This IP address has been reported a total of
7
times from
7 distinct
sources.
15.222.4.118 was first reported on
September 29th 2026 , and the most recent report was
4 days ago .
In the last 60 days, the top reporter locations were:
Germany
with 2
reports;
Australia
with 1
report;
Belgium
with 1
report.
The most common categories in these recent reports were:
Web App Attack
6
times;
Bad Web Bot
2
times;
Brute-Force
2
times;
Hacking
1
time.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
2026-09-29 19:37:58
(4 days ago)
[honeypot-scan] 2026-09-29 19:37:58, Client: 15.222.4.118, Protocol: 6 (TCP), Service: HTTP, Activit ...
show more
[honeypot-scan] 2026-09-29 19:37:58, Client: 15.222.4.118, Protocol: 6 (TCP), Service: HTTP, Activity: bait-path scan (.env/.git probing)
show less
Web App Attack
π©πͺ
Blexyel
2026-09-29 17:26:57
(4 days ago)
15.222.4.118 - - [29/Sep/2026:19:26:57 +0200] "GET /.git/info/ HTTP/1.1" 403 153 "-" "Mozilla/5.0 (W ...
show more
15.222.4.118 - - [29/Sep/2026:19:26:57 +0200] "GET /.git/info/ HTTP/1.1" 403 153 "-" "Mozilla/5.0 (Windows NT 10.0; rv:78.0) Gecko/20100101 Firefox/78.0" "pingusmc.org"
...
show less
Brute-Force
Web App Attack
π¦πΊ
aranguren.org
2026-09-29 15:10:12
(4 days ago)
15.222.4.118 - - [30/Sep/2026:01:10:09 +1000] "GET /.git/info/ HTTP/1.1" 200 932 "-" "Mozilla/5.0 (W ...
show more
15.222.4.118 - - [30/Sep/2026:01:10:09 +1000] "GET /.git/info/ HTTP/1.1" 200 932 "-" "Mozilla/5.0 (Windows NT 10.0; rv:78.0) Gecko/20100101 Firefox/78.0"
15.222.4.118 - - [30/Sep/2026:01:10:11 +1000] "GET /.git/info/ HTTP/1.1" 200 932 "-" "Mozilla/5.0 (Windows NT 10.0; rv:78.0) Gecko/20100101 Firefox/78.0"
15.222.4.118 - - [30/Sep/2026:01:10:11 +1000] "GET /.git/info/exclude HTTP/1.1" 200 240 "-" "Mozilla/5.0 (Windows NT 10.0; rv:78.0) Gecko/20100101 Firefox/78.0"
...
show less
Web App Attack
π§πͺ
cmbplf
2026-09-29 14:12:46
(4 days ago)
16.441 requests in 1 hour (2d6h59m)
Brute-Force
Bad Web Bot
π©πͺ
webanyone
2026-09-29 13:42:46
(4 days ago)
Secret file probe | method: GET | path: /.git/HEAD | ua: Mozilla/5.0 (Windows NT 10.0; rv:78.0) Geck ...
show more
Secret file probe | method: GET | path: /.git/HEAD | ua: Mozilla/5.0 (Windows NT 10.0; rv:78.0) Gecko/20100101 Firefox/78.0
show less
Hacking
Web App Attack
πΊπΈ
its101
2026-09-29 11:30:11
(4 days ago)
Automated detection by LockdownAccess security system. Attack type(s): git_exposure. Reason: Nginx: ...
show more
Automated detection by LockdownAccess security system. Attack type(s): git_exposure. Reason: Nginx: git_exposure attack. Path targeted: unknown. Blocked in Cloudflare.
show less
Web App Attack
π³π±
Alt255
2026-09-29 11:12:04
(4 days ago)
[ti-22al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-22al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 15.222.4.118 - - [29/Sep/2026:13:11:57 +0200] "GET /.git/HEAD HTTP/1.1" 404 7953 "-" "Mozilla/5.0 (Windows NT 10.0; rv:78.0) Gecko/20100101 Firefox/78.0"
...
show less
Bad Web Bot
Web App Attack
Showing 1 to
7
of 7 reports