User EricTheRedFL , the webmaster of www.ab-data.us, joined AbuseIPDB in September 2020 and has reported 1,413,154 IP addresses.
Standing (weight) is good.
ACTIVE USER
WEBMASTER
SUPPORTER
- « Previous
- Next »
IP | Date | Comment | Categories |
---|---|---|---|
![]() |
web.ab-data.us:80 104.234.115.173 - - [21/Mar/2025:06:04:02 -0400] "GET / HTTP/1.0" 301 538 "-" "� ... show moreweb.ab-data.us:80 104.234.115.173 - - [21/Mar/2025:06:04:02 -0400] "GET / HTTP/1.0" 301 538 "-" "'Mozilla/5.0 (compatible; GenomeCrawlerd/1.0; +https://www.nokia.com/genomecrawler)'"
web.ab-data.us:80 104.234.115.173 - - [21/Mar/2025:06:04:14 -0400] "\x16\x03\x01" 301 613 "-" "-" web.ab-data.us:80 104.234.115.173 - - [21/Mar/2025:06:04:31 -0400] "GET / HTTP/1.1" 301 520 "-" "'Mozilla/5.0 (compatible; GenomeCrawlerd/1.0; +https://www.nokia.com/genomecrawler)'" web.ab-data.us:80 104.234.115.173 - - [21/Mar/2025:06:04:49 -0400] "GET /manage/account/login HTTP/1.1" 301 560 "-" "'Mozilla/5.0 (compatible; GenomeCrawlerd/1.0; +https://www.nokia.com/genomecrawler)'" web.ab-data.us:80 104.234.115.173 - - [21/Mar/2025:06:05:00 -0400] "GET /admin/index.html HTTP/1.1" 301 552 "-" "'Mozilla/5.0 (compatible; GenomeCrawlerd/1.0; +https://www.nokia.com/genomecrawler)'" ... show less |
Hacking Brute-Force Web App Attack | |
![]() |
Mar 21 04:56:13 mailstore sshd[1452155]: Invalid user test021 from 43.226.39.239 port 34344
Ma ... show moreMar 21 04:56:13 mailstore sshd[1452155]: Invalid user test021 from 43.226.39.239 port 34344
Mar 21 04:56:13 mailstore sshd[1452155]: Disconnected from invalid user test021 43.226.39.239 port 34344 [preauth] Mar 21 05:02:39 mailstore sshd[1452365]: Invalid user usbmuxd from 43.226.39.239 port 58132 Mar 21 05:02:39 mailstore sshd[1452365]: Disconnected from invalid user usbmuxd 43.226.39.239 port 58132 [preauth] ... show less |
Brute-Force SSH | |
![]() |
2025-03-21 04:08:05 SMTP syntax error in "GET / HTTP/1.1" H=scan-01.shadowserver.org [184.105.139.67 ... show more2025-03-21 04:08:05 SMTP syntax error in "GET / HTTP/1.1" H=scan-01.shadowserver.org [184.105.139.67] unrecognized command
2025-03-21 04:08:05 SMTP syntax error in "Host: 93.95.227.62:25" H=scan-01.shadowserver.org [184.105.139.67] unrecognized command 2025-03-21 04:08:05 SMTP syntax error in "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 YaBrowser/23.7.0.2534 Yowser/2.5 Safari/537.36" H=scan-01.shadowserver.org [184.105.139.67] unrecognized command 2025-03-21 04:08:05 SMTP syntax error in "Accept: */*" H=scan-01.shadowserver.org [184.105.139.67] unrecognized command ... show less |
Email Spam Brute-Force | |
![]() |
2025-03-21 03:52:43 no host name found for IP address 143.198.168.168
2025-03-21 03:52:44 H=(W ... show more2025-03-21 03:52:43 no host name found for IP address 143.198.168.168
2025-03-21 03:52:44 H=(WIN-CLJ1B0GQ6JP) [143.198.168.168] F=<[email protected]> rejected RCPT <[email protected]>: relay not permitted 2025-03-21 03:56:28 no host name found for IP address 143.198.168.168 2025-03-21 03:56:29 H=(WIN-CLJ1B0GQ6JP) [143.198.168.168] F=<[email protected]> rejected RCPT <[email protected]>: relay not permitted ... show less |
Email Spam Brute-Force | |
![]() |
2025-03-21 03:07:07 no host name found for IP address 167.94.138.181
2025-03-21 03:07:08 SMTP ... show more2025-03-21 03:07:07 no host name found for IP address 167.94.138.181
2025-03-21 03:07:08 SMTP syntax error in "\026\003\001?\356\001??\352\003\003\362\021\023*\350T\360\360\371\217\264\263\344\244C\016\036\205P\245x"]v\255\344A\364\021\2712g \360e\263\215"\202\223\354\242\262\303\234D.,\253\236\241\257l\316\024\017\241\251\022"\327\360\007\347+?&\314\250\314\251\300/\3000\300+\300,\300\023\300 \300\024\300" H=[167.94.138.181] NUL character(s) present (shown as '?') 2025-03-21 03:07:08 SMTP syntax error in "?\234?\235?/?5\300\022?" H=[167.94.138.181] NUL character(s) present (shown as '?') 2025-03-21 03:07:08 SMTP syntax error in "\023\003\023\001\023\002\001??{?\005?\005\001?????" H=[167.94.138.181] NUL character(s) present (shown as '?') ... show less |
Email Spam Brute-Force | |
![]() |
Mar 20 10:14:33 mailstore sshd[1258546]: Invalid user '< from 46.246.8.47 port 31426
Mar ... show moreMar 20 10:14:33 mailstore sshd[1258546]: Invalid user '< from 46.246.8.47 port 31426
Mar 20 10:14:33 mailstore sshd[1258546]: Disconnected from invalid user '< 46.246.8.47 port 31426 [preauth] Mar 21 02:35:47 mailstore sshd[1429964]: Invalid user 63A9F0EA7BB98050796B649E85481845 from 46.246.8.47 port 40352 Mar 21 02:35:47 mailstore sshd[1429964]: Disconnected from invalid user 63A9F0EA7BB98050796B649E85481845 46.246.8.47 port 40352 [preauth] ... show less |
Brute-Force SSH | |
![]() |
Mar 21 01:51:43 mailstore sshd[1428308]: Invalid user db2fenc1 from 103.142.161.139 port 59490 ... show moreMar 21 01:51:43 mailstore sshd[1428308]: Invalid user db2fenc1 from 103.142.161.139 port 59490
Mar 21 01:51:43 mailstore sshd[1428308]: Disconnected from invalid user db2fenc1 103.142.161.139 port 59490 [preauth] Mar 21 01:55:59 mailstore sshd[1428484]: Invalid user vf from 103.142.161.139 port 47498 Mar 21 01:56:00 mailstore sshd[1428484]: Disconnected from invalid user vf 103.142.161.139 port 47498 [preauth] ... show less |
Brute-Force SSH | |
![]() |
web.ab-data.us:80 195.178.110.163 - - [21/Mar/2025:01:44:19 -0400] "\x16\x03\x01" 301 613 "-" "-"<br ... show moreweb.ab-data.us:80 195.178.110.163 - - [21/Mar/2025:01:44:19 -0400] "\x16\x03\x01" 301 613 "-" "-"
web.ab-data.us:80 195.178.110.163 - - [21/Mar/2025:01:44:20 -0400] "GET / HTTP/1.1" 301 613 "-" "-" web.ab-data.us:80 195.178.110.163 - - [21/Mar/2025:01:44:20 -0400] "GET / HTTP/1.1" 301 539 "-" "l9tcpid/v1.1.0" web.ab-data.us:80 195.178.110.163 - - [21/Mar/2025:01:44:20 -0400] "GET /.env.ci HTTP/1.1" 301 553 "-" "l9explore/1.2.2" web.ab-data.us:80 195.178.110.163 - - [21/Mar/2025:01:44:20 -0400] "GET /.env_sample HTTP/1.1" 301 561 "-" "l9explore/1.2.2" ... show less |
Hacking Brute-Force Web App Attack | |
![]() |
Mar 21 00:52:34 mailstore sshd[1411078]: Invalid user ali from 165.154.96.226 port 41174
Mar 2 ... show moreMar 21 00:52:34 mailstore sshd[1411078]: Invalid user ali from 165.154.96.226 port 41174
Mar 21 00:52:34 mailstore sshd[1411078]: Disconnected from invalid user ali 165.154.96.226 port 41174 [preauth] Mar 21 00:57:30 mailstore sshd[1411265]: Invalid user wjs from 165.154.96.226 port 51448 Mar 21 00:57:31 mailstore sshd[1411265]: Disconnected from invalid user wjs 165.154.96.226 port 51448 [preauth] ... show less |
Brute-Force SSH | |
![]() |
2025-03-21 00:31:03 SMTP syntax error in "\026\003\001?\356\001??\352\003\003\227\221\247\2659\363f\ ... show more2025-03-21 00:31:03 SMTP syntax error in "\026\003\001?\356\001??\352\003\003\227\221\247\2659\363f\177H5p\374\026bG\341\036S\216|I\231\225\004\376B5;\357G\354\330 #S4l}\246\2220KN]\021@2\214\327\205$\356\302\270?@6=9\273\325\372\267\350\373?&\314\250\314\251\300/\3000\300+\300,\300\023\300 \300\024\300" H=[199.45.155.89] NUL character(s) present (shown as '?')
2025-03-21 00:31:03 SMTP syntax error in "?\234?\235?/?5\300\022?" H=[199.45.155.89] NUL character(s) present (shown as '?') 2025-03-21 00:31:03 SMTP syntax error in "\023\003\023\001\023\002\001??{?\005?\005\001?????" H=[199.45.155.89] NUL character(s) present (shown as '?') 2025-03-21 00:31:03 SMTP syntax error in "?" H=[199.45.155.89] NUL character(s) present (shown as '?') ... show less |
Email Spam Brute-Force | |
![]() |
2025-03-20 22:13:23 no host name found for IP address 120.24.181.61
2025-03-20 22:13:24 SMTP p ... show more2025-03-20 22:13:23 no host name found for IP address 120.24.181.61
2025-03-20 22:13:24 SMTP protocol error in "AUTH LOGIN" H=(User) [120.24.181.61] AUTH command used when not advertised 2025-03-20 23:38:26 no host name found for IP address 120.24.181.61 2025-03-20 23:38:27 SMTP protocol error in "AUTH LOGIN" H=(User) [120.24.181.61] AUTH command used when not advertised ... show less |
Email Spam Brute-Force | |
![]() |
Mar 20 21:31:14 mailstore sshd[1371222]: Invalid user sunita from 109.138.227.214 port 47106
M ... show moreMar 20 21:31:14 mailstore sshd[1371222]: Invalid user sunita from 109.138.227.214 port 47106
Mar 20 21:31:14 mailstore sshd[1371222]: Disconnected from invalid user sunita 109.138.227.214 port 47106 [preauth] Mar 20 21:34:17 mailstore sshd[1371253]: Invalid user schneider from 109.138.227.214 port 37678 Mar 20 21:34:17 mailstore sshd[1371253]: Disconnected from invalid user schneider 109.138.227.214 port 37678 [preauth] ... show less |
Brute-Force SSH | |
![]() |
2025-03-20 20:11:29 no host name found for IP address 45.91.171.220
2025-03-20 20:11:29 SMTP s ... show more2025-03-20 20:11:29 no host name found for IP address 45.91.171.220
2025-03-20 20:11:29 SMTP syntax error in "\026\003\001?u\001??q\003\003\234\027\357\357\340\225\363\260\207\302\236R\304\215\vL\036\\275\207\364=)\022)\272u\250N\243\342\332??\032\300/\300+\300\021\300\007\300\023\300 \300\024\300" H=[45.91.171.220] NUL character(s) present (shown as '?') 2025-03-20 20:11:29 SMTP syntax error in "?\005?/?5\300\022?" H=[45.91.171.220] NUL character(s) present (shown as '?') 2025-03-20 20:11:29 SMTP syntax error in "\001??.?\005?\005\001?????" H=[45.91.171.220] NUL character(s) present (shown as '?') ... show less |
Email Spam Brute-Force | |
![]() |
2025-03-20 19:56:54 no host name found for IP address 167.94.146.56
2025-03-20 19:56:54 SMTP s ... show more2025-03-20 19:56:54 no host name found for IP address 167.94.146.56
2025-03-20 19:56:54 SMTP syntax error in "\026\003\001?\356\001??\352\003\003x\250T\3277Q?\346!\217w\373^\271\257\002A\227\364@\252\260\276\352\225\344\340\003\334L\240\303 \342%\225~\036\310\324\223\3711c\260s\366\360+jP.\203\274\030]\264\036\305GT\205z#\244?&\314\250\314\251\300/\3000\300+\300,\300\023\300 \300\024\300" H=[167.94.146.56] NUL character(s) present (shown as '?') 2025-03-20 19:56:54 SMTP syntax error in "?\234?\235?/?5\300\022?" H=[167.94.146.56] NUL character(s) present (shown as '?') 2025-03-20 19:56:54 SMTP syntax error in "\023\003\023\001\023\002\001??{?\005?\005\001?????" H=[167.94.146.56] NUL character(s) present (shown as '?') ... show less |
Email Spam Brute-Force | |
![]() |
Mar 20 19:36:31 mailstore sshd[1349584]: Invalid user mutuagung from 210.79.142.221 port 53800 ... show moreMar 20 19:36:31 mailstore sshd[1349584]: Invalid user mutuagung from 210.79.142.221 port 53800
Mar 20 19:36:32 mailstore sshd[1349584]: Disconnected from invalid user mutuagung 210.79.142.221 port 53800 [preauth] Mar 20 19:42:53 mailstore sshd[1367117]: Invalid user wp from 210.79.142.221 port 49458 Mar 20 19:42:53 mailstore sshd[1367117]: Disconnected from invalid user wp 210.79.142.221 port 49458 [preauth] ... show less |
Brute-Force SSH | |
![]() |
Mar 20 18:44:11 mailstore sshd[1347527]: Invalid user yuhui from 118.122.147.8 port 41664
Mar ... show moreMar 20 18:44:11 mailstore sshd[1347527]: Invalid user yuhui from 118.122.147.8 port 41664
Mar 20 18:44:12 mailstore sshd[1347527]: Disconnected from invalid user yuhui 118.122.147.8 port 41664 [preauth] Mar 20 18:49:38 mailstore sshd[1347751]: Invalid user user1 from 118.122.147.8 port 36674 Mar 20 18:49:39 mailstore sshd[1347751]: Disconnected from invalid user user1 118.122.147.8 port 36674 [preauth] ... show less |
Brute-Force SSH | |
![]() |
Mar 20 18:44:10 mailstore sshd[1347526]: Invalid user zhangyd from 218.78.91.67 port 52586
Mar ... show moreMar 20 18:44:10 mailstore sshd[1347526]: Invalid user zhangyd from 218.78.91.67 port 52586
Mar 20 18:44:10 mailstore sshd[1347526]: Disconnected from invalid user zhangyd 218.78.91.67 port 52586 [preauth] Mar 20 18:48:30 mailstore sshd[1347729]: Invalid user tedtimbrell from 218.78.91.67 port 41132 Mar 20 18:48:30 mailstore sshd[1347729]: Disconnected from invalid user tedtimbrell 218.78.91.67 port 41132 [preauth] ... show less |
Brute-Force SSH | |
![]() |
2025-03-20 16:48:15 SMTP syntax error in "\026\003\003\001\245\001?\001\241\003\003\356\006\210\353b ... show more2025-03-20 16:48:15 SMTP syntax error in "\026\003\003\001\245\001?\001\241\003\003\356\006\210\353bB;\3135\351*?\307\214\256\324\203\354LT\345~\031\352\231\232>\340\367\3132\033 T}J\236" H=[185.242.226.24] NUL character(s) present (shown as '?')
2025-03-20 16:48:15 SMTP syntax error in "\005\026\002r\266kL\211\203\226\004\307\346\240\353t" H=[185.242.226.24] unrecognized command 2025-03-20 16:48:15 SMTP syntax error in "2-nCuF\346\346-\245?\212?\026?3?g\300\236\300\242?\236?9?k\300\237\300\243?\237?E?\276?\210?\304?\232\300\b\300 \300#\300\254\300\256\300+\300" H=[185.242.226.24] NUL character(s) present (shown as '?') 2025-03-20 16:48:15 SMTP syntax error in "\300$\300\255\300\257\300,\300r\300s\314\251\023\002\023\001\314\024\300\007\300\022\300\023\300'\300/\300\024\300(\3000\300`\300a\300v\300w\314\250\023\005\023\004\023\003\314\023\300\021?" H=[185.242.226.24] NUL character(s) present (shown as '?') ... show less |
Email Spam Brute-Force | |
![]() |
2025-03-20 16:43:53 SMTP syntax error in "\026\003\003\001\245\001?\001\241\003\003?a*\213J\243B\253 ... show more2025-03-20 16:43:53 SMTP syntax error in "\026\003\003\001\245\001?\001\241\003\003?a*\213J\243B\253\\335\031\355<\270\236\230*p\\243,\337\212-X\007A)x\200a\032 \374\0070(J\306\321\024\253\363j6\320+F\273Ud\024\247?\216 \334@J\320T\370t\337\364?\212?\026?3?g\300\236\300\242?\236?9?k\300\237\300\243?\237?E?\276?\210?\304?\232\300\b\300 \300#\300\254\300\256\300+\300" H=[185.242.226.22] NUL character(s) present (shown as '?')
2025-03-20 16:43:53 SMTP syntax error in "\300$\300\255\300\257\300,\300r\300s\314\251\023\002\023\001\314\024\300\007\300\022\300\023\300'\300/\300\024\300(\3000\300`\300a\300v\300w\314\250\023\005\023\004\023\003\314\023\300\021?" H=[185.242.226.22] NUL character(s) present (shown as '?') 2025-03-20 16:43:53 SMTP syntax error in "?/?<\300\234\300\240?\234?5?=\300\235\300\241?\235?A?\272?\204?\300?\007?\004?\005\001??\316???\021?\017??\f93.95.227.62?\027???\001?\001\001\377\001?\001??" H=[185.242.226.22] NUL character(s) present (shown as '?') 2025-03-20 16:43:53 S ... show less |
Email Spam Brute-Force | |
![]() |
Mar 20 15:05:13 mailstore sshd[1304725]: error: kex_exchange_identification: client sent invalid pro ... show moreMar 20 15:05:13 mailstore sshd[1304725]: error: kex_exchange_identification: client sent invalid protocol identifier "GET / HTTP/1.1"
Mar 20 15:05:13 mailstore sshd[1304725]: banner exchange: Connection from 217.95.37.126 port 64662: invalid format Mar 20 15:05:13 mailstore sshd[1304726]: error: kex_exchange_identification: client sent invalid protocol identifier "GET / HTTP/1.1" Mar 20 15:05:13 mailstore sshd[1304726]: banner exchange: Connection from 217.95.37.126 port 64709: invalid format ... show less |
Brute-Force SSH | |
![]() |
2025-03-20 14:50:56 SMTP syntax error in "\026\003\001?\356\001??\352\003\003od9\321\316]\3766\374\2 ... show more2025-03-20 14:50:56 SMTP syntax error in "\026\003\001?\356\001??\352\003\003od9\321\316]\3766\374\232\343\260tT&\303\320()\206E\357VJ\023tV\232\241\001\354F W\246\264\" H=[199.45.155.71] NUL character(s) present (shown as '?')
2025-03-20 14:50:56 SMTP syntax error in "i\344\327\264[\017\301\246o\216&e\305\373\2017\3112\242:\306\022\375\211\334\035\330?&\314\250\314\251\300/\3000\300+\300,\300\023\300 \300\024\300" H=[199.45.155.71] NUL character(s) present (shown as '?') 2025-03-20 14:50:56 SMTP syntax error in "?\234?\235?/?5\300\022?" H=[199.45.155.71] NUL character(s) present (shown as '?') 2025-03-20 14:50:56 SMTP syntax error in "\023\003\023\001\023\002\001??{?\005?\005\001?????" H=[199.45.155.71] NUL character(s) present (shown as '?') ... show less |
Email Spam Brute-Force | |
![]() |
Mar 20 12:40:57 mailstore sshd[1281230]: Invalid user joko from 150.242.201.207 port 37858
Mar ... show moreMar 20 12:40:57 mailstore sshd[1281230]: Invalid user joko from 150.242.201.207 port 37858
Mar 20 12:40:57 mailstore sshd[1281230]: Disconnected from invalid user joko 150.242.201.207 port 37858 [preauth] Mar 20 12:43:10 mailstore sshd[1281255]: Invalid user nsl from 150.242.201.207 port 38176 Mar 20 12:43:10 mailstore sshd[1281255]: Disconnected from invalid user nsl 150.242.201.207 port 38176 [preauth] ... show less |
Brute-Force SSH | |
![]() |
2025-03-20 12:08:10 SMTP syntax error in "GET / HTTP/1.1" H=ec2-18-116-19-45.us-east-2.compute.amazo ... show more2025-03-20 12:08:10 SMTP syntax error in "GET / HTTP/1.1" H=ec2-18-116-19-45.us-east-2.compute.amazonaws.com [18.116.19.45] unrecognized command
2025-03-20 12:08:10 SMTP syntax error in "Host: 93.95.227.62:465" H=ec2-18-116-19-45.us-east-2.compute.amazonaws.com [18.116.19.45] unrecognized command 2025-03-20 12:08:10 SMTP syntax error in "User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) Chrome/126.0.0.0 Safari/537.36" H=ec2-18-116-19-45.us-east-2.compute.amazonaws.com [18.116.19.45] unrecognized command 2025-03-20 12:08:10 SMTP syntax error in "Accept: */*" H=ec2-18-116-19-45.us-east-2.compute.amazonaws.com [18.116.19.45] unrecognized command ... show less |
Email Spam Brute-Force | |
![]() |
web.ab-data.us:80 52.15.254.151 - - [20/Mar/2025:11:36:12 -0400] "GET / HTTP/1.1" 301 520 "-" "Mozil ... show moreweb.ab-data.us:80 52.15.254.151 - - [20/Mar/2025:11:36:12 -0400] "GET / HTTP/1.1" 301 520 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) Chrome/126.0.0.0 Safari/537.36"
web.ab-data.us:80 52.15.254.151 - - [20/Mar/2025:11:36:30 -0400] "\x16\x03\x01" 301 613 "-" "-" web.ab-data.us:80 52.15.254.151 - - [20/Mar/2025:11:36:34 -0400] "\x16\x03\x01" 301 613 "-" "-" web.ab-data.us:80 52.15.254.151 - - [20/Mar/2025:11:36:36 -0400] "SSH-2.0-Go" 301 613 "-" "-" web.ab-data.us:80 52.15.254.151 - - [20/Mar/2025:11:39:15 -0400] "\n" 301 613 "-" "-" ... show less |
Hacking Brute-Force Web App Attack | |
![]() |
web.ab-data.us:80 71.6.167.142 - - [20/Mar/2025:11:18:31 -0400] "GET / HTTP/1.1" 301 520 "-" "Mozill ... show moreweb.ab-data.us:80 71.6.167.142 - - [20/Mar/2025:11:18:31 -0400] "GET / HTTP/1.1" 301 520 "-" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36"
web.ab-data.us:80 71.6.167.142 - - [20/Mar/2025:11:18:31 -0400] "GET /robots.txt HTTP/1.1" 301 540 "-" "-" web.ab-data.us:80 71.6.167.142 - - [20/Mar/2025:11:18:31 -0400] "GET /sitemap.xml HTTP/1.1" 301 542 "-" "-" web.ab-data.us:80 71.6.167.142 - - [20/Mar/2025:11:18:32 -0400] "GET /.well-known/security.txt HTTP/1.1" 301 568 "-" "-" web.ab-data.us:80 71.6.167.142 - - [20/Mar/2025:11:18:32 -0400] "GET /favicon.ico HTTP/1.1" 301 598 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/102.0.5005.63 Safari/537.36" ... show less |
Hacking Brute-Force Web App Attack |
- « Previous
- Next »