This IP address has been reported a total of
6
times from
5 distinct
sources.
217.181.82.64 was first reported on
March 4th 2026 , and the most recent report was
10 hours ago .
In the last 60 days, the top reporter locations were:
Ireland
with 2
reports;
Germany
with 1
report;
Finland
with 1
report.
The most common categories in these recent reports were:
Web App Attack
5
times;
Brute-Force
1
time;
Exploited Host
1
time.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฎ๐ช
AutosOnShow
2026-09-26 22:30:09
(10 hours ago)
blocked for webapp attack | path requested: /.env | seen at 2026-09-26 22:29:22.005 |
Web App Attack
๐ฎ๐ช
AutosOnShow
2026-09-22 12:34:05
(4 days ago)
blocked for webapp attack | path requested: /.env | seen at 2026-09-22 12:33:41.426 |
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-25 18:33:57
(1 month ago)
cloudlinux2 fail2ban: 2026-08-25 20:32:25,999 fail2ban.filter [1464]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-08-25 20:32:25,999 fail2ban.filter [1464]: INFO [plesk-wordpress] Found 217.181.67.59 - 2026-08-25 20:32:25cloudlinux2 fail2ban: 2026-08-25 20:32:24,290 fail2ban.filter [1464]: INFO [plesk-modsecurity] Found 195.63.24.210 - 2026-08-25 20:32:24cloudlinux2 fail2ban: 2026-08-25 20:32:29,232 fail2ban.filter [1464]: INFO [plesk-wordpress] Found 195.63.19.179 - 2026-08-25 20:32:28cloudlinux2 fail2ban: 2026-08-25 20:32:27,472 fail2ban.filter [1464]: INFO [plesk-wordpress] Found 195.63.16.252 - 2026-08-25 20:32:27cloudlinux2 fail2ban: 2026-08-25 20:32:28,316 fail2ban.filter [1464]: INFO [plesk-wordpress] Found 217.181.93.193 - 2026-08-25 20:32:27cloudlinux2 fail2ban: 2026-08-25 20:32:30,577 fail2ban.filter [1464]: INFO [plesk-wordpress] Found 217.181.82.64 - 2026-08-25 20:32:30cloudlinux2 fail2ban: 2026-08-25 20:32:49,440 fail2ban.filter [1464]: INFO [plesk-modsecurity] Found 34.87.89.20 - 2026-08-25 20:32:49cloudl
show less
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-25 10:01:35
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 27
Exploited Host
Web App Attack
๐ซ๐ฎ
Some Body
2026-08-03 14:48:59
(1 month ago)
Aggressive web scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-04 00:21:07
(6 months ago)
(mod_security) mod_security (id:210350) triggered by 217.181.82.64 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 217.181.82.64 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 03 19:21:00.623528 2026] [security2:error] [pid 16704:tid 16704] [client 217.181.82.64:53926] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.mfleetservice.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.mfleetservice.com"] [uri "/wp-login.php"] [unique_id "aad67C41_m0F_YV3kTBhIQAAAAI"], referer: http://mfleetservice.com/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
Showing 1 to
6
of 6 reports