This IP address (202.141.230.66) is a proxy connection and is associated with recent SPAM blacklist ...
show moreThis IP address (202.141.230.66) is a proxy connection and is associated with recent SPAM blacklist activity or abusive behavior. IPQS fraud scoring algorithms have rated this IP address as high risk, scoring 89 out of 100. Users or transactions originating from this IP address should be treated with caution. This decision is based on high confidence due to recent abuse from this connection.
show less
(mod_security) mod_security (id:225080) triggered by 202.141.230.66 (202-141-230-66.multi.net.pk): 1 ...
show more(mod_security) mod_security (id:225080) triggered by 202.141.230.66 (202-141-230-66.multi.net.pk): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 23 12:23:08.343761 2026] [security2:error] [pid 3156906:tid 3156906] [client 202.141.230.66:37413] ModSecurity: Access denied with code 403 (phase 2). Match of "rx ^[\\\\d\\\\.ab]+$" against "ARGS_GET:C" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "143"] [id "225080"] [rev "1"] [msg "COMODO WAF: XSS vulnerability in Plupload before 2.1.9 or MediaElement.js before 2.21.0, as used in WordPress before 4.5.2 (CVE-2016-4566 & CVE-2016-4567)||www.cffragrances.iee-usa.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.cffragrances.iee-usa.com"] [uri "/wp-includes/js/tinymce/plugins/wpeditimage/css/"] [unique_id "aepHbGWCSzYj7nk37pDPWgAAABo"], referer: http://www.cffragrances.iee-usa.com/
show less
Fail2Ban: 202.141.230.66 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5 ...
show moreFail2Ban: 202.141.230.66 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/140.0.0.0 Safari/537.36
show less
"Participant in large-scale DDoS Attack in which data injection was attmpted to gain unauthorized ac ...
show more"Participant in large-scale DDoS Attack in which data injection was attmpted to gain unauthorized access"
show less
DDoS Attack
SQL Injection
Exploited Host
Showing 1 to
8
of 8 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ