AbuseIPDB » 192.3.140.104
192.3.140.104 was found in our database!
This IP was reported 31 times. Confidence of Abuse is 90%: ?
This address is a Tor exit node. Neither the owner nor the provider are directly behind the offending action.
| ISP | HostPapa |
|---|---|
| Usage Type | Data Center/Web Hosting/Transit |
| ASN | AS36352 |
| Hostname(s) |
192-3-140-104-host.colocrossing.com |
| Domain Name | hostpapa.com |
| Country | ๐บ๐ธ United States of America |
| City | Buffalo, New York |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 192.3.140.104:
This IP address has been reported a total of 31 times from 16 distinct sources. 192.3.140.104 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐ซ๐ท dynamix |
WordPress XMLRPC Brute Force Attack
|
Brute-Force Web App Attack | ||
| ๐ฉ๐ช LRob.fr |
Repeated attacks detected by Fail2Ban in recidive jail
|
Hacking | ||
| ๐ฉ๐ช LRob.fr |
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
|
Bad Web Bot Web App Attack | ||
| ๐ณ๐ฑ homeshowdomain.nl |
|
Web App Attack SSH Hacking | ||
| ๐ฉ๐ช Vegascosmetics |
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after suspicious activity. Vegas Security
|
DDoS Attack Hacking Exploited Host | ||
| ๐บ๐ธ xmission.com |
|
Port Scan | ||
| ๐บ๐ธ oncord |
Form spam
|
Web Spam | ||
| ๐ฉ๐ช LRob.fr |
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
|
Bad Web Bot Web App Attack | ||
| ๐ฉ๐ช _ArminS_ |
WEB-Scan 64158:80 detected 2026.06.16 01:21:12
blocked until 2026.08.04 18:23:59
|
Port Scan | ||
| ๐บ๐ธ TPI-Abuse |
|
Brute-Force Bad Web Bot Web App Attack | ||
| ๐บ๐ธ xmission.com |
|
Port Scan | ||
| ๐ฌ๐ง anycast_ac |
[WebProtection] L4/L7 attack source ยท L4-443-CC-DROP ยท 5 hits/window
|
Port Scan | ||
| ๐ฉ๐ช anycast_ac |
[DDoS Attacker] This IP was attacking website nucleardlc.fun and sent 9571 requests on port 443
|
DDoS Attack Web App Attack | ||
| ๐บ๐ธ TPI-Abuse |
|
Brute-Force Bad Web Bot Web App Attack | ||
| ๐บ๐ธ TPI-Abuse |
|
Brute-Force Bad Web Bot Web App Attack |
Showing 1 to 15 of 31 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ