Log in to view charts and search reports for this IP.
Log In
Reports Activity
Example preview
Report Categories (Last 60 Days)
Example preview
Top Reporter Countries (Last 60 Days)
Example preview
Account required for the enhanced features
Log inSign up
IP Abuse Reports for 217.216.38.219
This IP address has been reported a total of
10
times from
10 distinct
sources.
217.216.38.219 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Germany
with 6
reports;
Spain
with 2
reports;
Canada
with 1
report.
The most common categories in these recent reports were:
Web App Attack
9
times;
Bad Web Bot
5
times;
Hacking
3
times;
SQL Injection
2
times;
Port Scan
2
times;
Other
14
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
[Tue Sep 22 12:23:32.928311 2026] [access_compat:error] [pid 2210154] [client 217.216.38.219:60461] ...
show more[Tue Sep 22 12:23:32.928311 2026] [access_compat:error] [pid 2210154] [client 217.216.38.219:60461] AH01797: client denied by server configuration: /var/www/html/wp_clientium/wp-content/uploads/wc-logs/, referer: binance.com
[Tue Sep 22 12:23:32.931037 2026] [authz_core:error] [pid 2210154] [client 217.216.38.219:60461] AH01630: client denied by server configuration: /var/www/html/wp_clientium/wp-content/uploads/wpcf7_uploads/, referer: binance.com
[Tue Sep 22 12:23:32.933107 2026] [access_compat:error] [pid 2210154] [client 217.216.38.219:60461] AH01797: client denied by server configuration: /var/www/html/wp_clientium/wp-content/uploads/evf-logs/, referer: binance.com
...
show less
DNS Compromise
DNS Poisoning
Fraud Orders
DDoS Attack
Ping of Death
Phishing
Fraud VoIP
Open Proxy
Web Spam
Email Spam
Port Scan
Hacking
SQL Injection
Bad Web Bot
Exploited Host
Web App Attack
IoT Targeted
Anonymous
Attacks websites by trying to access known vulnerables of plugins, brute-force of backends or probin ...
show moreAttacks websites by trying to access known vulnerables of plugins, brute-force of backends or probing of administrative tools
show less
(mod_security) mod_security (id:225080) triggered by 217.216.38.219 (vmi3551459.contaboserver.net): ...
show more(mod_security) mod_security (id:225080) triggered by 217.216.38.219 (vmi3551459.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 19:22:30.470553 2026] [security2:error] [pid 18968:tid 18968] [client 217.216.38.219:62052] ModSecurity: Access denied with code 403 (phase 2). Match of "rx ^[\\\\d\\\\.ab]+$" against "ARGS_GET:password-protected" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "143"] [id "225080"] [rev "1"] [msg "COMODO WAF: XSS vulnerability in Plupload before 2.1.9 or MediaElement.js before 2.21.0, as used in WordPress before 4.5.2 (CVE-2016-4566 & CVE-2016-4567)||www.brainstormer.soy|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.brainstormer.soy"] [uri "/wp-includes/js/ "] [unique_id "arG8NtR1UI13Q0391bKYvgAAABo"], referer: binance.com
show less
This address is fingerprinting our sites by asking for the tell-tale paths of frameworks and applica ...
show moreThis address is fingerprinting our sites by asking for the tell-tale paths of frameworks and applications they do not run (administration consoles, version files, vendor directories). This is reconnaissance for an exploit, not a visit; blocked. Please check the machine behind it for a scanner or malware. | method: GET | path: /wp-admin/css/ | ua: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36 | 2026-09-21 21:20 UTC
show less