AbuseIPDB » 57.154.6.3
57.154.6.3 was found in our database!
This IP was reported 6 times. Confidence of
Abuse
is 24% : ?
ISP
Microsoft Limited
Usage Type
Data Center/Web Hosting/Transit
ASN
AS8075
Domain Name
microsoft.com
Country
๐บ๐ธ
United States of America
City
Phoenix, Arizona
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 57.154.6.3 :
This IP address has been reported a total of
6
times from
6 distinct
sources.
57.154.6.3 was first reported on
July 26th 2026 , and the most recent report was
2 weeks ago .
Old Reports:
The most recent abuse report for this IP address is from
2 weeks ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฏ๐ต
SentinalX by uzumaru
2026-08-09 01:53:45
(2 weeks ago)
Detected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was ...
show more
Detected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was hijacked and held in a tarpit to slow down the scan. Probed target: icanhazip.com:443
show less
Open Proxy
Port Scan
Anonymous
2026-07-26 05:53:36
(1 month ago)
[web.zebs.ch] httpd-config-scan: sites=www.example.com; logs=/var/log/httpd/access_log; samples=/.gi ...
show more
[web.zebs.ch] httpd-config-scan: sites=www.example.com; logs=/var/log/httpd/access_log; samples=/.git/HEAD | /.git/config | /.git/refs/heads/master
show less
Hacking
Web App Attack
๐ซ๐ท
sthoyer.de
2026-07-26 05:39:22
(1 month ago)
Jul 26 07:39:20 sthoyer kernel: [IPTables-Dropped-I] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd: ...
show more
Jul 26 07:39:20 sthoyer kernel: [IPTables-Dropped-I] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd:10:f7:08:00 SRC=57.154.6.3 DST=173.212.223.67 LEN=60 TOS=0x00 PREC=0x00 TTL=50 ID=24304 DF PROTO=TCP SPT=22579 DPT=2096 WINDOW=64240 RES=0x00 SYN URGP=0
Jul 26 07:39:20 sthoyer kernel: [IPTables-Dropped-I] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd:10:f7:08:00 SRC=57.154.6.3 DST=173.212.223.67 LEN=60 TOS=0x00 PREC=0x00 TTL=50 ID=54039 DF PROTO=TCP SPT=22585 DPT=2078 WINDOW=64240 RES=0x00 SYN URGP=0
Jul 26 07:39:20 sthoyer kernel: [IPTables-Dropped-I] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd:10:f7:08:00 SRC=57.154.6.3 DST=173.212.223.67 LEN=60 TOS=0x00 PREC=0x00 TTL=50 ID=58944 DF PROTO=TCP SPT=22583 DPT=2086 WINDOW=64240 RES=0x00 SYN URGP=0
Jul 26 07:39:20 sthoyer kernel: [IPTables-Dropped-I] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd:10:f7:08:00 SRC=57.154.6.3 DST=173.212.223.67 LEN=60 TOS=0x00 PREC=0x00 TTL=50 ID=17014 DF PROTO=TCP SPT=22566 DPT=2083 WINDOW=64240 RES=0
...
show less
Port Scan
๐ง๐ท
diego
2026-07-26 05:03:05
(1 month ago)
[rede-188] 2026-07-26 04:44:23, Client: 57.154.6.3, Protocol: 6, Unauthorized activity to HTTP: POST ...
show more
[rede-188] 2026-07-26 04:44:23, Client: 57.154.6.3, Protocol: 6, Unauthorized activity to HTTP: POST /___proxy_subdomain_whm/login/
show less
Web App Attack
๐ต๐พ
armandosaucedo.me
2026-07-26 04:48:26
(1 month ago)
Threat Intelligence via ARMTI, Web Attack: POST /___proxy_subdomain_whm/login/?login_only=1
Web App Attack
Anonymous
2026-07-26 03:25:52
(1 month ago)
denied traffic to a non-approved destination port. destination port 2078.
Port Scan
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: