This IP address has been reported a total of
21
times from
14 distinct
sources.
92.208.223.48 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
United States of America
with 6
reports;
Germany
with 3
reports;
Poland
with 3
reports.
The most common categories in these recent reports were:
Web App Attack
18
times;
Bad Web Bot
8
times;
Brute-Force
7
times;
Hacking
5
times;
SSH
2
times;
Other
3
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(mod_security) mod_security (id:210492) triggered by 92.208.223.48 (ipservice-092-208-223-048.092.20 ...
show more(mod_security) mod_security (id:210492) triggered by 92.208.223.48 (ipservice-092-208-223-048.092.208.pools.vodafone-ip.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 09:55:08.774768 2026] [security2:error] [pid 28302:tid 28302] [client 92.208.223.48:29772] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "correlationdesign.com"] [uri "/.env.txt"] [unique_id "asZPPMLmsONlqd5LqT3BqwAAADA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
harvesting of secret and configuration files (.env, .git/config, .aws/credentials, SSH keys); e.g. / ...
show moreharvesting of secret and configuration files (.env, .git/config, .aws/credentials, SSH keys); e.g. /.env.staging, /pathscan-d7b5ba2662d7-nope.env, /.env.dev. Requests blocked by our WAF (automated report).
show less