This IP address has been reported a total of
44
times from
23 distinct
sources.
72.56.50.253 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Blocked by UFW (TCP on 36220)
Source port: 36167
TTL: 48
Packet length: 60
TOS: 0x08
This report (f ...
show moreBlocked by UFW (TCP on 36220)
Source port: 36167
TTL: 48
Packet length: 60
TOS: 0x08
This report (for 72.56.50.253) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
HTTP application-layer DoS / botnet traffic from 72.56.50.253: repeated high-cost dynamic page and f ...
show moreHTTP application-layer DoS / botnet traffic from 72.56.50.253: repeated high-cost dynamic page and feed requests (profile/tag views, forums, tracker, RSS) at abusive rates via completed TCP/HTTPS. Likely compromised end-user host.
show less
HTTP application-layer DoS / botnet traffic from 72.56.50.253: repeated high-cost dynamic page and f ...
show moreHTTP application-layer DoS / botnet traffic from 72.56.50.253: repeated high-cost dynamic page and feed requests (profile/tag views, forums, tracker, RSS) at abusive rates via completed TCP/HTTPS. Likely compromised end-user host.
show less
HTTP application-layer DoS / botnet traffic from 72.56.50.253: repeated high-cost dynamic page and f ...
show moreHTTP application-layer DoS / botnet traffic from 72.56.50.253: repeated high-cost dynamic page and feed requests (profile/tag views, forums, tracker, RSS) at abusive rates via completed TCP/HTTPS. Likely compromised end-user host.
show less
HTTP application-layer DoS / botnet traffic from 72.56.50.253: repeated high-cost dynamic page and f ...
show moreHTTP application-layer DoS / botnet traffic from 72.56.50.253: repeated high-cost dynamic page and feed requests (profile/tag views, forums, tracker, RSS) at abusive rates via completed TCP/HTTPS. Likely compromised end-user host.
show less
Blocked by UFW (TCP on 6881)
Source port: 8815
TTL: 50
Packet length: 60
TOS: 0x00
This report (for ...
show moreBlocked by UFW (TCP on 6881)
Source port: 8815
TTL: 50
Packet length: 60
TOS: 0x00
This report (for 72.56.50.253) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
[Thu May 28 14:18:18.872771 2026] [security2:error] [pid 520079:tid 139852161943232] [client 72.56.5 ...
show more[Thu May 28 14:18:18.872771 2026] [security2:error] [pid 520079:tid 139852161943232] [client 72.56.50.253:64659] ModSecurity: Access denied with code 403 (phase 1). Match of "eq 0" against "&REQUEST_HEADERS:Transfer-Encoding" required. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "815"] [id "920171"] [msg "GET or HEAD Request with Transfer-Encoding"] [data " Matched Data ARGS charset: - Matched Data TX.1: found within Content-Type multipart form Matched Data: GET found within REQUEST_HEADERS: 1 request_line = GET /index.php/profil/meteorologi/list-all-categories HTTP/2.0 Request URI RAW = /index.php/profil/meteorologi/list-all-categories Request Basename = list-all-categories"] [severity "CRITICAL"] [ver "OWASP_CRS/4.26.0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "OWASP_CRS/PROTOCOL-ENFORCEMENT"] [tag "capec/1000/210/272"] [hostname
...
show less