This IP address has been reported a total of
59
times from
50 distinct
sources.
162.243.218.244 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
United States of America
with 11
reports;
Germany
with 9
reports;
Netherlands
with 6
reports.
The most common categories in these recent reports were:
Web App Attack
44
times;
Bad Web Bot
19
times;
Brute-Force
18
times;
Hacking
8
times;
Port Scan
3
times;
Other
2
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
5 attacks on Laravel URLs, PHP URLs, VC URLs, env grabbing URLs, site downloads (type 2):
GET /_igni ...
show more5 attacks on Laravel URLs, PHP URLs, VC URLs, env grabbing URLs, site downloads (type 2):
GET /_ignition/execute-solution HTTP/1.1
POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
GET /.git/config HTTP/1.1
GET /.env HTTP/1.1
GET /demo HTTP/1.1
show less
Jarvis auto-ban: Honeypot /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php via develop.saec.me [U ...
show moreJarvis auto-ban: Honeypot /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php via develop.saec.me [US] ASN:DigitalOcean, LLC
show less
[AI Threat Score: 95/100 via Groq] [AbuseIPDB Score: 100] The IP made a single GET request to /debug ...
show more[AI Threat Score: 95/100 via Groq] [AbuseIPDB Score: 100] The IP made a single GET request to /debug/default/index on developers.majikah.solutions, flagged with malicious-request and repeated-reconnaissance tags. The request used a standard browser User-Agent but was marked as browser impersonation with minimal headers, typical of a scripted web bot. Coupled with a 100% AbuseIPDB confidence score, 47 recent external reports, and a high severity tag, the activity confirms bad web bot behavior targeting web applications. Likely motive: Automated probing of web application debug endpoints for vulnerability exploitation.
show less
(mod_security) mod_security (id:949110) triggered by 162.243.218.244 (US/United States/-): N in the ...
show more(mod_security) mod_security (id:949110) triggered by 162.243.218.244 (US/United States/-): N in the last X secs
show less
Web application attack / vulnerability scanning against our public nginx web server (TCP 80/443). So ...
show moreWeb application attack / vulnerability scanning against our public nginx web server (TCP 80/443). Source matched a blocked-path security rule (jail nginx-444); server returned HTTP 444 (connection closed without response). TCP three-way handshake completed (full HTTP request received).
show less