Log in to view charts and search reports for this IP.
Log In
No reports in the last 60 days
95.164.159.197 has been reported 26
times. The most recent report is from
.
The full history is preserved below and remains searchable. A
0% score reflects the absence of recent activity, but
this is not a guarantee that earlier reports were invalid. Abuse confidence score decays,
naturally, over time, when the abusive activity stops.
IP Abuse Reports for 95.164.159.197:
This IP address has been reported a total of
26
times from
15 distinct
sources.
95.164.159.197 was first reported on
, and the most recent report was
.
Unauthorized VPN login attempts: 1 attempts were recorded from 95.164.159.197
2026-07-03T11:50:37+02 ...
show moreUnauthorized VPN login attempts: 1 attempts were recorded from 95.164.159.197
2026-07-03T11:50:37+02:00 vpn Access-Reject 'jwingate' station: 95.164.159.197 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Unauthorized VPN login attempts: 1 attempts were recorded from 95.164.159.197
2026-06-23T21:05:16+02 ...
show moreUnauthorized VPN login attempts: 1 attempts were recorded from 95.164.159.197
2026-06-23T21:05:16+02:00 vpn Access-Reject 'pschnee' station: 95.164.159.197 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Attempted brute force login to web vpn 4 time(s); last attempt for 2025.11.21 is noted in report tim ...
show moreAttempted brute force login to web vpn 4 time(s); last attempt for 2025.11.21 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
This IP was involved in a brute force and password spray attack.
(mod_security) mod_security (id:210730) triggered by 95.164.159.197 (-): 1 in the last 300 secs; Por ...
show more(mod_security) mod_security (id:210730) triggered by 95.164.159.197 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 04 01:41:21.569218 2025] [security2:error] [pid 7421:tid 7421] [client 95.164.159.197:43370] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||puduspoems.com|F|2"] [data ".dll"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "puduspoems.com"] [uri "/web/20140107222105/http:/wwp.icq.com/scripts/WWPMsg.dll"] [unique_id "aQmgEYTU9EaXJn2p7O74rgAAAB0"], referer: https://puduspoems.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
Web Attack Palo Alto Networks GlobalProtect Portal Login Attempt
Web App Attack
Anonymous
Attempted brute force login to web vpn 3 time(s); last attempt for 2025.10.27 is noted in report tim ...
show moreAttempted brute force login to web vpn 3 time(s); last attempt for 2025.10.27 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
Attempted brute force login to web vpn 3 time(s); last attempt for 2025.10.23 is noted in report tim ...
show moreAttempted brute force login to web vpn 3 time(s); last attempt for 2025.10.23 is noted in report timestamp
show less