User Oz
joined AbuseIPDB in August 2020 and has reported 6 IP
addresses.
Standing (weight) is
good.
INACTIVE USER
WEBMASTER
SUPPORTER
| IP |
Date |
Comment |
Categories |
|
🇬🇧
57.128.172.233
|
|
RBL_DBL_PHISH (21) [mail.swiftemail24.com:helo,mail.swiftemail24.com:rdns,swiftemail24.com:dkim]
R_ ...
show more
RBL_DBL_PHISH (21) [mail.swiftemail24.com:helo,mail.swiftemail24.com:rdns,swiftemail24.com:dkim]
R_SPF_PERMFAIL (8) [empty SPF record]
SH_EMAIL_DBL (7) [catering-virginatlantic.co.uk:replyto]
BAYES_SPAM (2.672492) [93.69%]
MISSING_MID (2.5)
BAD_REP_POLICIES (2)
MIME_MA_MISSING_TEXT (2)
IP_REPUTATION_SPAM (1.639997) [asn: 16276(0.40), country: FR(0.01), ip: 57.128.172.233(0.00)]
INVALID_DATE (1.5)
FROM_EXCESS_BASE64 (1.5)
SUBJ_EXCESS_BASE64 (1.5)
URI_COUNT_ODD (1) [1]
MV_CASE (0.5)
MIME_HTML_ONLY (0.2)
show less
|
Email Spam
|
|
🇳🇱
37.48.73.232
|
|
348744248413862337528406808178075470023600734442@novstalle.beauty 37.48.73.232 [email protected] ...
show more
348744248413862337528406808178075470023600734442@novstalle.beauty 37.48.73.232 [email protected] [REDACTED RECIPIENT] Αντιμυκητιακοσ παραγοντασ - Fungent reject 2066.38 / 15 102 KiB 3.348 26/05/2025, 00:00:09
show less
|
Email Spam
|
|
🇩🇪
89.163.151.211
|
|
|
Email Spam
|
|
🇫🇷
37.59.242.84
|
|
Return-path: <[email protected]>
Envelope-to: [REDACTED]
Delivery-date: Wed, 26 Ma ...
show more
Return-path: <[email protected]>
Envelope-to: [REDACTED]
Delivery-date: Wed, 26 Mar 2025 11:03:12 +0200
Received: from nmem01.com ([37.59.242.84])
by [REDACTED] with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
(Exim 4.95)
(envelope-from <[email protected]>)
id 1txMfI-008g8D-5U
for [REDACTED];
Wed, 26 Mar 2025 11:03:12 +0200
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; s=lm24; d=b2b-info-worldwide.com;
h=From:To:Reply-To:Subject:Date:Message-ID:MIME-Version:List-Unsubscribe:
List-Unsubscribe-Post:Content-Type:From:To:Subject:CC:Date;
[email protected];
show less
|
Email Spam
|
|
🇺🇸
172.59.125.120
|
|
Bitcoin ransomware email message. Headers bellow:
Return-path: <[email protected]>
Envelop ...
show more
Bitcoin ransomware email message. Headers bellow:
Return-path: <[email protected]>
Envelope-to: a***************s@at****p.gr
Delivery-date: Thu, 07 Nov 2024 00:55:50 +0200
Received: from [172.59.125.120]
by apollo.atgroup.gr with esmtp (Exim 4.93)
(envelope-from <[email protected]>)
id 1t8owF-00C8fJ-J6
for a***************s@at****p.gr; Thu, 07 Nov 2024 00:55:50 +0200
Date: Wed, 6 Nov 2024 05:33:43 -0900
From: "yehudi vee" <[email protected]>
Message-ID: <[email protected]>
To: <a***************s@at****p.gr>
Subject: Re:
MIME-Version: 1.0
Content-Type: multipart/alternative;
boundary="----------EAFE9D55668936AEB"
------------EAFE9D55668936AEB
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
show less
|
Email Spam
|
|
🇮🇪
40.127.189.111
|
|
40.127.189.111 - - [10/Feb/2024:16:22:35 +0200] "GET /ubh/ HTTP/1.0" 403 529 "-" "Mozilla/5.0 (Windo ...
show more
40.127.189.111 - - [10/Feb/2024:16:22:35 +0200] "GET /ubh/ HTTP/1.0" 403 529 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36"
40.127.189.111 - - [10/Feb/2024:16:22:33 +0200] "GET /administrator/ HTTP/1.0" 403 529 "-" "Mozilla/5.0 (X11; Linux i686; rv:79.0) Gecko/20100101 Firefox/79.0"
40.127.189.111 - - [10/Feb/2024:16:22:30 +0200] "GET /xxxxxminoksxxxx2021/xxxxxminoksxxxx2021.php HTTP/1.0" 403 529 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:71.0) Gecko/20100101 Firefox/71.0"
40.127.189.111 - - [10/Feb/2024:16:22:30 +0200] "
show less
|
Brute-Force
Web App Attack
|