172.215.208.198

Threat LevelMEDIUM39/1001 rule type
1 incident on record · last seen 1d ago
PTR N/A
Org / ASN Microsoft Azure Cloud (westcentralus)
Country 🇺🇸 United States
City Cheyenne, Wyoming
Timezone America/Denver

Attack Analysis

Backup & Database File Probe
This IP requested common backup file paths (.bak, .sql, .zip, wp-config.bak), hunting for database dumps or config files containing plaintext credentials. A single exposed wp-config.bak can hand an attacker full database access. This attack is automated and deliberate.

Reports (1)

Date Severity Description
3 Jun 2026 - 07:01 high Web: Backup/database file probe