This IP address has been reported a total of
41
times from
27 distinct
sources.
103.161.70.50 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Germany
with 5
reports;
United States of America
with 5
reports;
Czechia
with 2
reports.
The most common categories in these recent reports were:
Brute-Force
7
times;
Bad Web Bot
7
times;
Web App Attack
6
times;
Hacking
4
times;
Exploited Host
3
times;
Other
3
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Repeated requests classified as pathological web bot behavior, for example: /[redacted]?topics%5B1%5 ...
show moreRepeated requests classified as pathological web bot behavior, for example: /[redacted]?topics%5B1%5D=40&topics%5B2%5D=56&topics%5B3%5D=51&topics%5B4%5D=46 (HTTP/2.0 port 443, user agent: "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/26.2 Safari/605.1.15")
show less
DDoS Attack
Bad Web Bot
Anonymous
IP matched detection query 20 more in short time bad rqs.
[TueSep2916:34:09.3576582026][security2:error][pid2380982:tid2381024][client103.161.70.50:0]ModSecur ...
show more[TueSep2916:34:09.3576582026][security2:error][pid2380982:tid2381024][client103.161.70.50:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"170\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"gmint.ch\"][uri\"/xmlrpc.php\"][unique_id\"arvMYbE9GV7ZHOuwtpbvOQAAAEg\"]
show less
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after high AbuseIPDB reputation + local blo ...
show moreKingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after high AbuseIPDB reputation + local block policy. Evidence: High Abuse + Suspicion (60, Abuse: 50)
show less
Hacking
Exploited Host
Web App Attack
Anonymous
(wordpress) Failed wordpress login from 103.161.70.50 (BD/Bangladesh/-)
Client failed challenge verification, marked as suspicious. HTTP request received over TCP on applic ...
show moreClient failed challenge verification, marked as suspicious. HTTP request received over TCP on application ports 80/443. Observed 2026-09-10T23:20:00Z.
show less
BnL006: Obvious dumb distributed botnet crawler stepping into honeypot trap, violating robots.txt an ...
show moreBnL006: Obvious dumb distributed botnet crawler stepping into honeypot trap, violating robots.txt and meta directives
103.161.70.50 443 - [04/Sep/2026:15:56:14 +0000] "GET [redacted] HTTP/1.1" 410 6156 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/116.0.0.0 Safari/537.36"
show less
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Sa ...
show moreMozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 Edg/145.0.0.0
show less
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to ...
show moreDistributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to bypass firewall/robots.txt restrictions in printer-friendly.asp
show less