AbuseIPDB » 85.239.149.34
85.239.149.34 was found in our database!
This IP was reported 6 times. Confidence of
Abuse
is 30% : ?
ISP
DEDIK SERVICES LIMITED
Usage Type
Data Center/Web Hosting/Transit
ASN
AS207043
Domain Name
dedik.io
Country
๐ฉ๐ช
Germany
City
Frankfurt am Main, Hesse
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 85.239.149.34 :
This IP address has been reported a total of
6
times from
5 distinct
sources.
85.239.149.34 was first reported on
May 26th 2026 , and the most recent report was
1 day ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
2026-06-13 04:41:26
(1 day ago)
85.239.149.34 - - [13/Jun/2026:06:41:23 +0200] "GET /wp-content/uploads/*/10/fond-3.webp HTTP/1.1" 4 ...
show more
85.239.149.34 - - [13/Jun/2026:06:41:23 +0200] "GET /wp-content/uploads/*/10/fond-3.webp HTTP/1.1" 404 29755
85.239.149.34 - - [13/Jun/2026:06:41:24 +0200] "GET /wp-content/uploads/2025%27EXTRACTVALUE%288262%2CCONCAT%280x7e%2C%28SELECT%2F%2A%2A%2F%28ELT%288262=8262%2C1%29%29%29%2C0x7e%29%29--%20-/10/fond-3.webp HTTP/1.1" 404 2103
85.239.149.34 - - [13/Jun/2026:06:41:24 +0200] "GET /wp-content/uploads/2025%27%25E%25x%25T%25R%25a%25C%25T%25v%25A%25l%25U%25E%25%28%253%254%258%259%25%2C%25%2F%25%2A%25%21%255%250%250%250%250%25c%25o%25n%25C%25A%25t%25%2A%25%2F%25%28%250%25X%257%25e%25%2C%25%28%25%2F%25%2A%25%21%255%250%250%250%250%25S%25e%25l%25e%25c%25T%25%2A%25%2F%25%2F%25%2A%25%2A%25%2F%25%28%25E%25L%25T%25%28%253%254%258%259%25=%253%254%258%259%25%2C%251%25%29%25%29%25%29%25%2C%250%25x%257%25E%25%29%25%29--%20-/10/fond-3.webp HTTP/1.1" 404 2103
85.239.149.34 - - [13/Jun/2026:06:41:24 +0200] "GET /wp-content/uploads/2025%29EXTRACTVALUE%2810990%2CCONCAT%280x7e%2C%28SELECT%2F%2A%2A%2F%28EL
...
show less
Web Spam
Web App Attack
Anonymous
2026-06-12 20:05:21
(2 days ago)
Aggressive web scan
Web App Attack
Anonymous
2026-06-12 17:06:09
(2 days ago)
85.239.149.34 - - [12/Jun/2026:19:05:58 +0200] "GET /wp-content/uploads/2025/10%22%28.%27%29%2Cabcd/ ...
show more
85.239.149.34 - - [12/Jun/2026:19:05:58 +0200] "GET /wp-content/uploads/2025/10%22%28.%27%29%2Cabcd/fond-3.webp HTTP/1.1" 404 29753
85.239.149.34 - - [12/Jun/2026:19:05:59 +0200] "GET /wp-content/uploads/2025%2C.%29%22%27%28abcd/10/fond-3.webp HTTP/1.1" 404 29753
85.239.149.34 - - [12/Jun/2026:19:06:01 +0200] "GET /wp-content/uploads/2025/10%27%29/fond-3.webp HTTP/1.1" 404 29753
85.239.149.34 - - [12/Jun/2026:19:06:01 +0200] "GET /wp-content/uploads/2025/10%22/fond-3.webp HTTP/1.1" 404 29753
85.239.149.34 - - [12/Jun/2026:19:06:01 +0200] "GET /wp-content/uploads/2025/10%29/fond-3.webp HTTP/1.1" 404 29753
85.239.149.34 - - [12/Jun/2026:19:06:01 +0200] "GET /wp-content/uploads/2025/10%27/fond-3.webp HTTP/1.1" 404 29753
85.239.149.34 - - [12/Jun/2026:19:06:02 +0200] "GET /wp-content/uploads/2025%29/10/fond-3.webp HTTP/1.1" 404 29753
85.239.149.34 - - [12/Jun/2026:19:06:02 +0200] "GET /wp-content/uploads/2025%27/10/fond-3.webp HTTP/1.1" 404 29753
85.239.149.34 - - [12/Jun/2026:19:06:02 +02
...
show less
Web Spam
Web App Attack
Anonymous
2026-06-11 23:06:59
(3 days ago)
Blocked: Reason='Possible SQL injection activity (848/60 min)'; Requests=848
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-05-26 21:12:51
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 85.239.149.34 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 85.239.149.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 17:12:44.563566 2026] [security2:error] [pid 9661:tid 9661] [client 85.239.149.34:51886] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bitcointoolshop.com|F|2"] [data ".dll"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bitcointoolshop.com"] [uri "/moveitisapi/moveitisapi.dll"] [unique_id "ahYMzAPPntZkAzUGiDWVUQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-05-26 20:49:38
(2 weeks ago)
(mod_security) mod_security (id:949110) triggered by 85.239.149.34 (CM/Cameroon/-): N in the last X ...
show more
(mod_security) mod_security (id:949110) triggered by 85.239.149.34 (CM/Cameroon/-): N in the last X secs
show less
Web App Attack
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: