Log in to view charts and search reports for this IP.
Log In
Top Reporter Countries (Last 60 Days)
Example preview
Report Categories (Last 60 Days)
Example preview
Reports Activity
Example preview
Account required for the enhanced features
Log inSign up
IP Abuse Reports for 104.207.62.215:
This IP address has been reported a total of
108
times from
14 distinct
sources.
104.207.62.215 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
France
with 2
reports;
Switzerland
with 1
report;
Honduras
with 1
report.
Over the same time period, 104.207.62.215 has changed
country of origin 2 times.
The most common categories in these recent reports were:
Web App Attack
5
times;
Bad Web Bot
2
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
[09/Sep/2026:13:44:01 +0300] -- 104.207.62.215 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp- ...
show more[09/Sep/2026:13:44:01 +0300] -- 104.207.62.215 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-login.php HTTP/1.1
show less
[12:45] Attempted HTTPS access to the GlobalProtect prelogin endpoint on the web honeypot (VPN gatew ...
show more[12:45] Attempted HTTPS access to the GlobalProtect prelogin endpoint on the web honeypot (VPN gateway fingerprinting/recon)
show less
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
Anonymous
Attempted brute force login to web vpn 1172 time(s); last attempt for 2025.11.27 is noted in report ...
show moreAttempted brute force login to web vpn 1172 time(s); last attempt for 2025.11.27 is noted in report timestamp
show less
(mod_security) mod_security (id:210492) triggered by 104.207.62.215 (-): 1 in the last 300 secs; Por ...
show more(mod_security) mod_security (id:210492) triggered by 104.207.62.215 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:42:47.037873 2025] [security2:error] [pid 930407:tid 930407] [client 104.207.62.215:49257] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.strawberryhillchristmas.com"] [uri "/.env"] [unique_id "aSVP53UnbicZVc5wDxGnIwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
Attempted brute force login to web vpn 288 time(s); last attempt for 2025.11.18 is noted in report t ...
show moreAttempted brute force login to web vpn 288 time(s); last attempt for 2025.11.18 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
Attempted brute force login to web vpn 18 time(s); last attempt for 2025.10.19 is noted in report ti ...
show moreAttempted brute force login to web vpn 18 time(s); last attempt for 2025.10.19 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
Attempted brute force login to web vpn 72 time(s); last attempt for 2025.10.18 is noted in report ti ...
show moreAttempted brute force login to web vpn 72 time(s); last attempt for 2025.10.18 is noted in report timestamp
show less