Log in to view charts and search reports for this IP.
Log In
Top Reporter Countries (Last 60 Days)
Example preview
Report Categories (Last 60 Days)
Example preview
Reports Activity
Example preview
Account required for the enhanced features
Log inSign up
IP Abuse Reports for 3.71.7.238:
This IP address has been reported a total of
74
times from
68 distinct
sources.
3.71.7.238 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Germany
with 16
reports;
United States of America
with 13
reports;
Australia
with 8
reports.
The most common categories in these recent reports were:
Web App Attack
45
times;
Port Scan
25
times;
Hacking
19
times;
Bad Web Bot
13
times;
Brute-Force
10
times;
Other
7
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(🐾 - 🚨 Network 🕵 sc ...
show moreThis IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(🐾 - 🚨 Network 🕵 scan 🎩 Nuclei 👨💻).
show less
(mod_security) mod_security (id:9999001) triggered by 3.71.7.238 (DE/Germany/Hesse/Frankfurt am Main ...
show more(mod_security) mod_security (id:9999001) triggered by 3.71.7.238 (DE/Germany/Hesse/Frankfurt am Main/-/[AS16509 AMAZON-02]): 1 in the last 86400 secs (CF_ENABLE); Ports: *; Direction: inout; Trigger: LF_MODSEC; Logs: [Sun Aug 30 17:38:12.532105 2026] [security2:error] [pid 965364:tid 965408] [client 3.71.7.238:41880] ModSecurity: Access denied with code 403 (phase 1). Pattern match "^154\\\\.57\\\\.7\\\\.73$" at REQUEST_HEADERS:Host. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "155"] [id "9999001"] [msg "Direct incoming request to server shared IP blocked by admin"] [hostname "154.57.7.73"] [uri "/.git/config"] [unique_id "apRAVNQlmqg2P9rAQiCDpwAAABE"]
show less
Blocked by os-abuseipdb; 3 hits, proto=tcp, ports=443
Port Scan
Hacking
Anonymous
[31/Aug/2026:00:21:15 +1000] "GET /.git/config HTTP/1.1" 301 292 "Mozilla/5.0 (iPhone; CPU iPhone OS ...
show more[31/Aug/2026:00:21:15 +1000] "GET /.git/config HTTP/1.1" 301 292 "Mozilla/5.0 (iPhone; CPU iPhone OS 12_0 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) CriOS/74.0.3729.155 Mobile/15E148 Safari/605.1"
show less
[AUTORAVALT][[30/08/2026 - 11:09:25 -03:00 UTC]
Attack from [Amazon Technologies Inc.]
[3.71.7.238][ ...
show more[AUTORAVALT][[30/08/2026 - 11:09:25 -03:00 UTC]
Attack from [Amazon Technologies Inc.]
[3.71.7.238][ec2-3-71-7-238.eu-central-1.compute.amazonaws.com]
Action: BLocKed
Hacking... Unauthorized attempts to access the server.
Web App Attack -> Attempts to probe for or exploit installed web applications such as a CMS like WordPress/Drupal, e-commerce solutions, fo]
...
show less