This IP address has been reported a total of
74
times from
41 distinct
sources.
8.208.79.190 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
[OGWAF] bad_reputation attack blocked | severity: high | GET / | UA: Mozilla/5.0 (Windows NT 10.0; W ...
show more[OGWAF] bad_reputation attack blocked | severity: high | GET / | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko; compatible; BuiltWi
show less
(modsec_5015) ModSec 5015: Suspicious User-Agent from 8.208.79.190 (GB/United Kingdom/-): 1 in the l ...
show more(modsec_5015) ModSec 5015: Suspicious User-Agent from 8.208.79.190 (GB/United Kingdom/-): 1 in the last 3600 secs (0-196)
show less
(modsec_5015) ModSec 5015: Suspicious User-Agent from 8.208.79.190 (GB/United Kingdom/-): 1 in the l ...
show more(modsec_5015) ModSec 5015: Suspicious User-Agent from 8.208.79.190 (GB/United Kingdom/-): 1 in the last 3600 secs (0-195)
show less
[SatAug2203:04:10.9132532026][security2:error][pid109546:tid110645][client8.208.79.190:0]ModSecurity ...
show more[SatAug2203:04:10.9132532026][security2:error][pid109546:tid110645][client8.208.79.190:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\^/wp-content/plugins/[\^/] /\(readme\\\\\\\\.txt\|changelog\\\\\\\\.txt\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"482\"][id\"960828\"][msg\"WordPresspluginenumerationblocked\"][hostname\"xn--tirascarph-ieb.ch\"][uri\"/wp-content/plugins/woocommerce/readme.txt\"][unique_id\"aoj1iuDfqbOYZzxFi-o4xQAAAVc\"]
show less
Abusive crawler: User-Agent on the known-bad list or claiming a placeholder identity | ua: Mozilla/5 ...
show moreAbusive crawler: User-Agent on the known-bad list or claiming a placeholder identity | ua: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko; compatible; BuiltWith/1.4; rb.gy/xprgqj) Chrome | path: / (+1 more)
show less
Abusive crawler: User-Agent on the known-bad list or claiming a placeholder identity | ua: Mozilla/5 ...
show moreAbusive crawler: User-Agent on the known-bad list or claiming a placeholder identity | ua: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko; compatible; BuiltWith/1.4; rb.gy/xprgqj) Chrome | path: /
show less
Malicious request blocked by CrowdSec on gastro-prod1.boreus.de
Bad Web Bot
Web App Attack
Anonymous
Bot / scanning and/or hacking attempts: GET / HTTP/1.1, GET /login.php HTTP/1.1, GET /js/jquery-3.3. ...
show moreBot / scanning and/or hacking attempts: GET / HTTP/1.1, GET /login.php HTTP/1.1, GET /js/jquery-3.3.1.min.js HTTP/1.1, GET /js/bootstrap.min.js HTTP/1.1, GET /js/site.js HTTP/1.1, GET /login.php?reset=true HTTP/1.1, GET /ads.txt HTTP/1.1
show less
CrowdSec local HTTP alert
scenario: crowdsecurity/http-bad-user-agent
alert_id: 4466
events: 2
creat ...
show moreCrowdSec local HTTP alert
scenario: crowdsecurity/http-bad-user-agent
alert_id: 4466
events: 2
created_at: 2026-08-20T01:43:33Z
message: Ip 8.208.79.190 performed 'crowdsecurity/http-bad-user-agent' (2 events over 2.07432407s) at 2026-08-20 01:43:32.719095947 +0000 UTC
target_uri: ["/","/robots.txt"]
method: ["GET"]
status: ["200","404"]
user_agent: ["Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko; compatible; BuiltWith/1.4; rb.gy/xprgqj) Chrome/124.0.0.0 Safari/537.36"]
show less
(modsec_5015) ModSec 5015: Suspicious User-Agent from 8.208.79.190 (GB/United Kingdom/-): 1 in the l ...
show more(modsec_5015) ModSec 5015: Suspicious User-Agent from 8.208.79.190 (GB/United Kingdom/-): 1 in the last 3600 secs (0-196)
show less
Hacking
Showing 1 to
15
of 74 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ