AbuseIPDB » 216.18.205.10
216.18.205.10 was found in our database!
This IP was reported 6 times. Confidence of
Abuse
is 40% : ?
ISP
WebNX, Inc.
Usage Type
Data Center/Web Hosting/Transit
ASN
AS18450
Hostname(s)
216.18.205.10.static.webnx.com
Domain Name
webnx.com
Country
πΊπΈ
United States of America
City
Salt Lake City, Utah
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 216.18.205.10 :
This IP address has been reported a total of
6
times from
6 distinct
sources.
216.18.205.10 was first reported on
June 2nd 2026 , and the most recent report was
1 hour ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
πΊπΈ
kosada.com
2026-06-05 10:38:59
(1 hour ago)
Web vulnerability probing: / (bogus vhost/SNI)
Web App Attack
π¬π§
essinghigh
2026-06-04 20:25:42
(15 hours ago)
IPS Detection: 216.18.205.10 -> DPT: 80
Port Scan
π¦πΊ
dyln
2026-06-04 01:06:07
(1 day ago)
Dyls honeypot brute-force: proto8 (1 total hits)
Brute-Force
πΊπΈ
itsnixk
2026-06-02 22:09:47
(2 days ago)
(mod_security) mod_security (id:920350) triggered by 216.18.205.10 (US/United States/216.18.205.10.s ...
show more
(mod_security) mod_security (id:920350) triggered by 216.18.205.10 (US/United States/216.18.205.10.static.webnx.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Tue Jun 02 18:09:45.092194 2026] [security2:error] [pid 1289675:tid 1289770] [client 216.18.205.10:6080] ModSecurity: Access denied with code 406 (phase 1). Pattern match "(?:^([\\\\d.]+|\\\\[[\\\\da-f:]+\\\\]|[\\\\da-f:]+)(:[\\\\d]+)?$)" at REQUEST_HEADERS:Host. [file "/etc/modsecurity.d/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "774"] [id "920350"] [msg "Host header is a numeric IP address"] [redacted] [severity "WARNING"] [ver "OWASP_CRS/4.25.0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "OWASP_CRS/PROTOCOL-ENFORCEMENT"] [tag "capec/1000/210/272"] [redacted] [uri "/"] [unique_id "ah9UqWbEamGX5NffZnN0kwAAAEw"]
show less
Port Scan
πΊπΈ
ISPLtd
2026-06-02 13:22:58
(2 days ago)
Jun 2 10:22:45 216.18.205.10 TCP SPT=9526 DPT=8000 SYN
Jun 2 10:22:45 216.18.205.10 TCP SPT=11002 ...
show more
Jun 2 10:22:45 216.18.205.10 TCP SPT=9526 DPT=8000 SYN
Jun 2 10:22:45 216.18.205.10 TCP SPT=11002 DPT=8188 SYN
Jun 2 10:22:45 216.18.205.10 TCP SPT=32494 DPT=8189 SYN
...
show less
Port Scan
π΅π±
sefinek.net
2026-06-02 02:01:32
(3 days ago)
Blocked by UFW on PL02 [8080/tcp] | SPT: 34386 | TTL: 53 | LEN: 60 | TOS: 0x00 β’ Reported by: github ...
show more
Blocked by UFW on PL02 [8080/tcp] | SPT: 34386 | TTL: 53 | LEN: 60 | TOS: 0x00 β’ Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Web App Attack
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown π©
Recently Reported IPs: