Neutral Activity
There is no recent abuse activity, or the IP address is whitelisted.
IPv6 SLAAC Note
Public IPv6 addresses may implement the SLAAC
privacy extension. With SLAAC, the interface identifier is randomly generated. SLAAC also implements a
configurable time out, so that the original IPv6 interface addresses will be discarded in favor of a new
interface identifier.
Log in to view charts and search reports for this IP.
Log In
No reports in the last 60 days
2a0b:8bc0:2:e2fc::1 has been reported 106
times. The most recent report is from
.
The full history is preserved below and remains searchable. A
0% score reflects the absence of recent activity, but
this is not a guarantee that earlier reports were invalid. Abuse confidence score decays,
naturally, over time, when the abusive activity stops.
IP Abuse Reports for 2a0b:8bc0:2:e2fc::1
This IP address has been reported a total of
106
times from
60 distinct
sources.
2a0b:8bc0:2:e2fc::1 was first reported on
, and the most recent report was
.
8 attacks on config grabbing URLs (type 2), env grabbing URLs, password grabbing URLs:
GET /secrets. ...
show more8 attacks on config grabbing URLs (type 2), env grabbing URLs, password grabbing URLs:
GET /secrets.json HTTP/1.1
GET /backend/.env HTTP/1.1
GET /.aws/credentials HTTP/1.1
show less
[TueMay0507:52:05.7866322026][security2:error][pid1026191:tid1026484][client2a0b:8bc0:2:e2fc::1:0]Mo ...
show more[TueMay0507:52:05.7866322026][security2:error][pid1026191:tid1026484][client2a0b:8bc0:2:e2fc::1:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.hostingedominio.com\"][uri\"/.env\"][unique_id\"afmFhSDsH8lmAhy_08pl-wAAAQ4\"]
show less
8 attacks on config grabbing URLs (type 2), password grabbing URLs, env grabbing URLs:
GET /secrets. ...
show more8 attacks on config grabbing URLs (type 2), password grabbing URLs, env grabbing URLs:
GET /secrets.json HTTP/1.1
GET /.aws/credentials HTTP/1.1
GET /app/.env HTTP/1.1
show less