AbuseIPDB » 38.248.89.120
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
No reports in the last 60 days
38.248.89.120 has been reported 15 times. The most recent report is from .
The full history is preserved below and remains searchable. A 0% score reflects the absence of recent activity, but this is not a guarantee that earlier reports were invalid. Abuse confidence score decays, naturally, over time, when the abusive activity stops.
IP Abuse Reports for 38.248.89.120:
This IP address has been reported a total of 15 times from 13 distinct sources. 38.248.89.120 was first reported on , and the most recent report was .
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐ฌ๐ง thetomtaylor.co.uk |
Fail2Ban - [RECIDIVE]Repeat offender across multiple jails on recidive ... [ice02]
|
Brute-Force Bad Web Bot Exploited Host Web App Attack | ||
| ๐ซ๐ท masterguru |
wp-login request blocked, no referer. Pattern match "wp-login.php" at REQUEST_URI. (88020-195)
|
Hacking | ||
| ๐ฌ๐ง thetomtaylor.co.uk |
Fail2Ban - [NGINX]WordPress Logins Sniffings on nginx-wordpress-sniffer ... [ice01,ice02,wa01,wa02]
|
Bad Web Bot Web App Attack | ||
| ๐จ๐ญ blinx |
Suspicious activity detected by Modsecurity
|
Web Spam Port Scan Hacking Bad Web Bot Web App Attack | ||
| Anonymous |
[Drupal AbuseIPDB module] Request path is blacklisted. /wp-login.php
|
Web App Attack | ||
| ๐ซ๐ท rellik |
Admin Connection Atttempt
|
Hacking Web App Attack | ||
| ๐ฉ๐ช bryth |
Wordpress login/xmlrpc abuse (Wed Jun 3 12:03:44 PM UTC 2026)
|
Hacking Web App Attack | ||
| ๐ง๐ช cmbplf |
1.404 POST requests with url.path */wp-login.php
|
Brute-Force Bad Web Bot | ||
| ๐ฎ๐น VHosting |
Detected WordPress attack from 4 different servers
|
Brute-Force Web App Attack | ||
| ๐ฌ๐ง cg-design.co.uk |
|
SQL Injection | ||
| ๐ง๐ช cmbplf |
1.114 POST requests with url.path */wp-login.php
|
Brute-Force Bad Web Bot | ||
| ๐บ๐ธ antlac1 |
crowdsecurity/http-bf-wordpress_bf
|
Brute-Force Web App Attack | ||
| ๐ฉ๐ช webanyone |
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
|
Web App Attack | ||
| ๐ฆ๐ท RocketEmi |
They are probing for vulnerable files to hack my website.
|
Hacking | ||
| ๐จ๐ฆ wil.com |
GlobalProtect login attempts with user april.quinones.
|
VPN IP Brute-Force |
Showing 1 to 15 of 15 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ