This IP address has been reported a total of
6
times from
2 distinct
sources.
38.225.57.114 was first reported on
September 18th 2026 , and the most recent report was
9 hours ago .
In the last 60 days, the top reporter locations were:
United States of America
with 5
reports;
Switzerland
with 1
report.
The most common categories in these recent reports were:
Web App Attack
5
times;
Bad Web Bot
5
times;
Brute-Force
5
times;
DDoS Attack
1
time;
Exploited Host
1
time.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
πΊπΈ
TPI-Abuse
2026-09-30 00:56:19
(9 hours ago)
(mod_security) mod_security (id:210350) triggered by 38.225.57.114 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 38.225.57.114 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 20:56:14.679246 2026] [security2:error] [pid 27475:tid 27507] [client 38.225.57.114:55070] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.pwihatah.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.pwihatah.com"] [uri "/"] [unique_id "arxeLmPybf0DxqWVYt6eNgAAAEE"], referer: https://seoandlinkbuilding.website/dir/premium-backlink-building-169367
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π
ALPHANET
2026-09-29 02:17:18
(1 day ago)
Botnet or web spider not respecting robots.txt
DDoS Attack
Exploited Host
πΊπΈ
TPI-Abuse
2026-09-28 15:37:09
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 38.225.57.114 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 38.225.57.114 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 11:37:04.719621 2026] [security2:error] [pid 8290:tid 8306] [client 38.225.57.114:35014] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||yakamengen.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "yakamengen.com"] [uri "/"] [unique_id "arqJoAh2oEWNwsLKBgJnvgAAAQw"], referer: https://blogcheckerfree.store/dir/professional-seo-links-238030
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-26 03:29:52
(4 days ago)
(mod_security) mod_security (id:210350) triggered by 38.225.57.114 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 38.225.57.114 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 23:29:47.602229 2026] [security2:error] [pid 24049:tid 24049] [client 38.225.57.114:45554] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.alsetsystems.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.alsetsystems.com"] [uri "/"] [unique_id "arc8KylRxw-JoScKK0YrkAAAAAI"], referer: https://bulkdrchecker.website/dir/results-driven-link-building-7681
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 03:56:15
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 38.225.57.114 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 38.225.57.114 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 23:56:08.808777 2026] [security2:error] [pid 1378:tid 1378] [client 38.225.57.114:19880] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||pjv.us|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "pjv.us"] [uri "/"] [unique_id "arH8WAbFYVaX_h6rYaiJ5AAAAAw"], referer: https://theantblack.blogspot.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-18 16:12:29
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 38.225.57.114 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 38.225.57.114 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 12:12:21.123391 2026] [security2:error] [pid 22072:tid 22072] [client 38.225.57.114:60570] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||pseudospace.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "pseudospace.com"] [uri "/"] [unique_id "aq1i5U3SR67UETj-1CB-KAAAAAo"], referer: https://freepadachecker.website/dir/premium-link-building-168331
show less
Brute-Force
Bad Web Bot
Web App Attack
Showing 1 to
6
of 6 reports