This IP address has been reported a total of
14
times from
10 distinct
sources.
54.67.59.157 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(mod_security) mod_security (id:210492) triggered by 54.67.59.157 (ec2-54-67-59-157.us-west-1.comput ...
show more(mod_security) mod_security (id:210492) triggered by 54.67.59.157 (ec2-54-67-59-157.us-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 05:33:50.269570 2026] [security2:error] [pid 3500695:tid 3500695] [client 54.67.59.157:34118] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "holisticbuildingexperience.com"] [uri "/.git/config"] [unique_id "amnI_iNVvy5AE9NIeHlG-AAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
Automated Apache suspicious-path probe detected in last 15m: hits=204; wp-login_hits=0; url=/.git/co ...
show moreAutomated Apache suspicious-path probe detected in last 15m: hits=204; wp-login_hits=0; url=/.git/config|/.env|/.env.local|/.env.staging|/.env.production|/.env.development|/.env.test|/.env.remote|(+196 more)
show less
Automated Apache web application probing in selected 24h window; attempts=408, unique_paths=204, err ...
show moreAutomated Apache web application probing in selected 24h window; attempts=408, unique_paths=204, error_responses=204; targets include WordPress, .env/.git, phpMyAdmin, autodiscover, wpad.dat and related probe paths.
show less
(mod_security) mod_security (id:210492) triggered by 54.67.59.157 (ec2-54-67-59-157.us-west-1.comput ...
show more(mod_security) mod_security (id:210492) triggered by 54.67.59.157 (ec2-54-67-59-157.us-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 00:36:22.024945 2026] [security2:error] [pid 19663:tid 19663] [client 54.67.59.157:39734] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "holboxwhalesharktours.net"] [uri "/.git/config"] [unique_id "ammDRgbCilmTQNA8SEomGgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
(mod_security) mod_security triggered on hostname [redacted] 54.67.59.157 (US/United States/ec2-54-6 ...
show more(mod_security) mod_security triggered on hostname [redacted] 54.67.59.157 (US/United States/ec2-54-67-59-157.us-west-1.compute.amazonaws.com)
show less