This IP address has been reported a total of
18
times from
14 distinct
sources.
172.183.94.132 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
The IP address attempted to access sensitive files such as '/.git/HEAD', indicating a reconnaissance ...
show moreThe IP address attempted to access sensitive files such as '/.git/HEAD', indicating a reconnaissance attempt against the web application.
show less
Blocked by UFW (TCP on 2096)
Source port: 44125
TTL: 49
Packet length: 60
TOS: 0x00
This report (fo ...
show moreBlocked by UFW (TCP on 2096)
Source port: 44125
TTL: 49
Packet length: 60
TOS: 0x00
This report (for 172.183.94.132) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Detected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was ...
show moreDetected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was hijacked and held in a tarpit to slow down the scan. Probed target: ptlogin.4399.com:443
show less
Detected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was ...
show moreDetected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was hijacked and held in a tarpit to slow down the scan. Probed target: proof.ovh.net:443
show less
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show moreAuto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-04-07.
show less
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.183.94.132 (US/United States/-) ...
show moreLF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.183.94.132 (US/United States/-): 1 in the last 3600 secs
show less
Web App Attack
Showing 1 to
15
of 18 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ