
ABUSE.MOM — 规矩点,否则你将被曝光
| 签名 | 描述 | 分数 | 严重性 |
|---|---|---|---|
| Danger medium hits: 4 | 中等风险:管理面板、配置文件 | +40 | |
| Probe pattern 302->404 same path | 自动分析检测到行为异常 | +20 | |
| Foreign referer seen | 来自无关外部域名的Referer | +10 |
从服务器访问日志重建的HTTP请求。出于安全考虑,目标域名已隐藏。
* Typical request patterns for detected signatures. Actual target domains are redacted.
IP 14.182.1.39正在枚举目录。在10次以上404错误后配置fail2ban apache-404 jail。禁用目录列表。
来自Shodan的网络侦察数据。开放端口可能表示正在运行的服务、错误配置或潜在的攻击面。
| Port | Service | Risk | Description |
|---|---|---|---|
| 10254 | Unknown | Low | Service on port 10254 |
| 10380 | Unknown | Low | Service on port 10380 |
| 10554 | Unknown | Low | Service on port 10554 |
| 10911 | Unknown | Low | Service on port 10911 |
| 10943 | Unknown | Low | Service on port 10943 |
| 11002 | Unknown | Low | Service on port 11002 |
| 11027 | Unknown | Low | Service on port 11027 |
| 11112 | Unknown | Low | Service on port 11112 |
| 11210 | Unknown | Low | Service on port 11210 |
| 11211 | Unknown | Low | Service on port 11211 |
| 11300 | Unknown | Low | Service on port 11300 |
| 11348 | Unknown | Low | Service on port 11348 |
| 11371 | Unknown | Low | Service on port 11371 |
| 11401 | Unknown | Low | Service on port 11401 |
| 11434 | Unknown | Low | Service on port 11434 |
| 11602 | Unknown | Low | Service on port 11602 |
| 11767 | Unknown | Low | Service on port 11767 |
| 11920 | Unknown | Low | Service on port 11920 |
| 12084 | Unknown | Low | Service on port 12084 |
| 12110 | Unknown | Low | Service on port 12110 |
| 12124 | Unknown | Low | Service on port 12124 |
| 12128 | Unknown | Low | Service on port 12128 |
| 12137 | Unknown | Low | Service on port 12137 |
| 12147 | Unknown | Low | Service on port 12147 |
| 12154 | Unknown | Low | Service on port 12154 |
| 12164 | Unknown | Low | Service on port 12164 |
| 12169 | Unknown | Low | Service on port 12169 |
| 12170 | Unknown | Low | Service on port 12170 |
| 12187 | Unknown | Low | Service on port 12187 |
| 12189 | Unknown | Low | Service on port 12189 |
| 12191 | Unknown | Low | Service on port 12191 |
| 12199 | Unknown | Low | Service on port 12199 |
| 12201 | Unknown | Low | Service on port 12201 |
| 12207 | Unknown | Low | Service on port 12207 |
| 12210 | Unknown | Low | Service on port 12210 |
| 12212 | Unknown | Low | Service on port 12212 |
| 12214 | Unknown | Low | Service on port 12214 |
| 12216 | Unknown | Low | Service on port 12216 |
| 12217 | Unknown | Low | Service on port 12217 |
| 12243 | Unknown | Low | Service on port 12243 |
| 12245 | Unknown | Low | Service on port 12245 |
| 12257 | Unknown | Low | Service on port 12257 |
| 12265 | Unknown | Low | Service on port 12265 |
| 12273 | Unknown | Low | Service on port 12273 |
| 12280 | Unknown | Low | Service on port 12280 |
| 12281 | Unknown | Low | Service on port 12281 |
| 12282 | Unknown | Low | Service on port 12282 |
| 12287 | Unknown | Low | Service on port 12287 |
| 12292 | Unknown | Low | Service on port 12292 |
| 12300 | Unknown | Low | Service on port 12300 |
| 12301 | Unknown | Low | Service on port 12301 |
| 12311 | Unknown | Low | Service on port 12311 |
| 12314 | Unknown | Low | Service on port 12314 |
| 12323 | Unknown | Low | Service on port 12323 |
| 12327 | Unknown | Low | Service on port 12327 |
| 12338 | Unknown | Low | Service on port 12338 |
| 12344 | Unknown | Low | Service on port 12344 |
| 12350 | Unknown | Low | Service on port 12350 |
| 12352 | Unknown | Low | Service on port 12352 |
| 12358 | Unknown | Low | Service on port 12358 |
| 12360 | Unknown | Low | Service on port 12360 |
| 12364 | Unknown | Low | Service on port 12364 |
| 12365 | Unknown | Low | Service on port 12365 |
| 12366 | Unknown | Low | Service on port 12366 |
| 12375 | Unknown | Low | Service on port 12375 |
| 12376 | Unknown | Low | Service on port 12376 |
| 12378 | Unknown | Low | Service on port 12378 |
| 12381 | Unknown | Low | Service on port 12381 |
| 12390 | Unknown | Low | Service on port 12390 |
| 12408 | Unknown | Low | Service on port 12408 |
| 12409 | Unknown | Low | Service on port 12409 |
| 12412 | Unknown | Low | Service on port 12412 |
| 12430 | Unknown | Low | Service on port 12430 |
| 12439 | Unknown | Low | Service on port 12439 |
| 12463 | Unknown | Low | Service on port 12463 |
| 12467 | Unknown | Low | Service on port 12467 |
| 12468 | Unknown | Low | Service on port 12468 |
| 12475 | Unknown | Low | Service on port 12475 |
| 12482 | Unknown | Low | Service on port 12482 |
| 12485 | Unknown | Low | Service on port 12485 |
| 12489 | Unknown | Low | Service on port 12489 |
| 12493 | Unknown | Low | Service on port 12493 |
| 12494 | Unknown | Low | Service on port 12494 |
| 12522 | Unknown | Low | Service on port 12522 |
| 12530 | Unknown | Low | Service on port 12530 |
| 12552 | Unknown | Low | Service on port 12552 |
| 12580 | Unknown | Low | Service on port 12580 |
| 12980 | Unknown | Low | Service on port 12980 |
| 13000 | Unknown | Low | Service on port 13000 |
| 13970 | Unknown | Low | Service on port 13970 |
| 14147 | Unknown | Low | Service on port 14147 |
| 14265 | Unknown | Low | Service on port 14265 |
| 14401 | Unknown | Low | Service on port 14401 |
| 14406 | Unknown | Low | Service on port 14406 |
| 15066 | Unknown | Low | Service on port 15066 |
| 15082 | Unknown | Low | Service on port 15082 |
| 15084 | Unknown | Low | Service on port 15084 |
| 15502 | Unknown | Low | Service on port 15502 |
| 15503 | Unknown | Low | Service on port 15503 |
| 15563 | Unknown | Low | Service on port 15563 |
| 15831 | Unknown | Low | Service on port 15831 |
| 16000 | Unknown | Low | Service on port 16000 |
| 16004 | Unknown | Low | Service on port 16004 |
| 16008 | Unknown | Low | Service on port 16008 |
| 16010 | Unknown | Low | Service on port 16010 |
| 16026 | Unknown | Low | Service on port 16026 |
| 16030 | Unknown | Low | Service on port 16030 |
| 16032 | Unknown | Low | Service on port 16032 |
| 16033 | Unknown | Low | Service on port 16033 |
| 16035 | Unknown | Low | Service on port 16035 |
| 16055 | Unknown | Low | Service on port 16055 |
| 16071 | Unknown | Low | Service on port 16071 |
| 16084 | Unknown | Low | Service on port 16084 |
| 16088 | Unknown | Low | Service on port 16088 |
| 16089 | Unknown | Low | Service on port 16089 |
| 16093 | Unknown | Low | Service on port 16093 |
| 16103 | Unknown | Low | Service on port 16103 |
| 16311 | Unknown | Low | Service on port 16311 |
| 16992 | Unknown | Low | Service on port 16992 |
| 16993 | Unknown | Low | Service on port 16993 |
| 17042 | Unknown | Low | Service on port 17042 |
| 17100 | Unknown | Low | Service on port 17100 |
| 17102 | Unknown | Low | Service on port 17102 |
| 17381 | Unknown | Low | Service on port 17381 |
| 17955 | Unknown | Low | Service on port 17955 |
| 18005 | Unknown | Low | Service on port 18005 |
| 18007 | Unknown | Low | Service on port 18007 |
| 18016 | Unknown | Low | Service on port 18016 |
| 18030 | Unknown | Low | Service on port 18030 |
| 18032 | Unknown | Low | Service on port 18032 |
| 18040 | Unknown | Low | Service on port 18040 |
| 18049 | Unknown | Low | Service on port 18049 |
| 18053 | Unknown | Low | Service on port 18053 |
| 18056 | Unknown | Low | Service on port 18056 |
| 18060 | Unknown | Low | Service on port 18060 |
| 18061 | Unknown | Low | Service on port 18061 |
| 18075 | Unknown | Low | Service on port 18075 |
| 18084 | Unknown | Low | Service on port 18084 |
| 18094 | Unknown | Low | Service on port 18094 |
| 18101 | Unknown | Low | Service on port 18101 |
| 18239 | Unknown | Low | Service on port 18239 |
| 18245 | Unknown | Low | Service on port 18245 |
| 18777 | Unknown | Low | Service on port 18777 |
| 18789 | Unknown | Low | Service on port 18789 |
| 19000 | Unknown | Low | Service on port 19000 |
| 19222 | Unknown | Low | Service on port 19222 |
| 20000 | Unknown | Low | Service on port 20000 |
| 20001 | Unknown | Low | Service on port 20001 |
| 20050 | Unknown | Low | Service on port 20050 |
| 20070 | Unknown | Low | Service on port 20070 |
| 20084 | Unknown | Low | Service on port 20084 |
| 20110 | Unknown | Low | Service on port 20110 |
| 20201 | Unknown | Low | Service on port 20201 |
| 20235 | Unknown | Low | Service on port 20235 |
| 20256 | Unknown | Low | Service on port 20256 |
| 20433 | Unknown | Low | Service on port 20433 |
| 20443 | Unknown | Low | Service on port 20443 |
| 20547 | Unknown | Low | Service on port 20547 |
| 20643 | Unknown | Low | Service on port 20643 |
| 20880 | Unknown | Low | Service on port 20880 |
| 21001 | Unknown | Low | Service on port 21001 |
| 21025 | Unknown | Low | Service on port 21025 |
| 21236 | Unknown | Low | Service on port 21236 |
| 21239 | Unknown | Low | Service on port 21239 |
| 21251 | Unknown | Low | Service on port 21251 |
| 21262 | Unknown | Low | Service on port 21262 |
| 21264 | Unknown | Low | Service on port 21264 |
| 21268 | Unknown | Low | Service on port 21268 |
| 21276 | Unknown | Low | Service on port 21276 |
| 21281 | Unknown | Low | Service on port 21281 |
| 21292 | Unknown | Low | Service on port 21292 |
| 21294 | Unknown | Low | Service on port 21294 |
| 21329 | Unknown | Low | Service on port 21329 |
| 21379 | Unknown | Low | Service on port 21379 |
| 22084 | Unknown | Low | Service on port 22084 |
| 22206 | Unknown | Low | Service on port 22206 |
| 23268 | Unknown | Low | Service on port 23268 |
| 23424 | Unknown | Low | Service on port 23424 |
| 24181 | Unknown | Low | Service on port 24181 |
| 25001 | Unknown | Low | Service on port 25001 |
| 25105 | Unknown | Low | Service on port 25105 |
| 25952 | Unknown | Low | Service on port 25952 |
| 26209 | Unknown | Low | Service on port 26209 |
| 27015 | Unknown | Low | Service on port 27015 |
| 27017 | MongoDB | Critical | MongoDB — commonly found exposed without authentication |
| 27304 | Unknown | Low | Service on port 27304 |
| 27776 | Unknown | Low | Service on port 27776 |
| 28015 | Unknown | Low | Service on port 28015 |
| 28031 | Unknown | Low | Service on port 28031 |
| 28455 | Unknown | Low | Service on port 28455 |
| 28654 | Unknown | Low | Service on port 28654 |
| 29504 | Unknown | Low | Service on port 29504 |
| 29840 | Unknown | Low | Service on port 29840 |
| 30005 | Unknown | Low | Service on port 30005 |
| 30015 | Unknown | Low | Service on port 30015 |
| 30101 | Unknown | Low | Service on port 30101 |
| 30104 | Unknown | Low | Service on port 30104 |
| 30443 | Unknown | Low | Service on port 30443 |
| 31210 | Unknown | Low | Service on port 31210 |
| 31337 | Unknown | Low | Service on port 31337 |
| 31443 | Unknown | Low | Service on port 31443 |
| 31444 | Unknown | Low | Service on port 31444 |
| 32400 | Unknown | Low | Service on port 32400 |
| 32746 | Unknown | Low | Service on port 32746 |
| 32764 | Unknown | Low | Service on port 32764 |
| 33060 | Unknown | Low | Service on port 33060 |
| 35000 | Unknown | Low | Service on port 35000 |
| 35042 | Unknown | Low | Service on port 35042 |
| 35101 | Unknown | Low | Service on port 35101 |
| 35522 | Unknown | Low | Service on port 35522 |
| 35559 | Unknown | Low | Service on port 35559 |
| 36611 | Unknown | Low | Service on port 36611 |
| 36983 | Unknown | Low | Service on port 36983 |
| 37154 | Unknown | Low | Service on port 37154 |
| 37215 | Unknown | Low | Service on port 37215 |
| 37443 | Unknown | Low | Service on port 37443 |
| 40001 | Unknown | Low | Service on port 40001 |
| 42155 | Unknown | Low | Service on port 42155 |
| 42901 | Unknown | Low | Service on port 42901 |
| 43129 | Unknown | Low | Service on port 43129 |
| 43200 | Unknown | Low | Service on port 43200 |
| 43250 | Unknown | Low | Service on port 43250 |
| 44320 | Unknown | Low | Service on port 44320 |
| 44340 | Unknown | Low | Service on port 44340 |
| 44341 | Unknown | Low | Service on port 44341 |
| 44436 | Unknown | Low | Service on port 44436 |
| 44712 | Unknown | Low | Service on port 44712 |
| 45439 | Unknown | Low | Service on port 45439 |
| 45455 | Unknown | Low | Service on port 45455 |
| 45821 | Unknown | Low | Service on port 45821 |
| 46723 | Unknown | Low | Service on port 46723 |
| 47000 | Unknown | Low | Service on port 47000 |
| 47058 | Unknown | Low | Service on port 47058 |
| 47080 | Unknown | Low | Service on port 47080 |
| 47119 | Unknown | Low | Service on port 47119 |
| 48001 | Unknown | Low | Service on port 48001 |
| 48013 | Unknown | Low | Service on port 48013 |
| 49038 | Unknown | Low | Service on port 49038 |
| 49152 | Unknown | Low | Service on port 49152 |
| 49153 | Unknown | Low | Service on port 49153 |
| 50000 | Unknown | Low | Service on port 50000 |
| 50002 | Unknown | Low | Service on port 50002 |
| 50003 | Unknown | Low | Service on port 50003 |
| 50050 | Unknown | Low | Service on port 50050 |
| 50102 | Unknown | Low | Service on port 50102 |
| 50346 | Unknown | Low | Service on port 50346 |
| 50436 | Unknown | Low | Service on port 50436 |
| 50998 | Unknown | Low | Service on port 50998 |
| 51106 | Unknown | Low | Service on port 51106 |
| 51235 | Unknown | Low | Service on port 51235 |
| 51847 | Unknown | Low | Service on port 51847 |
| 52311 | Unknown | Low | Service on port 52311 |
| 52869 | Unknown | Low | Service on port 52869 |
| 53116 | Unknown | Low | Service on port 53116 |
| 53860 | Unknown | Low | Service on port 53860 |
| 55200 | Unknown | Low | Service on port 55200 |
| 55443 | Unknown | Low | Service on port 55443 |
| 55470 | Unknown | Low | Service on port 55470 |
| 55554 | Unknown | Low | Service on port 55554 |
| 55867 | Unknown | Low | Service on port 55867 |
| 56178 | Unknown | Low | Service on port 56178 |
| 56435 | Unknown | Low | Service on port 56435 |
| 56445 | Unknown | Low | Service on port 56445 |
| 57782 | Unknown | Low | Service on port 57782 |
| 57783 | Unknown | Low | Service on port 57783 |
| 57784 | Unknown | Low | Service on port 57784 |
⚠️ 在14.182.1.39上检测到1个高风险端口。开放的数据库端口表明可能存在数据泄露风险。 这些服务在没有严格防火墙规则的情况下不应公开访问。
数据来源:Shodan InternetDB。独立于abuse.mom进行扫描。
该IP已通过全球邮件服务器和防火墙使用的主要DNS黑名单进行检查。
已检查:Spamhaus、SpamCop、Barracuda、SORBS、CBL、UCEProtect。
14.182.1.39 has been assigned a threat score of 70/100 (High). 这将其归类为高严重性威胁。建议对敏感基础设施进行主动封锁。
The following attack categories were identified:
IP地址14.182.1.39已追溯至Hanoi, Vietnam,运营在VNPT的网络中。我们的威胁检测系统根据观察到的恶意行为模式标记了此地址。 我们的传感器在1天内捕获了来自此地址的1次恶意请求,反映出每天约1次的持续攻击节奏。 该地址被归类为住宅,意味着它可能属于终端用户ISP连接。来自住宅IP的恶意活动通常表明设备已被入侵或属于僵尸网络。 该IP表现出目录枚举行为,系统地请求不存在的路径以发现隐藏文件和配置错误的资源。 我们的记录显示来自Vietnam的196个恶意IP,使其成为全球威胁活动的重要贡献者。 评分70/100表明这是一个已确认的恶意行为者。网络级别封锁是适当的。
This IP is classified as residential, suggesting it may belong to a compromised home device, IoT botnet member, or an infected personal computer. Residential IPs involved in attacks often indicate malware infection without the owner's knowledge.
RCE vulnerabilities allow attackers to execute arbitrary code on target servers. These critical flaws often arise from deserialization bugs, template injection, or file upload vulnerabilities, and represent the highest severity class of web application weaknesses.
Automated response systems can block threats in milliseconds, far faster than human analysts. However, automation requires careful safeguards — rate limits on blocking actions, automatic expiration, and human review queues prevent automated systems from causing self-inflicted outages.