AbuseIPDB » 74.122.58.39
74.122.58.39 was found in our database!
This IP was reported 8 times. Confidence of
Abuse
is 42% : ?
ISP
Server Mania Inc.
Usage Type
Fixed Line ISP
ASN
AS400072
Domain Name
servermania.com
Country
πΊπΈ
United States of America
City
Leesburg, Virginia
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 74.122.58.39 :
This IP address has been reported a total of
8
times from
6 distinct
sources.
74.122.58.39 was first reported on
August 21st 2026 , and the most recent report was
18 hours ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
π©πͺ
london2038.com
2026-08-23 09:40:43
(18 hours ago)
Probing for exploits
74.122.58.39 - - [23/Aug/2026:11:40:39 +0200] "GET /.env HTTP/1.1" 422 0 "-" "M ...
show more
Probing for exploits
74.122.58.39 - - [23/Aug/2026:11:40:39 +0200] "GET /.env HTTP/1.1" 422 0 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
74.122.58.39 - - [23/Aug/2026:11:40:39 +0200] "GET /.env.local HTTP/1.1" 422 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
show less
Hacking
Web App Attack
π©πͺ
barbarella
2026-08-23 04:14:20
(1 day ago)
Configuration snooping with modified .env.* file (GET /.env.dev)
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-23 03:11:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 74.122.58.39 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 74.122.58.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 23:11:45.474382 2026] [security2:error] [pid 736312:tid 736337] [client 74.122.58.39:19207] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "furball.m3sxa.com"] [uri "/.env"] [unique_id "aopk8T-EUT1Uiud5Qn9QZAAAARc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
Holger
2026-08-22 00:13:34
(2 days ago)
URL probing: GET /.env
Web App Attack
π³π±
GabrielJST
2026-08-21 22:56:46
(2 days ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 74.122.58.39 (US/Uni ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 74.122.58.39 (US/United States/-)
show less
Bad Web Bot
π©πͺ
TheDjRider
2026-08-21 22:52:01
(2 days ago)
CrowdSec detected Web application reconnaissance. Scenario: local/framework-recon. Automatic ban tri ...
show more
CrowdSec detected Web application reconnaissance. Scenario: local/framework-recon. Automatic ban triggered. Detection time (UTC): 2026-08-21T22:52:00.6051805Z. Context: http_status=404
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-21 21:18:34
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 74.122.58.39 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 74.122.58.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 17:18:28.769143 2026] [security2:error] [pid 11995:tid 11995] [client 74.122.58.39:23593] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.coloradofingerprinting.com"] [uri "/.env"] [unique_id "aojApJTVl-xWLOM0Bd3EywAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-21 20:16:56
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 74.122.58.39 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 74.122.58.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 16:16:49.956196 2026] [security2:error] [pid 10554:tid 10554] [client 74.122.58.39:48887] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.cfedwest.com"] [uri "/.env"] [unique_id "aoiyMfNdbUVWojOvdabpwwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Showing 1 to
8
of 8 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown π©
Recently Reported IPs: