IP info including ISP, Usage Type, and Location provided
by IPInfo. Updated weekly.
Important Note: 141.101.96.7 is an IP address from within
our whitelist belonging to the subnet
141.101.64.0/18,
which we identify as: "Cloudflare Reverse Proxy".
Whitelisted netblocks are typically owned by trusted entities, such as Google
or Microsoft who may use them for search engine spiders. However, these same entities
sometimes also provide cloud servers and mail services which are easily abused. Pay special
attention when trusting or distrusting these IPs.
This IP address has been reported a total of
107
times from
30 distinct
sources.
141.101.96.7 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(mod_security) mod_security triggered on hostname [redacted] 141.101.96.7 (FR/France/-): (CF_ENABLE ...
show more(mod_security) mod_security triggered on hostname [redacted] 141.101.96.7 (FR/France/-): (CF_ENABLE)
show less
Security Event Detected by SOC Diskominfo Lumajang: event=alert, hits=1
Brute-Force
Anonymous
2026-02-13T05:05:46.159556+01:00 nimbus sshd[84032]: pam_unix(sshd:auth): authentication failure; lo ...
show more2026-02-13T05:05:46.159556+01:00 nimbus sshd[84032]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=141.101.96.7
2026-02-13T05:05:48.475918+01:00 nimbus sshd[84032]: Failed password for invalid user wangqian from 141.101.96.7 port 14672 ssh2
2026-02-13T05:11:10.235340+01:00 nimbus sshd[84068]: Invalid user kpyang from 141.101.96.7 port 32108
...
show less
Brute-Force
SSH
Anonymous
2026-01-23T13:21:25.168272+01:00 nimbus sshd[40125]: pam_unix(sshd:auth): authentication failure; lo ...
show more2026-01-23T13:21:25.168272+01:00 nimbus sshd[40125]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=141.101.96.7 user=root
2026-01-23T13:21:26.941294+01:00 nimbus sshd[40125]: Failed password for root from 141.101.96.7 port 60402 ssh2
2026-01-23T13:21:29.171476+01:00 nimbus sshd[40125]: Failed password for root from 141.101.96.7 port 60402 ssh2
...
show less
Brute-Force
SSH
Anonymous
2026-01-23T07:01:19.381442+01:00 nimbus sshd[32123]: Failed password for root from 141.101.96.7 port ...
show more2026-01-23T07:01:19.381442+01:00 nimbus sshd[32123]: Failed password for root from 141.101.96.7 port 33494 ssh2
2026-01-23T07:01:22.887050+01:00 nimbus sshd[32123]: Failed password for root from 141.101.96.7 port 33494 ssh2
2026-01-23T07:01:25.163579+01:00 nimbus sshd[32123]: Failed password for root from 141.101.96.7 port 33494 ssh2
...
show less
Blocked by UFW [8008/tcp]
Source port: 52896
TTL: 48
Packet length: 60
TOS: 0x00
This report was ge ...
show moreBlocked by UFW [8008/tcp]
Source port: 52896
TTL: 48
Packet length: 60
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Anonymous
[Sun Aug 24 07:15:25.287480 2025] [authz_core:error] [pid 18688] [client 141.101.96.7:51964] AH01630 ...
show more[Sun Aug 24 07:15:25.287480 2025] [authz_core:error] [pid 18688] [client 141.101.96.7:51964] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sun Aug 24 07:15:25.307406 2025] [authz_core:error] [pid 18688] [client 141.101.96.7:51964] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sun Aug 24 07:15:25.326718 2025] [authz_core:error] [pid 18688] [client 141.101.96.7:51964] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
Anonymous
[Sun Aug 24 01:08:08.764753 2025] [authz_core:error] [pid 24101] [client 141.101.96.7:29598] AH01630 ...
show more[Sun Aug 24 01:08:08.764753 2025] [authz_core:error] [pid 24101] [client 141.101.96.7:29598] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sun Aug 24 01:08:08.788712 2025] [authz_core:error] [pid 24101] [client 141.101.96.7:29598] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sun Aug 24 01:08:08.811798 2025] [authz_core:error] [pid 24101] [client 141.101.96.7:29598] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
Anonymous
[Sat Aug 23 23:46:45.313029 2025] [authz_core:error] [pid 19433] [client 141.101.96.7:34602] AH01630 ...
show more[Sat Aug 23 23:46:45.313029 2025] [authz_core:error] [pid 19433] [client 141.101.96.7:34602] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Aug 23 23:46:45.342664 2025] [authz_core:error] [pid 19433] [client 141.101.96.7:34602] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Aug 23 23:46:45.372945 2025] [authz_core:error] [pid 19433] [client 141.101.96.7:34602] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
Showing 1 to
15
of 107 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ