This IP address has been reported a total of
80
times from
37 distinct
sources.
103.129.210.54 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Sa ...
show moreMozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 Edg/145.0.0.0
show less
UDP flood (DDoS) vs AS215599: 26 pkts / 0.04 MB to UDP 80/8443 across 25 dst IP(s), 2026-08-19 21:46 ...
show moreUDP flood (DDoS) vs AS215599: 26 pkts / 0.04 MB to UDP 80/8443 across 25 dst IP(s), 2026-08-19 21:46 to 2026-08-20 00:36 CEST. No legitimate service on these UDP ports (7-day baseline 0 GB/day). Carpet-bombing of a /24, likely botnet-compromised host. Evidence: sFlow + hardware ACL counters.
show less
UDP flood (DDoS) vs AS215599: 26 pkts / 0.04 MB to UDP 80/8443 across 25 dst IP(s), 2026-08-19 21:46 ...
show moreUDP flood (DDoS) vs AS215599: 26 pkts / 0.04 MB to UDP 80/8443 across 25 dst IP(s), 2026-08-19 21:46 to 2026-08-20 00:36 CEST. No legitimate service on these UDP ports (7-day baseline 0 GB/day). Carpet-bombing of a /24, likely botnet-compromised host. Evidence: sFlow + hardware ACL counters.
show less
2026-08-08T04:10:11 103.129.210.54 GET /Photos/Vacation/2014-11%20Japan/raw/IMG_9474.CR2.xmp Mozilla ...
show more2026-08-08T04:10:11 103.129.210.54 GET /Photos/Vacation/2014-11%20Japan/raw/IMG_9474.CR2.xmp Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36
...
show less
BnL006: Obvious dumb distributed botnet crawler stepping into honeypot trap, violating robots.txt an ...
show moreBnL006: Obvious dumb distributed botnet crawler stepping into honeypot trap, violating robots.txt and meta directives
103.129.210.54 443 - [07/Aug/2026:05:43:33 +0000] "GET [redacted] HTTP/1.1" 200 6868 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
show less
2026-08-07T03:35:57 103.129.210.54 GET /Photos/Vacation/2012-08%20Japan-Kauai/raw/IMG_8994.CR2.xmp M ...
show more2026-08-07T03:35:57 103.129.210.54 GET /Photos/Vacation/2012-08%20Japan-Kauai/raw/IMG_8994.CR2.xmp Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 Edg/145.0.0.0
...
show less
CrowdSec: REPEAT OFFENDER (previously banned, came back) - distributed L7 HTTP flood on WordPress 'T ...
show moreCrowdSec: REPEAT OFFENDER (previously banned, came back) - distributed L7 HTTP flood on WordPress 'The Events Calendar' AJAX endpoints (request_format~json) - DDoS | req: /calendrier-2/action~agenda/time_limit~1763766000/cat_ids~158,141,172,191/tag_ids~631,449,428,716,466,438/request_format~json/ | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36
show less
DDOS from known botnet. Scraping ai1ec data from wordpress website. Using randomly generated user ag ...
show moreDDOS from known botnet. Scraping ai1ec data from wordpress website. Using randomly generated user agents.
show less