πΊπΈ
mawan
2026-07-02 14:55:48
(1 day ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
πΊπΈ
mawan
2026-06-28 15:46:53
(5 days ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
π§π·
maviei
2026-06-27 23:57:48
(6 days ago)
2026-06-27T20:57:45.681336-03:00 srv1251771 kernel: [2371492.242220] [UFW BLOCK] IN=eth0 OUT= MAC=40 ...
show more
2026-06-27T20:57:45.681336-03:00 srv1251771 kernel: [2371492.242220] [UFW BLOCK] IN=eth0 OUT= MAC=40:e8:d4:b8:29:bb:44:38:39:ff:ff:41:08:00 SRC=172.68.211.108 DST=72.61.36.27 LEN=60 TOS=0x00 PREC=0x00 TTL=53 ID=25595 DF PROTO=TCP SPT=9464 DPT=8080 WINDOW=65535 RES=0x00 SYN URGP=0
2026-06-27T20:57:46.695290-03:00 srv1251771 kernel: [2371493.256125] [UFW BLOCK] IN=eth0 OUT= MAC=40:e8:d4:b8:29:bb:44:38:39:ff:ff:41:08:00 SRC=172.68.211.108 DST=72.61.36.27 LEN=60 TOS=0x00 PREC=0x00 TTL=53 ID=25596 DF PROTO=TCP SPT=9464 DPT=8080 WINDOW=65535 RES=0x00 SYN URGP=0
2026-06-27T20:57:47.719138-03:00 srv1251771 kernel: [2371494.279983] [UFW BLOCK] IN=eth0 OUT= MAC=40:e8:d4:b8:29:bb:44:38:39:ff:ff:41:08:00 SRC=172.68.211.108 DST=72.61.36.27 LEN=60 TOS=0x00 PREC=0x00 TTL=53 ID=25597 DF PROTO=TCP SPT=9464 DPT=8080 WINDOW=65535 RES=0x00 SYN URGP=0
...
show less
Port Scan
πΊπΈ
mawan
2026-06-14 02:20:37
(2 weeks ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
π©πͺ
acadeova
2026-05-29 08:28:26
(1 month ago)
π¨ Recon detected (nft drop)
SRC=172.68.211.108
Observed=TCP dpt=80 in=enp0s6 ttl=55
Time=recent(jour ...
show more
π¨ Recon detected (nft drop)
SRC=172.68.211.108
Observed=TCP dpt=80 in=enp0s6 ttl=55
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
πΊπΈ
mawan
2026-04-22 14:17:24
(2 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
πΊπ¦
URAN Publishing Service
2026-03-10 23:49:22
(3 months ago)
172.68.211.108 - - [11/Mar/2026:01:49:20 +0200] "GET /wp-content/uploads/index.php HTTP/1.1" 404 359 ...
show more
172.68.211.108 - - [11/Mar/2026:01:49:20 +0200] "GET /wp-content/uploads/index.php HTTP/1.1" 404 359 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
172.68.211.108 - - [11/Mar/2026:01:49:21 +0200] "GET /wp-content/admin.php HTTP/1.1" 404 359 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Web App Attack
πΊπ¦
URAN Publishing Service
2026-03-03 08:41:24
(4 months ago)
172.68.211.108 - - [03/Mar/2026:10:41:23 +0200] "GET /wp-content/admin.php HTTP/1.1" 404 359 "-" "Mo ...
show more
172.68.211.108 - - [03/Mar/2026:10:41:23 +0200] "GET /wp-content/admin.php HTTP/1.1" 404 359 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
172.68.211.108 - - [03/Mar/2026:10:41:23 +0200] "GET /wp-content/themes/ HTTP/1.1" 404 359 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Web App Attack
Anonymous
2026-02-21 22:31:29
(4 months ago)
[Sat Feb 21 23:31:28.439181 2026] [authz_core:error] [pid 19837] [client 172.68.211.108:11714] AH016 ...
show more
[Sat Feb 21 23:31:28.439181 2026] [authz_core:error] [pid 19837] [client 172.68.211.108:11714] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Feb 21 23:31:28.632916 2026] [authz_core:error] [pid 19837] [client 172.68.211.108:11714] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Feb 21 23:31:28.826036 2026] [authz_core:error] [pid 19837] [client 172.68.211.108:11714] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
πΊπ¦
URAN Publishing Service
2026-02-06 22:35:28
(4 months ago)
172.68.211.108 - - [07/Feb/2026:00:35:26 +0200] "GET /wp-content/cache/ HTTP/1.1" 404 359 "-" "Mozil ...
show more
172.68.211.108 - - [07/Feb/2026:00:35:26 +0200] "GET /wp-content/cache/ HTTP/1.1" 404 359 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
172.68.211.108 - - [07/Feb/2026:00:35:27 +0200] "GET /wp-includes/js/thickbox/ HTTP/1.1" 404 359 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Web App Attack
π©πͺ
blitzw.in
2026-01-09 15:44:56
(5 months ago)
Anubis DENY log
Container: librey-anubis
Log: {"time":"2026-01-09T15:44:55.025901047Z","level":"INFO ...
show more
Anubis DENY log
Container: librey-anubis
Log: {"time":"2026-01-09T15:44:55.025901047Z","level":"INFO","source":{"function":"github.com/TecharoHQ/anubis/lib.(*Server).checkRules","file":"github.com/TecharoHQ/anubis/lib/anubis.go","line":211},"msg":"explicit deny","user_agent":"Mozilla/5.0 (Linux; Android 11; SM-A705FN) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36","accept_language":"zh-CN,cn;q=0.9","priority":"","x-forwarded-for":"172.68.211.108","x-real-ip":"172.68.211.108","check_result":{"name":"bot/cloudflare-workers","rule":"DENY"}}
show less
Bad Web Bot
πΊπ¦
URAN Publishing Service
2026-01-09 00:36:14
(5 months ago)
172.68.211.108 - - [09/Jan/2026:02:36:00 +0200] "GET /wp-admin/js/widgets/about.php7 HTTP/1.1" 404 1 ...
show more
172.68.211.108 - - [09/Jan/2026:02:36:00 +0200] "GET /wp-admin/js/widgets/about.php7 HTTP/1.1" 404 196 "-" "-"
172.68.211.108 - - [09/Jan/2026:02:36:13 +0200] "GET /wp-content/plugins/seoplugins/mar.php HTTP/1.1" 404 196 "-" "-"
...
show less
Web App Attack
πΊπ¦
URAN Publishing Service
2026-01-07 20:11:30
(5 months ago)
172.68.211.108 - - [07/Jan/2026:22:11:27 +0200] "GET /wp-admin/wp-conflg.php?p= HTTP/1.1" 404 196 "- ...
show more
172.68.211.108 - - [07/Jan/2026:22:11:27 +0200] "GET /wp-admin/wp-conflg.php?p= HTTP/1.1" 404 196 "-" "-"
172.68.211.108 - - [07/Jan/2026:22:11:30 +0200] "GET /wp-admin/css/wp-conflg.php?p= HTTP/1.1" 404 196 "-" "-"
...
show less
Web App Attack
πΈπ¬
drewf.ink
2025-11-18 23:11:21
(7 months ago)
[23:11] Port scanning. Port(s) scanned: TCP/8443
Port Scan
πΊπΈ
Paschen J Ki
2025-09-27 15:46:21
(9 months ago)
Blocked by UFW [8008/tcp]
Source port: 62334
TTL: 49
Packet length: 60
TOS: 0x00
This report was ge ...
show more
Blocked by UFW [8008/tcp]
Source port: 62334
TTL: 49
Packet length: 60
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan