This IP address has been reported a total of
247
times from
101 distinct
sources.
81.199.26.52 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(db_admin_scan) srv103 DB admin scan 81.199.26.52 (DE/Germany/-): 1 in the last 3600 secs; Ports: *; ...
show more(db_admin_scan) srv103 DB admin scan 81.199.26.52 (DE/Germany/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show moreBAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-122)
show less
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show moreBAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-193)
show less
(mod_security) mod_security (id:210492) triggered by 81.199.26.52 (-): 1 in the last 300 secs; Ports ...
show more(mod_security) mod_security (id:210492) triggered by 81.199.26.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 06 22:33:06.095716 2026] [security2:error] [pid 28949:tid 28949] [client 81.199.26.52:48309] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "darkcodedesign.com"] [uri "/wp-config.php"] [unique_id "afv54oDZW4MI4OgZZJFUYwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
Failed Wordpress Logins
Web App Attack
Anonymous
fail2ban apache-modsecurity web [msg "php scripts are not allowed here"] [uri "/wp-content/plugins/s ...
show morefail2ban apache-modsecurity web [msg "php scripts are not allowed here"] [uri "/wp-content/plugins/semrush/x.php"]
show less
Web App Attack
Showing 1 to
15
of 247 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ