This IP address has been reported a total of
52
times from
15 distinct
sources.
218.252.242.195 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
FortiWeb WAF: 14 attacks detected. Threat Score: 5600. Types: Client Management(7), Block IP List(7) ...
show moreFortiWeb WAF: 14 attacks detected. Threat Score: 5600. Types: Client Management(7), Block IP List(7). Origin: Hong Kong.
show less
[MonAug1018:39:52.2016362026][security2:error][pid917102:tid917202][client218.252.242.195:0]ModSecur ...
show more[MonAug1018:39:52.2016362026][security2:error][pid917102:tid917202][client218.252.242.195:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(curl\|wget\|python\|nikto\|sqlmap\|acunetix\|fimap\|dirbuster\|cmsmap\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"217\"][id\"990210\"][msg\"Suspicioususer-agentblocked\"][hostname\"www.galardi.ch\"][uri\"/wp-content/uploads/2014/07/16-florence-view-300x196.jpg\"][unique_id\"ann-2OJss_yeIZGK7eQDZwAAAQw\"]
show less
Port Scan
Brute-Force
Web App Attack
Anonymous
FortiWeb WAF: 10 attacks detected. Threat Score: 13200. Types: Client Management(5), Block IP List(5 ...
show moreFortiWeb WAF: 10 attacks detected. Threat Score: 13200. Types: Client Management(5), Block IP List(5). Origin: Hong Kong.
show less
[MonAug1006:48:29.0782852026][security2:error][pid2280513:tid2280620][client218.252.242.195:0]ModSec ...
show more[MonAug1006:48:29.0782852026][security2:error][pid2280513:tid2280620][client218.252.242.195:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"python-requests/\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"203\"][id\"332039\"][rev\"4\"][msg\"Atomicorp.comWAFRules:SuspiciousUnusualUserAgent\(python-requests\).Disablethisruleifyouusepython-requests/.\"][severity\"CRITICAL\"][hostname\"whatsdecor.ch\"][uri\"/wp-content/uploads/2017/10/12456.png\"][unique_id\"anlYHQO3_TPcEjaUf4uIjgAAAUQ\"]
show less
Hacking
Web App Attack
Anonymous
FortiWeb WAF: 88 attacks detected. Threat Score: 16600. Types: Client Management(44), Block IP List( ...
show moreFortiWeb WAF: 88 attacks detected. Threat Score: 16600. Types: Client Management(44), Block IP List(44). Origin: Hong Kong.
show less
[FriAug0709:49:25.4387452026][security2:error][pid1281976:tid1282098][client218.252.242.195:0]ModSec ...
show more[FriAug0709:49:25.4387452026][security2:error][pid1281976:tid1282098][client218.252.242.195:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"python-requests/\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"203\"][id\"332039\"][rev\"4\"][msg\"Atomicorp.comWAFRules:SuspiciousUnusualUserAgent\(python-requests\).Disablethisruleifyouusepython-requests/.\"][severity\"CRITICAL\"][hostname\"whatsdecor.ch\"][uri\"/wp-content/uploads/2017/11/13839.png\"][unique_id\"anWOBYIz59KInCm9iUyeZQAAAAk\"]
show less
[FriAug0706:35:20.8228912026][security2:error][pid673424:tid673520][client218.252.242.195:0]ModSecur ...
show more[FriAug0706:35:20.8228912026][security2:error][pid673424:tid673520][client218.252.242.195:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(curl\|wget\|python\|nikto\|sqlmap\|acunetix\|fimap\|dirbuster\|cmsmap\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"217\"][id\"990210\"][msg\"Suspicioususer-agentblocked\"][hostname\"www.giuseppeasaro.com\"][uri\"/wp-content/uploads/2021/01/xlogo-nero.png.pagespeed.ic.OLpV6NiUbK.png\"][unique_id\"anVgiE_bhfPlV84W6iIyAQAAAMo\"]
show less
[WedAug0505:54:37.0313342026][security2:error][pid3684718:tid3684965][client218.252.242.195:0]ModSec ...
show more[WedAug0505:54:37.0313342026][security2:error][pid3684718:tid3684965][client218.252.242.195:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"python-requests/\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"203\"][id\"332039\"][rev\"4\"][msg\"Atomicorp.comWAFRules:SuspiciousUnusualUserAgent\(python-requests\).Disablethisruleifyouusepython-requests/.\"][severity\"CRITICAL\"][hostname\"whatsdecor.ch\"][uri\"/wp-content/uploads/2017/09/10836-1.png\"][unique_id\"anKz_QylaQycn2TnCIpzCQAAAIs\"]
show less