This IP address has been reported a total of
9
times from
5 distinct
sources.
3.99.234.123 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Automated Apache suspicious-path probe detected in last 15m: hits=204; wp-login_hits=0; url=/.git/co ...
show moreAutomated Apache suspicious-path probe detected in last 15m: hits=204; wp-login_hits=0; url=/.git/config|/.env|/.env.staging|/.env.local|/.env.production|/.env.test|/.env.remote|/.env.development|(+196 more)
show less
(mod_security) mod_security (id:210492) triggered by 3.99.234.123 (ec2-3-99-234-123.ca-central-1.com ...
show more(mod_security) mod_security (id:210492) triggered by 3.99.234.123 (ec2-3-99-234-123.ca-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 03:40:10.929276 2026] [security2:error] [pid 2414144:tid 2414144] [client 3.99.234.123:35144] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "transportdelivery.com"] [uri "/.git/config"] [unique_id "ammuWhyXr1rOCDeeHLqbTwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
Automated Apache web application probing in selected 24h window; attempts=204, unique_paths=204, err ...
show moreAutomated Apache web application probing in selected 24h window; attempts=204, unique_paths=204, error_responses=204; targets include WordPress, .env/.git, phpMyAdmin, autodiscover, wpad.dat and related probe paths.
show less