AbuseIPDB » 2.50.158.132
2.50.158.132 was found in our database!
This IP was reported 5 times. Confidence of
Abuse
is 31% : ?
ISP
Emirates Telecommunications Corporation
Usage Type
Fixed Line ISP
ASN
AS5384
Hostname(s)
bba-2-50-158-132.alshamil.net.ae
Domain Name
etisalat.ae
Country
๐ฆ๐ช
United Arab Emirates
City
Abu Dhabi, Abu Dhabi
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 2.50.158.132 :
This IP address has been reported a total of
5
times from
5 distinct
sources.
2.50.158.132 was first reported on
July 13th 2026 , and the most recent report was
1 week ago .
Old Reports:
The most recent abuse report for this IP address is from
1 week ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
2026-07-13 10:47:14
(1 week ago)
[ssd5.kdns.gr] httpd-xmlrpc-post: sites=www.parthenios.org; logs=/var/log/httpd/domains/parthenios.o ...
show more
[ssd5.kdns.gr] httpd-xmlrpc-post: sites=www.parthenios.org; logs=/var/log/httpd/domains/parthenios.org.log; samples=/xmlrpc.php
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-13 07:42:48
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 2.50.158.132 (bba-2-50-158-132.alshamil.net.ae) ...
show more
(mod_security) mod_security (id:240335) triggered by 2.50.158.132 (bba-2-50-158-132.alshamil.net.ae): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 13 03:42:42.445670 2026] [security2:error] [pid 371:tid 371] [client 2.50.158.132:49465] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 2.50.158.132 (+1 hits since last alert)|caddydad.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "caddydad.com"] [uri "/xmlrpc.php"] [unique_id "alSW8mjCJhtBALMGeC_E3gAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-13 05:59:10
(1 week ago)
[redacted] 2.50.158.132 - - [13/Jul/2026:07:58:25 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Je ...
show more
[redacted] 2.50.158.132 - - [13/Jul/2026:07:58:25 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Jetpack/13.0; WordPress/6.1; http://site19946810.com"
[redacted] 2.50.158.132 - - [13/Jul/2026:07:58:36 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Jetpack by WordPress.com (Jetpack 12.5; WordPress 6.3)"
[redacted] 2.50.158.132 - - [13/Jul/2026:07:58:52 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Jetpack by WordPress.com"
[redacted] 2.50.158.132 - - [13/Jul/2026:07:58:58 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Jetpack/12.5; WordPress/6.2; http://site97779556.com"
[redacted] 2.50.158.132 - - [13/Jul/2026:07:59:09 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "WordPress.com; https://wordpress.com"
...
show less
Hacking
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-07-13 05:20:45
(1 week ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-13 04:48:43
(1 week ago)
Fail2Ban: WordPress XML-RPC brute-force attack detected.
Bad Web Bot
Web App Attack
Showing 1 to
5
of 5 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: