This IP address has been reported a total of
30
times from
25 distinct
sources.
52.159.244.178 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Attempted Not Found (404 status code) requests on our application, more than 30% of their total requ ...
show moreAttempted Not Found (404 status code) requests on our application, more than 30% of their total requests.
show less
Adversary infrastructure reachback to sinkholed domain (gettrumpmemestrendingtokens.com): 31 GET req ...
show moreAdversary infrastructure reachback to sinkholed domain (gettrumpmemestrendingtokens.com): 31 GET requests to secureleaf.dispensight.com. Paths: /sink.html. UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 14.1; rv:133.0) Gecko/20100101 Firefox/133.0.
show less
(PERMBLOCK) 52.159.244.178 (US/United States/-) has had more than 4 temp blocks in the last 86400 se ...
show more(PERMBLOCK) 52.159.244.178 (US/United States/-) has had more than 4 temp blocks in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_PERMBLOCK_COUNT; Logs:
show less
Port Scan
Anonymous
(caddyscan) Scanner path probe from 52.159.244.178 (US/United States/-): 5 in the last 3600 secs; Po ...
show more(caddyscan) Scanner path probe from 52.159.244.178 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 52.159.244.178 - - [22/May/2026:16:46:30 +0000] "GET /@fs/.env.development?import&raw HTTP/1.1"
[REDACTED] 200 2627 52.159.244.178 - - [22/May/2026:16:46:30 +0000] "GET /@fs/.env.production?import&raw HTTP/1.1"
[REDACTED] 200 2627 52.159.244.178 - - [22/May/2026:16:46:30 +0000] "GET /@fs/.env.test?import&raw HTTP/1.1"
[REDACTED] 200 2627 52.159.244.178 - - [22/May/2026:16:46:30 +0000] "GET /@fs/.git/config?import&raw HTTP/1.1"
[REDACTED] 200 2627 52.159.244.178 - - [22/May/2026:16:46:30 +0000] "GET /@fs/.git/config?import?raw HTTP/1.1"
show less
Port Scan
Anonymous
(caddyscan) Scanner path probe from 52.159.244.178 (US/United States/-): 5 in the last 3600 secs; Po ...
show more(caddyscan) Scanner path probe from 52.159.244.178 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 52.159.244.178 - - [22/May/2026:16:19:08 +0000] "GET /.env HTTP/1.1"
[REDACTED] 200 2627 52.159.244.178 - - [22/May/2026:16:19:09 +0000] "GET /config/.env HTTP/1.1"
[REDACTED] 200 2627 52.159.244.178 - - [22/May/2026:16:19:09 +0000] "GET /.env HTTP/1.1"
[REDACTED] 200 2627 52.159.244.178 - - [22/May/2026:16:19:09 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 52.159.244.178 - - [22/May/2026:16:19:10 +0000] "GET /.env HTTP/1.1"
show less
Port Scan
Showing 1 to
15
of 30 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ