This IP address has been reported a total of
42
times from
12 distinct
sources.
155.254.40.92 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
[TueSep0123:14:05.2383892026][security2:error][pid524788:tid524838][client155.254.40.92:0]ModSecurit ...
show more[TueSep0123:14:05.2383892026][security2:error][pid524788:tid524838][client155.254.40.92:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(curl\|wget\|python\|nikto\|sqlmap\|acunetix\|fimap\|dirbuster\|cmsmap\)\"atREQUEST_HEADERS:user-agent.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"217\"][id\"990210\"][msg\"Suspicioususer-agentblocked\"][hostname\"webdisk.gmint.ch\"][uri\"/.well-known/farcaster.json\"][unique_id\"apdAHSqQjl8JsPa9DOrRCwAAAE4\"]
show less
104.164.126.121-dcblockaid[07/02/2026:20:08:05-0000]\"GET\"FAILEDLOGINcpdavd:Couldnotfetchsystemhome ...
show more104.164.126.121-dcblockaid[07/02/2026:20:08:05-0000]\"GET\"FAILEDLOGINcpdavd:Couldnotfetchsystemhomedirectoryfordcblockaid45.67.220.130-dcblockaid[07/02/2026:20:08:17-0000]\"GET\"FAILEDLOGINcpdavd:Couldnotfetchsystemhomedirectoryfordcblockaid144.48.82.14-dcblockaid[07/02/2026:20:07:56-0000]\"GET\"FAILEDLOGINcpdavd:Couldnotfetchsystemhomedirectoryfordcblockaid103.4.250.193-dcblockaid[07/02/2026:20:08:00-0000]\"GET\"FAILEDLOGINcpdavd:Couldnotfetchsystemhomedirectoryfordcblockaid155.254.40.92-dcblockaid[07/02/2026:20:08:08-0000]\"GET\"FAILEDLOGINcpdavd:CouldnotfetchsystemhomedirectoryfordcblockaidIPAddressesBlocked:104.164.126.121\(US/UnitedStates/-\)45.67.220.130\(DE/Germany/-\)144.48.82.14\(DE/Germany/-\)103.4.250.193\(US/UnitedStates/-\)
show less
[SunJun2123:13:37.9247062026][security2:error][pid689619:tid689642][client155.254.40.92:0]ModSecurit ...
show more[SunJun2123:13:37.9247062026][security2:error][pid689619:tid689642][client155.254.40.92:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(curl\|wget\|python\|nikto\|sqlmap\|acunetix\|fimap\|dirbuster\|cmsmap\)\"atREQUEST_HEADERS:user-agent.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"217\"][id\"990210\"][msg\"Suspicioususer-agentblocked\"][hostname\"webmail.gmint.ch\"][uri\"/.well-known/farcaster.json\"][unique_id\"ajhUAW8SvKX2_DN02nF8awAAABQ\"]
show less
Crap requests that makes no sense, coming from various IPs at the same time
155.254.40.92 443 - [16 ...
show moreCrap requests that makes no sense, coming from various IPs at the same time
155.254.40.92 443 - [16/Jun/2026:21:46:01 +0000] "GET / HTTP/1.1" 301 5508 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36"
155.254.40.92 443 - [16/Jun/2026:21:46:01 +0000] "GET /https%3A/www.redacted/ HTTP/1.1" 404 2711 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36"
155.254.40.92 443 - [16/Jun/2026:21:46:02 +0000] "GET / HTTP/1.1" 200 7050 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36"
show less
DDoS Attack
Brute-Force
Bad Web Bot
Web App Attack
Stupid broken requests indicating this crawler was written by a total fucktard
155.254.40.92 443 - ...
show moreStupid broken requests indicating this crawler was written by a total fucktard
155.254.40.92 443 - [16/Feb/2026:12:44:56 +0000] "GET [redacted] HTTP/1.1" 404 6029 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36"
155.254.40.92 443 - [16/Feb/2026:12:44:56 +0000] "GET [redacted] HTTP/1.1" 404 6029 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36"
155.254.40.92 443 - [16/Feb/2026:12:44:56 +0000] "GET [redacted] HTTP/1.1" 404 6029 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36"
155.254.40.92 443 - [16/Feb/2026:12:44:56 +0000] "GET [redacted] HTTP/1.1" 404 6029 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36"
show less
http-probing - IP: 155.254.40.92 - time="2025-12-11T00:38:51+01:00" level=info msg="(555f66b4f6a745 ...
show morehttp-probing - IP: 155.254.40.92 - time="2025-12-11T00:38:51+01:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-probing by ip 155.254.40.92 (NL/50077) : 4h ban on Ip 155.254.40.92" module=db
show less