Log in to view charts and search reports for this IP.
Log In
No reports in the last 60 days
38.150.25.96 has been reported 21
times. The most recent report is from
.
The full history is preserved below and remains searchable. A
0% score reflects the absence of recent activity, but
this is not a guarantee that earlier reports were invalid. Abuse confidence score decays,
naturally, over time, when the abusive activity stops.
IP Abuse Reports for 38.150.25.96:
This IP address has been reported a total of
21
times from
14 distinct
sources.
38.150.25.96 was first reported on
, and the most recent report was
.
Vulnerability scan - GET /Ueditor/net/controller.ashx?action=catchimage; GET /Ueditor/net/controller ...
show moreVulnerability scan - GET /Ueditor/net/controller.ashx?action=catchimage; GET /Ueditor/net/controller.ashx?action=catchimage
show less
(mod_security) mod_security (id:210730) triggered by 38.150.25.96 (-): 1 in the last 300 secs; Ports ...
show more(mod_security) mod_security (id:210730) triggered by 38.150.25.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 06 18:41:36.193822 2024] [security2:error] [pid 2280] [client 38.150.25.96:65281] [client 38.150.25.96] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||goldengatecorgis.org|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "goldengatecorgis.org"] [uri "/install/index.php.bak"] [unique_id "ZonIIGxIvGSmhUlnDifcJQAAAAQ"], referer: http://goldengatecorgis.org/install/index.php.bak?step=11&insLockfile=a&s_lang=a&install_demo_name=ircgu.php&updateHost=http:///
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
Bot / scanning and/or hacking attempts: GET /static/Ueditor/net/controller.ashx/js/Ueditor/controlle ...
show moreBot / scanning and/or hacking attempts: GET /static/Ueditor/net/controller.ashx/js/Ueditor/controller.a, GET /js/Ueditor/net/controller.ashx HTTP/1.1, done, streams: 0/1/1/0/0 (open/recv/resp/push/rst), GET /static/Ueditor/controller.ashx HTTP/1.1, GET /manager/Ueditor/controller.ashx HTTP/1.1, GET /manager/Ueditor/net/controller.ashx HTTP/1.1, GET /admin/Ueditor/net/controller.ashx HTTP/1.1, GET /Controls/Ueditor/net/controller.ashx HTTP/1.1, GET /editor/Ueditor/controller.ashx HTTP/1.1, GET /content/Ueditor/net/controller.ashx HTTP/1.1, GET /editor/Ueditor/net/controller.ashx HTTP/1.1, GET /admin/Ueditor/controller.ashx HTTP/1.1, GET /Controls/Ueditor/controller.ashx HTTP/1.1
show less