This IP address has been reported a total of
4
times from
4 distinct
sources.
67.212.122.148 was first reported on
, and the most recent report was
.
In the last 60 days, the only reporter location was:
United States of America
with 2
reports.
The most common categories in these recent reports were:
Bad Web Bot
2
times;
Brute-Force
1
time;
Exploited Host
1
time;
Web App Attack
1
time;
DDoS Attack
1
time.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(mod_security) mod_security (id:210730) triggered by 67.212.122.148 (dhcp-148-122-212-67.cf-res.cfu. ...
show more(mod_security) mod_security (id:210730) triggered by 67.212.122.148 (dhcp-148-122-212-67.cf-res.cfu.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 05:52:02.862711 2026] [security2:error] [pid 3943:tid 3943] [client 67.212.122.148:32940] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.spacebooger.com|F|2"] [data ".blogspot.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.spacebooger.com"] [uri "/2009/05/01/friday-night-fights-opp-round-11/stars-and-garters.blogspot.com"] [unique_id "ar9-whu9iR4wilS5ZRAjwAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
Distributed web scraper targeting /store/filtered/ on saddlebrook.usawinetradersclub.com. Residentia ...
show moreDistributed web scraper targeting /store/filtered/ on saddlebrook.usawinetradersclub.com. Residential proxy - IP+timestamp provided for ISP DHCP log attribution.
show less
67.212.122.148 - - [28/Jul/2026:04:22:10 +0800] "GET /index.php?days=30&hideminor=0&limit=250&target ...
show more67.212.122.148 - - [28/Jul/2026:04:22:10 +0800] "GET /index.php?days=30&hideminor=0&limit=250&target=%E8%A5%BF%E6%9C%A8%E9%87%8E%E7%9C%9F%E5%A7%AB%2F%E3%83%90%E3%83%AC%E3%83%B3%E3%82%BF%E3%82%A4%E3%83%B3%E3%81%AE%E5%B0%8F%E3%81%95%E3%81%AA%E5%98%98&title=%E7%89%B9%E6%AE%8A%3A%E5%B7%B2%E9%80%A3%E7%B5%90%E7%9A%84%E6%9C%80%E8%BF%91%E8%AE%8A%E6%9B%B4 HTTP/2.0" 403 153 "-" "Mozilla/5.0 (Macintosh; U; PPC Mac OS X 10_12_0; rv:1.9.2.20) Gecko/4496-02-01 00:36:56.753250 Firefox/3.8"
...
show less
Brute-Force
Anonymous
Attribution: mikhail-smirnov-79830323 (LinkedIn/profile ID) employed by Angara Technologies Group (E ...
show moreAttribution: mikhail-smirnov-79830323 (LinkedIn/profile ID) employed by Angara Technologies Group (Explicitly identified himself as enemy a week before attack began) | Aggressive search filter manipulation / web scraper probe on port 443 | URI: Heavy query parameter abuse: /communications/videoconference.html?___SID=98b0ae694dbcf54e4eb94fe0aa9dcaf8U+&dir=asc&order=name&rating=6 | UA: Mozilla/5.0 (Linux; Android 6.0; Nexus 5 Build/MRA58N) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/65.0.3325.181 Mobile Safari/537.36 | (Magento Site)
show less
Hacking
Bad Web Bot
Showing 1 to
4
of 4 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ