Neutral Activity
There is no recent abuse activity, or the IP address is whitelisted.
Whitelisted Subnet
Whitelisted netblocks are typically owned by trusted entities, such as Google or Microsoft who
may use them for search engine spiders. However, these same entities sometimes also provide cloud
servers and mail services which are easily abused. Pay special attention when trusting or
distrusting these IPs.
IPv6 SLAAC Note
Public IPv6 addresses may implement the SLAAC
privacy extension. With SLAAC, the interface identifier is randomly generated. SLAAC also implements a
configurable time out, so that the original IPv6 interface addresses will be discarded in favor of a new
interface identifier.
Log in to view charts and search reports for this IP.
Log In
No reports in the last 60 days
2a03:2880:ff:b::face:b00c has been reported 132
times. The most recent report is from
.
The full history is preserved below and remains searchable. A
0% score reflects the absence of recent activity, but
this is not a guarantee that earlier reports were invalid. Abuse confidence score decays,
naturally, over time, when the abusive activity stops.
IP Abuse Reports for 2a03:2880:ff:b::face:b00c
This IP address has been reported a total of
132
times from
15 distinct
sources.
2a03:2880:ff:b::face:b00c was first reported on
, and the most recent report was
.
(mod_security) mod_security (id:225080) triggered by 2a03:2880:ff:b::face:b00c (fwdproxy-prn-011.fbs ...
show more(mod_security) mod_security (id:225080) triggered by 2a03:2880:ff:b::face:b00c (fwdproxy-prn-011.fbsv.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 08 15:53:51.332974 2024] [security2:error] [pid 2113319:tid 2113319] [client 2a03:2880:ff:b::face:b00c:58584] [client 2a03:2880:ff:b::face:b00c] ModSecurity: Access denied with code 403 (phase 2). Match of "rx ^[\\\\d\\\\.ab]+$" against "ARGS_GET:C" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "143"] [id "225080"] [rev "1"] [msg "COMODO WAF: XSS vulnerability in Plupload before 2.1.9 or MediaElement.js before 2.21.0, as used in WordPress before 4.5.2 (CVE-2016-4566 & CVE-2016-4567)||www.cffragrances.iee-usa.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.cffragrances.iee-usa.com"] [uri "/wp-includes/js/tinymce/plugins/safari/"] [unique_id "ZrUiT_8FohN6BS6v2GfsjwAAABc"]
show less