AbuseIPDB » 95.222.31.220
95.222.31.220 was found in our database!
This IP was reported 9 times. Confidence of
Abuse
is 0% : ?
ISP
Vodafone West GmbH
Usage Type
Fixed Line ISP
ASN
AS3209
Hostname(s)
ip-095-222-031-220.um34.pools.vodafone-ip.de
Domain Name
unitymedia.de
Country
π©πͺ
Germany
City
Paderborn, North Rhine-Westphalia
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 95.222.31.220 :
This IP address has been reported a total of
9
times from
6 distinct
sources.
95.222.31.220 was first reported on
November 25th 2025 , and the most recent report was
6 months ago .
Old Reports:
The most recent abuse report for this IP address is from
6 months ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
π¨π
backslash
2025-11-28 01:30:06
(6 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
π©πͺ
kjaerulff
2025-11-27 19:01:15
(6 months ago)
Failed Wordpress login using wp-login.php (ip-095-222-031-220.um34.pools.vodafone-ip.de)
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-27 17:51:28
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 95.222.31.220 (ip-095-222-031-220.um34.pools.vo ...
show more
(mod_security) mod_security (id:225170) triggered by 95.222.31.220 (ip-095-222-031-220.um34.pools.vodafone-ip.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 27 12:51:22.787992 2025] [security2:error] [pid 15734:tid 15734] [client 95.222.31.220:55308] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||berklie.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "berklie.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aSiPmjq4T7OiVjoftf0O7QAAAAo"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 17:02:09
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 95.222.31.220 (ip-095-222-031-220.um34.pools.vo ...
show more
(mod_security) mod_security (id:225170) triggered by 95.222.31.220 (ip-095-222-031-220.um34.pools.vodafone-ip.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 12:02:02.857340 2025] [security2:error] [pid 14899:tid 14915] [client 95.222.31.220:63153] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||apada.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "apada.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aScyilRsdSnwY60Mp31b9gAAAI0"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-26 13:21:23
(6 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
π«π·
Sklurk
2025-11-26 04:58:06
(7 months ago)
Web App Attack
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 00:06:42
(7 months ago)
(mod_security) mod_security (id:225170) triggered by 95.222.31.220 (ip-095-222-031-220.um34.pools.vo ...
show more
(mod_security) mod_security (id:225170) triggered by 95.222.31.220 (ip-095-222-031-220.um34.pools.vodafone-ip.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 19:06:36.213565 2025] [security2:error] [pid 5625:tid 5625] [client 95.222.31.220:63182] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||horizontravelgroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "horizontravelgroup.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aSZEjL0DkuLspBOvgCvxtgAAAAA"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
si0077
2025-11-25 20:02:00
(7 months ago)
A user with IP address 95.222.31.220 has been locked out from signing in or using the password recov ...
show more
A user with IP address 95.222.31.220 has been locked out from signing in or using the password recovery form for the following reason: Used an invalid username 'info' to try to sign in.
show less
Hacking
π©πͺ
kjaerulff
2025-11-25 18:53:27
(7 months ago)
Failed Wordpress login using wp-login.php (ip-095-222-031-220.um34.pools.vodafone-ip.de)
Web App Attack
Showing 1 to
9
of 9 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown π©
Recently Reported IPs: