Information about misusage of ip.bieringer.de
Since longer time (approx. over a year) ip.bieringer.de is misused on port 8080 in a continous way by a Java software from various IP addresses:
GET / HTTP/1.1
User-Agent: Apache-HttpClient/4.5.3 (Java/1.8.0_102)
Several workarounds did not stop that misusage like:
Following step reduced the misusage a lot
- respond since long time "HTTP 403" (blocked by detected user agent)
- close down port 8080 for quite a while
Leftover requestor is now:
return to DNS servers with following country codes 'NXDOMAIN' instead of the real IP address: VN
220.127.116.11 - - [14/Nov/2020:16:35:35 +0100] "GET / HTTP/1.1" 403 209 "-" "Apache-HttpClient/4.5.3 (Java/1.8.0_102)" 8080 "ip.bieringer.de:8080" "-" 155 375 "-/-/-/-"
(must be something like a master control server...)
In case of any issues with blocked DNS resolution replace in your browser: ip.bieringer.de -> ipng.bieringer.de
If I detected that one change the FQDN to "ipng.bieringer.de" then I will get really angry and close down the service!
Request of help
If one has any hint about the root cause, please contact me - thank you very much!
2020-11-14, webmaster at bieringer dot de
Your connection is via:
Your address: 18.104.22.168
is maintained by
webmaster at bieringer dot de