This IP address has been reported a total of
34
times from
28 distinct
sources.
147.93.101.4 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(mod_security) mod_security (id:210492) triggered by 147.93.101.4 (-): 1 in the last 300 secs; Ports ...
show more(mod_security) mod_security (id:210492) triggered by 147.93.101.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 01:20:55.145555 2026] [security2:error] [pid 16089:tid 16089] [client 147.93.101.4:41628] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arellasoc.com"] [uri "/.env.save"] [unique_id "aiZRNy6DjJaLY_5c5DNdegAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
Bot / scanning and/or hacking attempts: GET /members/.env HTTP/1.1, GET /admin/.env HTTP/1.1, GET /c ...
show moreBot / scanning and/or hacking attempts: GET /members/.env HTTP/1.1, GET /admin/.env HTTP/1.1, GET /core/.env HTTP/1.1, GET /index.php HTTP/1.1
show less
[SunJun0720:28:54.7472982026][security2:error][pid571:tid641][client147.93.101.4:0]ModSecurity:Acces ...
show more[SunJun0720:28:54.7472982026][security2:error][pid571:tid641][client147.93.101.4:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"eselectronic.ch\"][uri\"/core/.env.save\"][unique_id\"aiW4ZpJMlt-ejl82go_3sAAAAIQ\"]
show less
Port Scan
Brute-Force
Web App Attack
Anonymous
Web App Attack, Hacking
Hacking
Web App Attack
Anonymous
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
GENERAL: parametres: [url:env=] UA:Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.3 ...
show moreGENERAL: parametres: [url:env=] UA:Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 URL:/admin/.env
show less