This IP address has been reported a total of
24
times from
11 distinct
sources.
109.252.116.225 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Netherlands
with 14
reports;
United States of America
with 3
reports;
Germany
with 2
reports.
The most common categories in these recent reports were:
Hacking
12
times;
Web App Attack
10
times;
Web Spam
6
times;
Brute-Force
5
times;
Bad Web Bot
3
times;
Other
9
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
[FriOct0906:01:20.9987752026][security2:error][pid3289986:tid3290066][client109.252.116.225:0]ModSec ...
show more[FriOct0906:01:20.9987752026][security2:error][pid3289986:tid3290066][client109.252.116.225:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"dsfiduciaria.ch\"][uri\"/media/sourcerer/js/popup.js\"][unique_id\"ashnEG-iF3jWdFMQhfwtlAAAAFY\"]
show less
Try to access /wp-content/plugins/wpmudev-updates/changelog.txt
Web App Attack
Anonymous
Bot / scanning and/or hacking attempts: GET /wp-admin/ HTTP/1.1, GET /wp-admin/plugins.php HTTP/1.1, ...
show moreBot / scanning and/or hacking attempts: GET /wp-admin/ HTTP/1.1, GET /wp-admin/plugins.php HTTP/1.1, POST /wp-login.php HTTP/1.1, GET /wp-login.php?redirect_to=http%3A%2F%2Fzvnoordwijkerhout.nl
show less
Reason:15 (Hacking), Via: www.pixelxp.nl/index-ajax.php, Message: Blocked URL pattern: 'index-a ...
show moreReason:15 (Hacking), Via: www.pixelxp.nl/index-ajax.php, Message: Blocked URL pattern: 'index-ajax.php'. [POST] Gevaarlijk woord 'EVAL' in Value in 'search' [+35]; Gevaarlijk woord 'eval' in Value in 'ucfg' [+35]; Verdachte string 'base64_decode' in Value in 'ucfg' [+20]; Verdachte Base64 content: [
show less
Reason:15 (Hacking), Via: www.subsidiespecialist.nl/index-ajax.php, Message: Blocked URL pattern: &# ...
show moreReason:15 (Hacking), Via: www.subsidiespecialist.nl/index-ajax.php, Message: Blocked URL pattern: 'index-ajax.php'. [POST] Gevaarlijk woord 'EVAL' in Value in 'search' [+35]; Gevaarlijk woord 'eval' in Value in 'ucfg' [+35]; Verdachte string 'base64_decode' in Value in 'ucfg' [+20]; Verdachte Base64 content: [
show less
Reason:15 (Hacking), Via: www.tilburgsans.nl/index-ajax.php, Message: Blocked URL pattern: 'ind ...
show moreReason:15 (Hacking), Via: www.tilburgsans.nl/index-ajax.php, Message: Blocked URL pattern: 'index-ajax.php'. [POST] Gevaarlijk woord 'EVAL' in Value in 'search' [+35]; Gevaarlijk woord 'eval' in Value in 'ucfg' [+35]; Verdachte string 'base64_decode' in Value in 'ucfg' [+20]; Verdachte Base64 content: [
show less