Anonymous
2026-07-28 08:51:04
(2 days ago)
denied Telnet access attempt. destination port 23.
Port Scan
Brute-Force
๐บ๐ธ
kosada.com
2026-07-19 17:08:04
(1 week ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐ฎ๐ฉ
soc-yk
2026-06-06 07:30:12
(1 month ago)
Type: suspicious_network_activity
Risk: 71
Events: 273
Evidence:
- Persistent suspicious network ac ...
show more
Type: suspicious_network_activity
Risk: 71
Events: 273
Evidence:
- Persistent suspicious network activity detected
- Repeated hostile operational behavior observed
- Multi-event operational persistence identified
- Threat escalation behavior observed
show less
Port Scan
Hacking
Anonymous
2026-06-01 02:46:32
(1 month ago)
Malicious activity detected
Hacking
Web App Attack
๐จ๐ญ
ALPHANET
2026-05-22 13:45:22
(2 months ago)
Botnet or web spider not respecting robots.txt
DDoS Attack
Exploited Host
๐ฉ๐ช
centurion
2026-05-14 06:50:01
(2 months ago)
Blocked by UFW on ns02 [1433/tcp]
Source port: 27897
TTL: 115
Packet length: 52
TOS: 0x00
This repo ...
show more
Blocked by UFW on ns02 [1433/tcp]
Source port: 27897
TTL: 115
Packet length: 52
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ฆ๐ฉ
bakunin1848
2026-04-08 02:02:05
(3 months ago)
Firewall IPS Detection on 08-04-2026 at 04:02:05
Port Scan
Exploited Host
๐ฎ๐น
A000Z
2026-04-05 13:38:49
(3 months ago)
Fail2Ban: 182.10.129.201 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5 ...
show more
Fail2Ban: 182.10.129.201 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/140.0.0.0 Safari/537.36
show less
Bad Web Bot
๐บ๐ธ
sumnone
2026-03-03 18:10:23
(4 months ago)
Port probing on unauthorized port 445
Port Scan
Hacking
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-02-24 12:04:55
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 182.10.129.201 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 182.10.129.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 24 07:04:51.305950 2026] [security2:error] [pid 20821:tid 20821] [client 182.10.129.201:30459] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||casapapayasanmiguel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "casapapayasanmiguel.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aZ2T4yinynvd6MaqkerblQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WeekendWeb
2026-02-24 02:26:36
(5 months ago)
Wordpress Vunerability attack
Web App Attack
๐ซ๐ท
Flo Flo
2026-02-23 23:16:30
(5 months ago)
182.10.129.201 - - - [24/Feb/2026:00:16:29 +0100] "flad.xyz" "POST /xmlrpc.php HTTP/1.1" 444 0 "-" " ...
show more
182.10.129.201 - - - [24/Feb/2026:00:16:29 +0100] "flad.xyz" "POST /xmlrpc.php HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7; x86) AppleWebKit/537.36 (KHTML, like Gecko) Opera/60.0.0.0 Safari/537.36" 0.000
...
show less
Web App Attack
๐บ๐ธ
myagent.site
2026-02-23 21:53:10
(5 months ago)
Blocking for trying to access an exploit file: /xmlrpc.php
Hacking
๐ท๐ด
INTEQ
2026-02-23 17:00:16
(5 months ago)
Web attack from 182.10.129.201
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-23 13:36:09
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 182.10.129.201 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 182.10.129.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 23 08:36:05.331031 2026] [security2:error] [pid 21968:tid 21968] [client 182.10.129.201:54016] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||major33.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "major33.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aZxXxVjXRA6k00dshUeraAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack