Log in to view charts and search reports for this IP.
Log In
Reports Activity
Example preview
Report Categories (Last 60 Days)
Example preview
Top Reporter Countries (Last 60 Days)
Example preview
Account required for the enhanced features
Log inSign up
IP Abuse Reports for 216.73.162.64
This IP address has been reported a total of
99
times from
65 distinct
sources.
216.73.162.64 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Switzerland
with 1
report;
Poland
with 1
report.
The most common categories in these recent reports were:
SQL Injection
2
times;
Web App Attack
1
time;
Hacking
1
time.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
[SatJun0601:47:30.1245532026][security2:error][pid1471782:tid1471812][client216.73.162.64:0]ModSecur ...
show more[SatJun0601:47:30.1245532026][security2:error][pid1471782:tid1471812][client216.73.162.64:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"avcolor.ch\"][uri\"/wp-config-sample.php\"][unique_id\"aiNgEsfg91NWd2kNmHFF4gAAABM\"]
show less
Detected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was ...
show moreDetected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was hijacked and held in a tarpit to slow down the scan. Probed target: www.rtbi5tam.com:443
show less
(mod_security) mod_security (id:222160) triggered by 216.73.162.64 (-): 1 in the last 300 secs; Port ...
show more(mod_security) mod_security (id:222160) triggered by 216.73.162.64 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 27 03:40:19.470539 2026] [security2:error] [pid 26272:tid 26272] [client 216.73.162.64:32731] ModSecurity: Access denied with code 403 (phase 1). String match "wp-content/plugins/wp-easycart/inc/admin/phpinfo.php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/27_Apps_WPPlugin.conf"] [line "6347"] [id "222160"] [rev "1"] [msg "COMODO WAF: Information disclosure vulnerability in The EasyCart plugin before 2.0.6 for WordPress (CVE-2014-4942)||shawnlayne.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WPPlugin"] [hostname "shawnlayne.com"] [uri "/wp-content/plugins/wp-easycart/inc/admin/phpinfo.php"] [unique_id "ae8S4_TJYqjAjbOfA2zcAQAAAAE"]
show less
http-backdoors-attempts - IP: 216.73.162.64 - time="2026-04-19T06:09:52+02:00" level=info msg="(555 ...
show morehttp-backdoors-attempts - IP: 216.73.162.64 - time="2026-04-19T06:09:52+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-backdoors-attempts by ip 216.73.162.64 (CA/206092) : 4h ban on Ip 216.73.162.64" module=db
show less
Aggressive web search of vulnerable pages: /wp-admin/css/colors/ocean/about.php /images/index.php /w ...
show moreAggressive web search of vulnerable pages: /wp-admin/css/colors/ocean/about.php /images/index.php /wp-content/bypass.php /.well-known/gecko-lit ...
show less