This IP address has been reported a total of
4
times from
1 distinct
source.
43.243.38.200 was first reported on
September 27th 2026 , and the most recent report was
15 minutes ago .
In the last 60 days, the only reporter location was:
Spain
with 4
reports.
The most common categories in these recent reports were:
Web App Attack
4
times;
Hacking
4
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ช๐ธ
el-brujo
2026-09-28 05:26:46
(15 minutes ago)
28/Sep/2026:07:26:45.470512 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
28/Sep/2026:07:26:45.470512 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 43.243.38.200] ModSecurity: Warning. Matched phrase "gzdecode" at REQUEST_FILENAME. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-933-APPLICATION-ATTACK-PHP.conf"] [line "295"] [id "933150"] [msg "PHP Injection Attack: High-Risk PHP Function Name Found"] [data "Matched Data: gzdecode found within REQUEST_FILENAME: /cursos/cehv13/cehv13 lab prerequisites/websites/ceh wordpress website/wp-includes/simplepie/gzdecode.php"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-php"] [tag "platform-multi"] [tag "attack-injection-php"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/152/242"] [hostname "elhacker.info"] [uri "/Cursos/CEHv13/CEHv13 Lab Prerequisites/Websites/CEH WordPress Website/wp-includes/SimplePie/gzdecode.php"] [unique_id "arn6lb_OHgv9oAazJisc0QAAApg"]
...
show less
Hacking
Web App Attack
๐ช๐ธ
el-brujo
2026-09-28 00:34:09
(5 hours ago)
28/Sep/2026:02:34:08.735369 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
28/Sep/2026:02:34:08.735369 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 43.243.38.200] ModSecurity: Warning. Matched phrase "gzdecode" at REQUEST_FILENAME. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-933-APPLICATION-ATTACK-PHP.conf"] [line "295"] [id "933150"] [msg "PHP Injection Attack: High-Risk PHP Function Name Found"] [data "Matched Data: gzdecode found within REQUEST_FILENAME: /cursos/cehv13/cehv13 lab prerequisites/websites/ceh wordpress website/wp-includes/simplepie/gzdecode.php"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-php"] [tag "platform-multi"] [tag "attack-injection-php"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/152/242"] [hostname "elhacker.info"] [uri "/Cursos/CEHv13/CEHv13 Lab Prerequisites/Websites/CEH WordPress Website/wp-includes/SimplePie/gzdecode.php"] [unique_id "arm2AKBCmNmQ65DRGzrsdAAAAJk"]
...
show less
Hacking
Web App Attack
๐ช๐ธ
el-brujo
2026-09-27 21:37:36
(8 hours ago)
27/Sep/2026:23:37:35.713197 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
27/Sep/2026:23:37:35.713197 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 43.243.38.200] ModSecurity: Warning. Matched phrase "gzdecode" at REQUEST_FILENAME. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-933-APPLICATION-ATTACK-PHP.conf"] [line "295"] [id "933150"] [msg "PHP Injection Attack: High-Risk PHP Function Name Found"] [data "Matched Data: gzdecode found within REQUEST_FILENAME: /cursos/cehv13/cehv13 lab prerequisites/websites/ceh wordpress website/wp-includes/simplepie/gzdecode.php"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-php"] [tag "platform-multi"] [tag "attack-injection-php"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/152/242"] [hostname "elhacker.info"] [uri "/Cursos/CEHv13/CEHv13 Lab Prerequisites/Websites/CEH WordPress Website/wp-includes/SimplePie/gzdecode.php"] [unique_id "armMn3OZEFvS2cbDnkRdkgAAAkk"]
...
show less
Hacking
Web App Attack
๐ช๐ธ
el-brujo
2026-09-27 17:21:38
(12 hours ago)
27/Sep/2026:19:21:37.963695 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
27/Sep/2026:19:21:37.963695 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 43.243.38.200] ModSecurity: Warning. Matched phrase "gzdecode" at REQUEST_FILENAME. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-933-APPLICATION-ATTACK-PHP.conf"] [line "295"] [id "933150"] [msg "PHP Injection Attack: High-Risk PHP Function Name Found"] [data "Matched Data: gzdecode found within REQUEST_FILENAME: /cursos/cehv13/cehv13 lab prerequisites/websites/ceh wordpress website/wp-includes/simplepie/gzdecode.php"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-php"] [tag "platform-multi"] [tag "attack-injection-php"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/152/242"] [hostname "elhacker.info"] [uri "/Cursos/CEHv13/CEHv13 Lab Prerequisites/Websites/CEH WordPress Website/wp-includes/SimplePie/gzdecode.php"] [unique_id "arlQoatLS8M4__rYdufDBgAAA4g"]
...
show less
Hacking
Web App Attack
Showing 1 to
4
of 4 reports