AbuseIPDB » 216.40.74.219
216.40.74.219 was found in our database!
This IP was reported 9 times. Confidence of
Abuse
is 16%: ?
| ISP |
PureKernel LLC
|
| Usage Type |
Data Center/Web Hosting/Transit
|
| ASN |
AS213954
|
| Domain Name |
purekernel.net
|
| Country |
๐บ๐ธ
United States of America
|
| City |
Louisville, Kentucky
|
IP info including ISP, Usage Type, and Location provided
by IPInfo. Updated weekly.
IP Abuse Reports for 216.40.74.219:
This IP address has been reported a total of
9
times from
9 distinct
sources.
216.40.74.219 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
| Reporter |
IoA Timestamp (UTC)
|
Comment |
Categories |
|
|
๐ง๐ท
SOC PR
|
|
IPS: WordPress HTTP Brute Force Login Attempt.
|
Brute-Force
|
|
|
๐ฎ๐ฉ
BPS-StatisticsIndonesia
|
|
WP Login Scan Activities: "2026-04-28T23:32:37.933+07:00" "/wp-login.php" "216.40.74.219" "Mozilla/5 ...
show more
WP Login Scan Activities: "2026-04-28T23:32:37.933+07:00" "/wp-login.php" "216.40.74.219" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
show less
|
Web App Attack
|
|
|
๐บ๐ฆ
URAN Publishing Service
|
|
216.40.74.219 - - [28/Apr/2026:12:50:58 +0300] "GET /wp-login.php HTTP/1.1" 404 3128 "https://www.go ...
show more
216.40.74.219 - - [28/Apr/2026:12:50:58 +0300] "GET /wp-login.php HTTP/1.1" 404 3128 "https://www.google.com" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
216.40.74.219 - - [28/Apr/2026:12:50:59 +0300] "GET /wp-login.php HTTP/1.1" 404 3127 "https://www.google.com" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
...
show less
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 216.40.74.219 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 216.40.74.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 22 23:05:08.664978 2026] [security2:error] [pid 3097598:tid 3097598] [client 216.40.74.219:21679] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.cruisingforsex.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.cruisingforsex.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aemMZLRk3RghNB5Y29q0gwAAACQ"], referer: https://www.google.com
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฎ๐ฉ
sockominfo
|
|
IDOR Attempt. Threat Score: 8.5/10 (HIGH). Reported by TangerangKota-CSIRT. Status: MALICIOUS
|
Hacking
Web App Attack
|
|
|
๐บ๐ธ
TRoden
|
|
Geo Block Plugin: Escalation flag(s): rce_attempt
|
Hacking
|
|
|
๐บ๐ธ
oralunal
|
|
IP banned by Fail2Ban in jail ente-suss ente.com-ssl_log mvfnds
...
|
Bad Web Bot
Web App Attack
|
|
|
๐ช๐ธ
Cognisant-Security
|
|
Attempts to login WordPress with invalid user credentials
|
Web App Attack
Hacking
|
|
|
๐ซ๐ท
dynamix
|
|
Multiple WAF Violations
|
Web App Attack
|
|
Showing 1 to
9
of 9 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: