๐ท๐ด
DamonOne
2026-09-17 03:20:56
(1 hour ago)
Blocked by OPNsense; 6 hits, proto=tcp, ports=55176
Port Scan
Hacking
๐บ๐ธ
xmission.com
2026-09-09 18:33:03
(1 week ago)
Blocked by UFW (TCP on 60385)
Source port: 22232
TTL: 45
Packet length: 60
TOS: 0x08
This report (f ...
show more
Blocked by UFW (TCP on 60385)
Source port: 22232
TTL: 45
Packet length: 60
TOS: 0x08
This report (for 146.70.231.24) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ท๐บ
Agrohim
2026-08-31 00:34:13
(2 weeks ago)
Gate Inet blocked for categories:
DDoS Attack
Ping of Death
Port Scan
Hacking
Brute-Force
๐บ๐ธ
xmission.com
2026-08-22 15:29:23
(3 weeks ago)
Blocked by UFW (TCP on 52363)
Source port: 26320
TTL: 45
Packet length: 60
TOS: 0x08
This report (f ...
show more
Blocked by UFW (TCP on 52363)
Source port: 26320
TTL: 45
Packet length: 60
TOS: 0x08
This report (for 146.70.231.24) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ต๐น
Subnet Shadow Specter
2026-08-20 08:55:13
(3 weeks ago)
[Security] [Category: Bot Masquerading] FCrDNS mismatch detected. [IP Address]: 146.70.231.24 claime ...
show more
[Security] [Category: Bot Masquerading] FCrDNS mismatch detected. [IP Address]: 146.70.231.24 claimed a fake identity but failed forward-confirmed reverse DNS verification. Automated scraping via spoofed User-Agent `facebookexternalhit/1.1 Facebot Twitterbot/1.0`. [Action]: IP block initiated. [User-Agent]: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_1) AppleWebKit/601.2.4 (KHTML, like Gecko) Version/9.0.1 Safari/601.2.4 facebookexternalhit/1.1 Facebot Twitterbot/1.0 [IoA Datetime]: 2026-08-20 09:55:13 UTC +1.
show less
Port Scan
Hacking
Spoofing
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-14 10:27:06
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 146.70.231.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 146.70.231.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 14 06:26:58.215760 2026] [security2:error] [pid 1684:tid 1684] [client 146.70.231.24:29295] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 146.70.231.24 (+1 hits since last alert)|ospectra.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "ospectra.com"] [uri "/xmlrpc.php"] [unique_id "an7tcib5PFFUtr0BFGF3egAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-14 09:09:42
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 146.70.231.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 146.70.231.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 14 05:09:33.941460 2026] [security2:error] [pid 2961:tid 2961] [client 146.70.231.24:16078] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 146.70.231.24 (+1 hits since last alert)|jdsqrd.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "jdsqrd.com"] [uri "/xmlrpc.php"] [unique_id "an7bTfrsmb36bIV5FnZG0QAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐น๐ท
Ted Mayers
2026-06-25 04:40:09
(2 months ago)
DROP_INPUT detected 12 times on IPFire, port 51413
Brute-Force
๐บ๐ธ
xmission.com
2026-06-17 07:07:19
(2 months ago)
Blocked by UFW (TCP on 1)
Source port: 10410
TTL: 46
Packet length: 60
TOS: 0x08
This report (for 1 ...
show more
Blocked by UFW (TCP on 1)
Source port: 10410
TTL: 46
Packet length: 60
TOS: 0x08
This report (for 146.70.231.24) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ท๐บ
Agrohim
2026-04-29 00:06:56
(4 months ago)
Gate Inet blocked for categories:
DDoS Attack
Ping of Death
Port Scan
Hacking
Brute-Force
๐จ๐ณ
pengpeng
2026-04-21 19:15:44
(4 months ago)
monitor: on VM-0-7-ubuntu | port: 56443 | ttl: 251 script: github.com/sefinek/UFW-AbuseIPDB-Reporte ...
show more
monitor: on VM-0-7-ubuntu | port: 56443 | ttl: 251 script: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2025-09-22 16:46:36
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 146.70.231.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 146.70.231.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 22 12:46:29.726676 2025] [security2:error] [pid 1247:tid 1247] [client 146.70.231.24:56324] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "presucad.com"] [uri "/.env"] [unique_id "aNF9Zedb9cwJ6F0PIVChXwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
exxos
2025-09-16 11:05:30
(1 year ago)
http-no-verb
Hacking
๐ฉ๐ช
marzzzello
2025-07-27 00:30:20
(1 year ago)
Ports: 14x 8495
Port Scan
๐ฉ๐ช
marzzzello
2025-07-25 00:44:30
(1 year ago)
Ports: 14x 32533
Port Scan