User roismct
joined AbuseIPDB in February 2026 and has reported 6 IP
addresses.
Standing (weight) is
good.
INACTIVE USER
IP
Date
Comment
Categories
🇭🇰
207.56.138.28
18 May 2026
We detect a trojan campaign that connect to this IP as c2 server. bellow are full detail
https://ww ...
show more
We detect a trojan campaign that connect to this IP as c2 server. bellow are full detail
https://www.virustotal.com/gui/file/fdc1fe7de4f04365b34719e25cb540c029822aefc8be96597f4892b8db096fdc/behavior
show less
Hacking
🇺🇸
76.32.88.204
07 Mar 2026
server3.hostdata.id => 132.255.24.198 0b ...
show more
server3.hostdata.id => 132.255.24.198 0b 0b 0b
<= 30.6Mb 37.7Mb 36.9Mb
server3.hostdata.id => 172.59.136.146 0b 0b 0b
<= 27.4Mb 26.7Mb 25.9Mb
server3.hostdata.id => syn-104-229-104-156.res.spectrum.com 0b 0b 0b
<= 14.8Mb 15.0Mb 14.6Mb
server3.hostdata.id => syn-076-032-088-204.res.spectrum.c
show less
DDoS Attack
🇺🇸
104.229.104.156
07 Mar 2026
timeout 10 tcpdump -i enp36s0f0 -n udp -c 20
dropped privs to tcpdump
tcpdump: verbose output s ...
show more
timeout 10 tcpdump -i enp36s0f0 -n udp -c 20
dropped privs to tcpdump
tcpdump: verbose output suppressed, use -v[v]... for full protocol decode
listening on enp36s0f0, link-type EN10MB (Ethernet), snapshot length 262144 bytes
23:16:18.042126 IP 132.255.24.198.26629 > 15.235.180.114.tinymessage: UDP, length 1400
23:16:18.042431 IP 132.255.24.198.26629 > 15.235.180.114.tinymessage: UDP, length 1400
23:16:18.042640 IP 132.255.24.198.26629 > 15.235.180.114.tinymessage: UDP, length 1400
23:16:18.042710 IP 132.255.24.198.26629 > 15.235.180.114.tinymessage: UDP, length 1400
23:16:18.042747 IP 104.229.104.156.64533 > 15.235.180.114.tinymessage: UDP, length 1400
23:16:18.042768 IP 132.255.24.198.26629 > 15.235.180.114.tinymessage: UDP, length 1400
23:16:18.042771 IP 104.229.104.156.64533 > 15.235.180.114.tinymessage: UDP, length 1400
23:16:18.042822 IP 132.255.24.198.26629 > 15.235.180.114.tinymessage: UDP, length 1400
show less
DDoS Attack
🇺🇸
172.59.136.146
07 Mar 2026
Chain PREROUTING (policy ACCEPT 1539K packets, 1961M bytes)
pkts bytes target prot opt in ...
show more
Chain PREROUTING (policy ACCEPT 1539K packets, 1961M bytes)
pkts bytes target prot opt in out source destination
1580K 2256M DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5104
0 0 DROP udp -- * * 104.229.104.156 0.0.0.0/0
0 0 DROP udp -- * * 76.32.88.204 0.0.0.0/0
7 9996 DROP udp -- * * 172.59.136.146 0.0.0.0/0
16 22848 DROP udp -- * * 132.255.24.198 0.0.0.0/0
3 4284 DROP udp -- * * 69.174.136.25 0.0.0.0/0
1539K 1961M CT all -- * * 0.0.0.0/0 0.0.0.0/0
show less
DDoS Attack
🇧🇷
132.255.24.198
07 Mar 2026
16 22848 DROP udp -- * * 132.255.24.198 0.0.0.0/0
3 428 ...
show more
16 22848 DROP udp -- * * 132.255.24.198 0.0.0.0/0
3 4284 DROP udp -- * * 69.174.136.25 0.0.0.0/0
1539K 1961M CT all -- * * 0.0.0.0/0 0.0.0.0/0
timeout 10 tcpdump -i enp36s0f0 -n udp -c 20
dropped privs to tcpdump
tcpdump: verbose output suppressed, use -v[v]... for full protocol decode
listening on enp36s0f0, link-type EN10MB (Ethernet), snapshot length 262144 bytes
23:16:18.042126 IP 132.255.24.198.26629 > 15.235.180.114.tinymessage: UDP, length 1400
23:16:18.042431 IP 132.255.24.198.26629 > 15.235.180.114.tinymessage: UDP, length 1400
23:16:18.042640 IP 132.255.24.198.26629 > 15.235.180.114.tinymessage: UDP, length 1400
23:16:18.042710 IP 132.255.24.198.26629 > 15.235.180.114.tinymessage: UDP, length 1400
show less
DDoS Attack
🇺🇸
69.174.136.25
07 Mar 2026
timeout 10 tcpdump -i enp36s0f0 -n udp -c 20
dropped privs to tcpdump
tcpdump: verbose output supp ...
show more
timeout 10 tcpdump -i enp36s0f0 -n udp -c 20
dropped privs to tcpdump
tcpdump: verbose output suppressed, use -v[v]... for full protocol decode
listening on enp36s0f0, link-type EN10MB (Ethernet), snapshot length 262144 bytes
23:16:18.042126 IP 132.255.24.198.26629 > 15.235.180.114.tinymessage: UDP, length 1400
23:16:18.042431 IP 132.255.24.198.26629 > 15.235.180.114.tinymessage: UDP, length 1400
23:16:18.042640 IP 132.255.24.198.26629 > 15.235.180.114.tinymessage: UDP, length 1400
23:16:18.042710 IP 132.255.24.198.26629 > 15.235.180.114.tinymessage: UDP, length 1400
23:16:18.042747 IP 104.229.104.156.64533 > 15.235.180.114.tinymessage: UDP, length 1400
23:16:18.042768 IP 132.255.24.198.26629 > 15.235.180.114.tinymessage: UDP, length 1400
23:16:18.042771 IP 104.229.104.156.64533 > 15.235.180.114.tinymessage: UDP, length 1400
23:16:18.042822 IP 132.255.24.198.26629 > 15.235.180.114.tinymessage: UDP, length 1400
show less
DDoS Attack