/2026-06:45:25.828813, 5.61.209.92, Protocol: 6, ET DROP Dshield Block Listed Source group 1
show less
[rede-arem1] 08/19/2026-05:36:54.223887, 5.61.209.92, Protocol: 6, ET DROP Dshield Block Listed Sour ...
show more[rede-arem1] 08/19/2026-05:36:54.223887, 5.61.209.92, Protocol: 6, ET DROP Dshield Block Listed Source group 1
show less
[rede-168-134] 08/19/2026-05:17:19.267109, 5.61.209.92, Protocol: 6, ET DROP Dshield Block Listed So ...
show more[rede-168-134] 08/19/2026-05:17:19.267109, 5.61.209.92, Protocol: 6, ET DROP Dshield Block Listed Source group 1
show less