This IP address has been reported a total of
947
times from
133 distinct
sources.
104.193.135.243 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
FortiWeb WAF: 61 attacks detected. Threat Score: 6200. Types: IP Reputation(31), Client Management(3 ...
show moreFortiWeb WAF: 61 attacks detected. Threat Score: 6200. Types: IP Reputation(31), Client Management(30). Origin: Canada.
show less
Web App Attack
Anonymous
2026-06-12 21:34:07 warning[1516116]: host unknown[104.193.135.243]: unauthorized access a ...
show more2026-06-12 21:34:07 warning[1516116]: host unknown[104.193.135.243]: unauthorized access attempted: tcp/9010
show less
Blocked by UFW (TCP on 1)
Source port: 40193
TTL: 51
Packet length: 60
TOS: 0x08
This report (for 1 ...
show moreBlocked by UFW (TCP on 1)
Source port: 40193
TTL: 51
Packet length: 60
TOS: 0x08
This report (for 104.193.135.243) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show moreBAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-122)
show less
[MonMay1113:24:30.0528372026][security2:error][pid2489312:tid2489436][client104.193.135.243:0]ModSec ...
show more[MonMay1113:24:30.0528372026][security2:error][pid2489312:tid2489436][client104.193.135.243:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"170\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"sisuconsulting.net\"][uri\"/xmlrpc.php\"][unique_id\"agG8bg76GEI1DXUwyUz7UAAAARE\"]
show less
Port Scan
Brute-Force
Web App Attack
Anonymous
2026-05-05 17:00:06,183 fail2ban.actions [3625835]: NOTICE [tor] Ban 104.193.135.243
2026-05 ...
show more2026-05-05 17:00:06,183 fail2ban.actions [3625835]: NOTICE [tor] Ban 104.193.135.243
2026-05-05 19:00:55,456 fail2ban.actions [3625835]: NOTICE [tor] Ban 104.193.135.243
2026-05-05 22:00:01,798 fail2ban.actions [3625835]: NOTICE [tor] Ban 104.193.135.243
2026-05-06 00:00:06,488 fail2ban.actions [3625835]: NOTICE [tor] Ban 104.193.135.243
2026-05-06 02:00:15,074 fail2ban.actions [3625835]: NOTICE [tor] Ban 104.193.135.243
show less
Brute-Force
Anonymous
2026-04-18 17:00:02,570 fail2ban.actions [3511917]: NOTICE [tor] Ban 104.193.135.243
2026-04 ...
show more2026-04-18 17:00:02,570 fail2ban.actions [3511917]: NOTICE [tor] Ban 104.193.135.243
2026-04-18 19:00:07,082 fail2ban.actions [3511917]: NOTICE [tor] Ban 104.193.135.243
2026-04-18 21:00:44,638 fail2ban.actions [3511917]: NOTICE [tor] Ban 104.193.135.243
2026-04-19 00:00:04,055 fail2ban.actions [3511917]: NOTICE [tor] Ban 104.193.135.243
2026-04-19 02:00:46,038 fail2ban.actions [3511917]: NOTICE [tor] Ban 104.193.135.243
show less
Blocked by UFW (TCP on 41644)
Source port: 56177
TTL: 58
Packet length: 60
TOS: 0x00
This report (f ...
show moreBlocked by UFW (TCP on 41644)
Source port: 56177
TTL: 58
Packet length: 60
TOS: 0x00
This report (for 104.193.135.243) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
[WedApr0820:28:49.1795572026][security2:error][pid2970299:tid2970416][client104.193.135.243:0]ModSec ...
show more[WedApr0820:28:49.1795572026][security2:error][pid2970299:tid2970416][client104.193.135.243:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"112\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"gagspettacolo.ch\"][uri\"/xmlrpc.php\"][unique_id\"adaeYXWDy5XidOiKk8pBjQAAAFg\"]
show less
(XMLRPCorWHATEVER) Get lost please 104.193.135.243 (CA/Canada/-): 3 in the last 900 secs; Ports: *; ...
show more(XMLRPCorWHATEVER) Get lost please 104.193.135.243 (CA/Canada/-): 3 in the last 900 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
[TueApr0705:27:18.6397672026][security2:error][pid371611:tid371635][client104.193.135.243:0]ModSecur ...
show more[TueApr0705:27:18.6397672026][security2:error][pid371611:tid371635][client104.193.135.243:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"112\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"gagspettacolo.ch\"][uri\"/xmlrpc.php\"][unique_id\"adR5ltQLxp3aPDs1B3_vygAAAJU\"]
show less
Port Scan
Brute-Force
Web App Attack
Showing 1 to
15
of 947 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ