Thousands of requests for http winproxy. Abuse email goes into blackhole. First complaint sent 2/4/2016. Sample of over 10M of logs. [04/Feb/2016:14:08:47 -0800] 72.244.219.8 - - "\x16\x03\x01" 293 [04/Feb/2016:14:26:50 -0800] 72.244.219.8 - - "\x16\x03\x01" 293 [04/Feb/2016:16:10:14 -0800] 72.244.219.8 - - "\x16\x03\x01\x02D\x01" 296 [05/Feb/2016:07:34:48 -0800] 72.244.219.8 - - "\x16\x03\x01" 293 [05/Feb/2016:08:27:46 -0800] 72.244.219.8 - - "\x16\x03\x01" 293 72.244.219.8 - - [15/Feb/2016:16:41:33 -0800] "GET /wpad.dat HTTP/1.1" 404 285 "-" "Mozilla/5.0 (compatible; IE 11.0; Win32; Trident/7.0)" 72.244.219.8 - - [15/Feb/2016:16:41:49 -0800] "GET /wpad.dat HTTP/1.1" 404 285 "-" "Mozilla/5.0 (compatible; IE 11.0; Win32; Trident/7.0)" 72.244.219.8 - - [15/Feb/2016:16:41:49 -0800] "GET /wpad.dat HTTP/1.1" 404 285 "-" "Mozilla/5.0 (compatible; IE 11.0; Win32; Trident/7.0)" 72.244.219.8 - - [15/Feb/2016:16:42:00 -0800] "GET /wpad.dat HTTP/1.1" 404 285 "-" "Mozilla/5.0 (compatible; IE 11.0; Win32; Trident/7.0)"
Please help us keep Internet safer and cleaner by leaving a descriptive comment about 72.244.219.8 IP address
- Hacked Gmail accounts
- WordPress Hacking Attempts
- SSH Hacking Attempts
- Why Can't I See The Exact Address?
DNSBL* - is a list of IP addresses published through the Internet Domain Name Service (DNS) either as a zone file that can be used by DNS server software, or as a live DNS zone that can be queried in real-time. DNSBLs are most often used to publish the addresses of computers or networks linked to spamming; most mail server software can be configured to reject or flag messages which have been sent from a site listed on one or more such lists.
WHOIS** - is a query/response protocol that is widely used for querying databases in order to determine the registrant or assignee of Internet resources, such as a domain name, an IP address block, or an autonomous system number. WHOIS lookups were traditionally performed with a command line interface application, and network administrators predominantly still use this method, but many simplified web-based tools exist. WHOIS services are typically communicated using the Transmission Control Protocol (TCP). Servers listen to requests on the well-known port number 43.
** Approximate Geographic Location - This is NOT the exact geographical location of the person/organization with the given IP address. However, this should still give you a good idea about the area/region where this person/orgranization is located.