This IP was reported 189 times. Confidence of
Abuse
is 39%: ?
39%
Important Note: Public IPv6 addresses may implement the SLAAC
privacy extension. With this, the interface identifier is randomly generated. The SLAAC
privacy extension also implements a time out, which is configurable, so that the IPv6
interface addresses will be discarded and a new interface identifier is generated.
This IP address has been reported a total of
189
times from
88 distinct
sources.
2a0b:8bc0:2:2b38::1 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
[TueMay0506:13:29.9093622026][security2:error][pid1151777:tid1151877][client2a0b:8bc0:2:2b38::1:0]Mo ...
show more[TueMay0506:13:29.9093622026][security2:error][pid1151777:tid1151877][client2a0b:8bc0:2:2b38::1:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\b\(\?:\\\\\\\\.\(\?:ht\(\?:access\|passwd\|group\)\|www_\?acl\)\|global\\\\\\\\.asa\|httpd\\\\\\\\.conf\|boot\\\\\\\\.ini\|web.config\)\\\\\\\\b\|\(\|\^\|\\\\\\\\.\\\\\\\\.\)/etc/\|/\\\\\\\\.\(\?:history\|bash_history\|sh_history\|env\)\$\)\"atREQUEST_FILENAME.[file\"/etc/apache2/conf.d/modsec_rules/10_asl_rules.conf\"][line\"204\"][id\"390709\"][rev\"30\"][msg\"Atomicorp.comWAFRules:Attempttoaccessprotectedfileremotely\"][data\"/.env\"][severity\"CRITICAL\"][hostname\"serban.ch\"][uri\"/app/.env\"][unique_id\"afluafm4aEC5QK1PpdL7jwAAAQI\"]
show less
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -46.764 (Bad < -10 / Very Bad < -20 ...
show moreBot/Spam/Scrapper attack detected on www.handytreff.de - Score: -46.764 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/147.0.0.0 Sa
show less
(modsecurity) srv104 ModSecurity 2a0b:8bc0:2:2b38::1 (NL/The Netherlands/-): 10 in the last 3600 sec ...
show more(modsecurity) srv104 ModSecurity 2a0b:8bc0:2:2b38::1 (NL/The Netherlands/-): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
Showing 1 to
15
of 189 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ