Home >

Scoundrels

D --> f001ish attempts at misuse of resources


D --> via http

298 requests from 27.123.1.126
297 requests from 193.112.16.227
294 requests from 193.112.152.131
289 requests from 122.114.230.207
281 requests from 115.159.98.117
165 requests from 119.23.251.129
106 requests from 107.170.90.209
100 requests from 132.232.154.147
13 requests from 119.145.148.221
7 requests from 35.235.123.191
4 requests from 208.100.26.230
4 requests from 185.100.87.250
3 requests from 35.204.97.245
3 requests from 51.68.125.64
3 requests from 173.203.86.174
... 70 items truncated ...
28 requests for/
14 requests for/wp-login.php
8 requests for/license.php
7 requests for/phpMyAdmion/index.php
7 requests for/xw1.php
7 requests for/admin/phpMyAdmin/index.php
7 requests for/admin/mysql/index.php
7 requests for/xiao.php
7 requests for/admin/phpmyadmin2/index.php
7 requests for/q.php
7 requests for/phpstudy.php
7 requests for/xx.php
7 requests for/typo3/phpmyadmin/index.php
7 requests for/db__.init.php
7 requests for/wshell.php
... 448 items truncated ...

D --> via ssh

15attempts from  82.165.0.0/16
5attempts from  5.188.10.0/24
20attempts on root
12attempts on admin
10attempts on pi
3attempts on moses-wrealms
3attempts on moses-openraid
3attempts on moses-msfa
3attempts on moses-linkedin
3attempts on moses
2attempts on www-data
2attempts on oracle
2attempts on butter

D --> via smtp

4 attempts from 1.23.109.2
4 attempts from 2.60.199.59
4 attempts from 5.129.179.55
4 attempts from 5.156.141.18
3 attempts from 5.202.101.228
4 attempts from 5.219.27.135
4 attempts from 14.174.3.64
4 attempts from 14.176.111.200
4 attempts from 14.233.237.151
4 attempts from 24.31.223.184
4 attempts from 27.29.154.122
4 attempts from 27.38.44.2
4 attempts from 27.114.180.191
3 attempts from 31.41.22.145
4 attempts from 37.131.77.106
... 144 items truncated ..
380 of reject: RCPT from [...]: 550 5.7.1
262 of reject: RCPT from [...]: 554 5.7.1
99 of Client host [...] blocked using bl.spamcop.net;
57 of reject: RCPT from [...]: 450 4.1.8
10 of warning: unknown[195.3.146.141]: SASL PLAIN authentication failed:
8 of warning: unknown[185.211.245.166]: SASL PLAIN authentication failed:
4 of Client host [...] blocked using cbl.abuseat.org;

D --> blacklisted

The first set are ranges blacklisted by hand
pkts bytes target prot opt in out source destination
681 34048 REFUSE all -- * * 222.176.0.0/12 0.0.0.0/0
2386 152K REFUSE all -- * *  58.192.0.0/11 *
17 680 REFUSE all -- * *  111.72.0.0/13 *
1093 68570 REFUSE all -- * *  111.192.0.0/12 *
72 4822 REFUSE all -- * *  118.24.0.0/15 *
210 10056 REFUSE all -- * *  125.64.0.0/11 *
1451 99775 REFUSE all -- * *  221.224.0.0/13 *
21 956 REFUSE all -- * *  222.128.0.0/12 *

These were blacklisted automatically by triggering a trap
0 0 REFUSE all -- * *  1.39.146.171 *
7 352 REFUSE all -- * *  2.50.217.19 *
0 0 REFUSE all -- * *  5.37.221.164 *
0 0 REFUSE all -- * *  14.139.54.194 *
1 40 REFUSE all -- * *  14.192.210.237 *
0 0 REFUSE all -- * *  24.226.150.8 *
0 0 REFUSE all -- * *  24.226.241.57 *
0 0 REFUSE all -- * *  27.109.114.218 *
0 0 REFUSE all -- * *  31.223.143.149 *
0 0 REFUSE all -- * *  35.204.85.81 *
0 0 REFUSE all -- * *  36.8.9.69 *
6 304 REFUSE all -- * *  37.115.188.53 *
0 0 REFUSE all -- * *  39.38.35.13 *
0 0 REFUSE all -- * *  41.175.14.50 *
0 0 REFUSE all -- * *  42.2.184.245 *
0 0 REFUSE all -- * *  43.248.36.59 *
9 1293 REFUSE all -- * *  43.252.231.204 *
0 0 REFUSE all -- * *  46.101.168.232 *
18 912 REFUSE all -- * *  46.119.121.84 *
0 0 REFUSE all -- * *  46.119.124.124 *
4 196 REFUSE all -- * *  46.165.10.147 *
10 400 REFUSE all -- * *  46.175.70.161 *
0 0 REFUSE all -- * *  46.217.161.206 *
0 0 REFUSE all -- * *  47.197.31.157 *
0 0 REFUSE all -- * *  47.247.90.55 *
0 0 REFUSE all -- * *  49.144.120.238 *
0 0 REFUSE all -- * *  49.204.117.188 *
0 0 REFUSE all -- * *  49.206.215.219 *
0 0 REFUSE all -- * *  50.62.161.77 *
0 0 REFUSE all -- * *  50.63.197.102 *
0 0 REFUSE all -- * *  50.116.64.27 *
3 152 REFUSE all -- * *  51.68.88.4 *
64 3136 REFUSE all -- * *  62.210.157.10 *
8 344 REFUSE all -- * *  66.38.32.24 *
7 352 REFUSE all -- * *  66.214.6.186 *
1 40 REFUSE all -- * *  67.70.142.195 *
0 0 REFUSE all -- * *  68.229.35.84 *
100 6000 REFUSE all -- * *  69.27.124.170 *
7 352 REFUSE all -- * *  70.82.110.213 *
0 0 REFUSE all -- * *  72.29.127.15 *
0 0 REFUSE all -- * *  72.34.61.254 *
13 664 REFUSE all -- * *  74.178.40.84 *
11 1140 REFUSE all -- * *  74.208.56.61 *
0 0 REFUSE all -- * *  74.208.57.244 *
0 0 REFUSE all -- * *  74.208.58.222 *
0 0 REFUSE all -- * *  75.190.36.65 *
8 320 REFUSE all -- * *  76.214.180.164 *
0 0 REFUSE all -- * *  77.194.240.178 *
4 184 REFUSE all -- * *  77.219.193.171 *
8 320 REFUSE all -- * *  78.46.181.22 *
0 0 REFUSE all -- * *  78.63.242.169 *
4 192 REFUSE all -- * *  79.62.113.233 *
0 0 REFUSE all -- * *  79.140.149.236 *
0 0 REFUSE all -- * *  79.166.255.122 *
10 424 REFUSE all -- * *  81.88.49.6 *
11 476 REFUSE all -- * *  81.169.144.135 *
0 0 REFUSE all -- * *  82.28.103.177 *
0 0 REFUSE all -- * *  82.165.81.116 *
21 984 REFUSE all -- * *  84.109.74.138 *
1 40 REFUSE all -- * *  85.94.106.177 *
6 240 REFUSE all -- * *  85.132.61.123 *
0 0 REFUSE all -- * *  86.107.245.208 *
0 0 REFUSE all -- * *  86.122.114.241 *
0 0 REFUSE all -- * *  86.156.236.151 *
0 0 REFUSE all -- * *  87.242.64.205 *
0 0 REFUSE all -- * *  88.78.194.16 *
0 0 REFUSE all -- * *  88.230.156.13 *
1 40 REFUSE all -- * *  88.252.78.220 *
0 0 REFUSE all -- * *  89.146.150.199 *
0 0 REFUSE all -- * *  91.230.254.100 *
7 304 REFUSE all -- * *  91.231.140.77 *
0 0 REFUSE all -- * *  93.86.251.248 *
1 40 REFUSE all -- * *  93.184.94.244 *
0 0 REFUSE all -- * *  94.19.172.76 *
0 0 REFUSE all -- * *  94.102.57.141 *
0 0 REFUSE all -- * *  95.40.247.39 *
2 92 REFUSE all -- * *  95.144.172.128 *
7 304 REFUSE all -- * *  98.139.190.55 *
0 0 REFUSE all -- * *  98.210.123.59 *
2 112 REFUSE all -- * *  103.11.194.26 *
9 392 REFUSE all -- * *  103.17.82.154 *
7 344 REFUSE all -- * *  103.19.141.204 *
0 0 REFUSE all -- * *  103.62.145.126 *
0 0 REFUSE all -- * *  103.96.73.208 *
9 1980 REFUSE all -- * *  103.96.75.160 *
6 264 REFUSE all -- * *  103.230.219.190 *
9 1980 REFUSE all -- * *  103.243.25.104 *
0 0 REFUSE all -- * *  103.249.235.11 *
8 332 REFUSE all -- * *  104.194.25.113 *
0 0 REFUSE all -- * *  104.244.230.81 *
0 0 REFUSE all -- * *  106.208.45.33 *
0 0 REFUSE all -- * *  107.159.29.208 *
0 0 REFUSE all -- * *  107.181.178.52 *
0 0 REFUSE all -- * *  109.65.235.142 *
11 532 REFUSE all -- * *  109.69.67.17 *
0 0 REFUSE all -- * *  109.93.213.41 *
0 0 REFUSE all -- * *  109.99.113.191 *
0 0 REFUSE all -- * *  109.166.137.4 *
6 264 REFUSE all -- * *  109.232.220.214 *
7 312 REFUSE all -- * *  110.172.174.157 *
0 0 REFUSE all -- * *  111.68.123.118 *
0 0 REFUSE all -- * *  112.133.244.35 *
0 0 REFUSE all -- * *  112.134.135.251 *
0 0 REFUSE all -- * *  112.135.7.182 *
0 0 REFUSE all -- * *  113.66.33.4 *
5 200 REFUSE all -- * *  114.215.99.132 *
0 0 REFUSE all -- * *  116.74.235.136 *
0 0 REFUSE all -- * *  117.253.53.67 *
0 0 REFUSE all -- * *  119.237.63.87 *
5 200 REFUSE all -- * *  120.27.107.165 *
0 0 REFUSE all -- * *  120.27.114.224 *
0 0 REFUSE all -- * *  120.28.192.212 *
0 0 REFUSE all -- * *  121.42.52.27 *
5 200 REFUSE all -- * *  121.42.143.123 *
9 392 REFUSE all -- * *  122.169.92.65 *
0 0 REFUSE all -- * *  122.171.54.255 *
0 0 REFUSE all -- * *  124.106.128.223 *
0 0 REFUSE all -- * *  124.106.244.17 *
0 0 REFUSE all -- * *  129.121.176.193 *
0 0 REFUSE all -- * *  134.249.49.211 *
3 144 REFUSE all -- * *  139.129.14.230 *
0 0 REFUSE all -- * *  140.143.90.193 *
0 0 REFUSE all -- * *  140.143.93.167 *
1 40 REFUSE all -- * *  142.197.72.155 *
10 424 REFUSE all -- * *  149.255.58.12 *
0 0 REFUSE all -- * *  151.52.255.213 *
7 324 REFUSE all -- * *  154.0.168.117 *
0 0 REFUSE all -- * *  156.197.175.59 *
0 0 REFUSE all -- * *  157.41.224.14 *
0 0 REFUSE all -- * *  159.69.57.106 *
14 688 REFUSE all -- * *  161.142.69.213 *
8 344 REFUSE all -- * *  162.241.218.52 *
0 0 REFUSE all -- * *  168.62.226.22 *
2 80 REFUSE all -- * *  171.60.232.152 *
1 40 REFUSE all -- * *  171.61.117.9 *
0 0 REFUSE all -- * *  174.0.132.11 *
0 0 REFUSE all -- * *  174.28.71.190 *
6 304 REFUSE all -- * *  176.8.89.33 *
0 0 REFUSE all -- * *  176.32.29.74 *
7 344 REFUSE all -- * *  176.58.225.32 *
0 0 REFUSE all -- * *  176.67.194.113 *
0 0 REFUSE all -- * *  176.146.173.187 *
7 344 REFUSE all -- * *  177.70.213.64 *
0 0 REFUSE all -- * *  177.185.192.85 *
7 304 REFUSE all -- * *  177.200.247.4 *
1 40 REFUSE all -- * *  178.223.90.142 *
7 344 REFUSE all -- * *  180.191.239.11 *
0 0 REFUSE all -- * *  180.231.11.84 *
0 0 REFUSE all -- * *  181.91.197.37 *
4 192 REFUSE all -- * *  182.182.74.251 *
0 0 REFUSE all -- * *  182.185.102.180 *
0 0 REFUSE all -- * *  184.168.152.111 *
0 0 REFUSE all -- * *  184.168.152.148 *
0 0 REFUSE all -- * *  185.80.172.220 *
0 0 REFUSE all -- * *  185.103.173.100 *
0 0 REFUSE all -- * *  185.143.221.44 *
0 0 REFUSE all -- * *  185.197.75.104 *
24 1248 REFUSE all -- * *  185.232.29.195 *
0 0 REFUSE all -- * *  185.234.216.42 *
0 0 REFUSE all -- * *  185.234.217.229 *
23 1048 REFUSE all -- * *  185.234.218.41 *
17 744 REFUSE all -- * *  185.234.219.39 *
0 0 REFUSE all -- * *  185.234.219.40 *
23 1048 REFUSE all -- * *  185.234.219.44 *
17 744 REFUSE all -- * *  185.234.219.223 *
0 0 REFUSE all -- * *  185.234.219.230 *
0 0 REFUSE all -- * *  185.234.219.231 *
2 92 REFUSE all -- * *  186.96.209.45 *
13 664 REFUSE all -- * *  186.109.197.236 *
0 0 REFUSE all -- * *  186.228.182.215 *
0 0 REFUSE all -- * *  187.20.79.22 *
0 0 REFUSE all -- * *  188.165.118.91 *
0 0 REFUSE all -- * *  188.227.8.89 *
0 0 REFUSE all -- * *  189.82.19.152 *
1 40 REFUSE all -- * *  190.183.247.245 *
0 0 REFUSE all -- * *  190.202.223.226 *
0 0 REFUSE all -- * *  192.139.192.5 *
0 0 REFUSE all -- * *  192.140.243.246 *
8 344 REFUSE all -- * *  192.185.4.101 *
1 52 REFUSE all -- * *  192.222.132.72 *
0 0 REFUSE all -- * *  193.201.224.225 *
10 432 REFUSE all -- * *  194.28.174.168 *
0 0 REFUSE all -- * *  194.183.27.184 *
0 0 REFUSE all -- * *  195.114.18.164 *
0 0 REFUSE all -- * *  197.229.158.158 *
0 0 REFUSE all -- * *  198.57.247.130 *
0 0 REFUSE all -- * *  198.57.247.197 *
1 40 REFUSE all -- * *  200.58.185.133 *
0 0 REFUSE all -- * *  201.160.134.55 *
0 0 REFUSE all -- * *  203.215.119.160 *
7 304 REFUSE all -- * *  210.188.201.157 *
8 320 REFUSE all -- * *  212.83.188.121 *
8 544 REFUSE all -- * *  213.251.182.107 *
0 0 REFUSE all -- * *  217.78.0.111 *
1 60 REFUSE all -- * *  217.160.62.44 *
7 352 REFUSE all -- * *  219.116.185.218 *
4 160 REFUSE all -- * *  221.145.116.15 *
4 160 REFUSE all -- * *  221.159.64.172 *
13 664 REFUSE all -- * *  223.25.40.82 *

Last updated Wed Dec 12 11:48:37 2018