AbuseIPDB » 122.246.4.6
122.246.4.6 was found in our database!
This IP was reported 9 times. Confidence of
Abuse
is 49% : ?
ISP
CHINANET-ZJ Ningbo node network
Usage Type
Data Center/Web Hosting/Transit
ASN
AS136188
Domain Name
hz.zj.cn
Country
๐จ๐ณ
China
City
Ningbo, Zhejiang
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 122.246.4.6 :
This IP address has been reported a total of
9
times from
9 distinct
sources.
122.246.4.6 was first reported on
May 30th 2026 , and the most recent report was
12 hours ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ซ๐ท
โจ
2026-07-25 01:05:19
(12 hours ago)
Domain : sdfc.org.uk
Rule : pluginsphp
2026-07-25 00:53:50 ***hidden-privacy*** POST /wp-content/plu ...
show more
Domain : sdfc.org.uk
Rule : pluginsphp
2026-07-25 00:53:50 ***hidden-privacy*** POST /wp-content/plugins/widget-1783461156/css/config_1783461156.php - 443 - 122.246.4.6 HTTP/2 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 - sdfc.org.uk 404 0 0 57549 943 1560 - -
show less
Web App Attack
๐ซ๐ท
dynamix
2026-07-21 18:02:12
(3 days ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-07-21 00:00:00
(4 days ago)
"Security violation, excess traffic against library/education infrastructure"
Brute-Force
Anonymous
2026-07-20 08:54:25
(5 days ago)
Detected Hacking, SQL Injection or general Web App Attack
Web App Attack
๐ฎ๐ณ
liveaspankaj
2026-07-19 06:12:03
(6 days ago)
DDoS attack: 110 requests in 5m (GET / or repair.php).
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-07-18 23:59:05
(6 days ago)
(mod_security) mod_security (id:210730) triggered by 122.246.4.6 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 122.246.4.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 19:58:57.094932 2026] [security2:error] [pid 8838:tid 8838] [client 122.246.4.6:48536] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cooteconsultinggroup.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cooteconsultinggroup.com"] [uri "/mailto:[email protected] "] [unique_id "alwTQZLfRXpS8JWoQyrv7gAAAAo"], referer: http://cooteconsultinggroup.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Silly Development
2026-07-14 10:18:09
(1 week ago)
Malicious activity detected from 136188 NINGBO, ZHEJIANG Province, P.R.China. towards host sillydev. ...
show more
Malicious activity detected from 136188 NINGBO, ZHEJIANG Province, P.R.China. towards host sillydev.co.uk (GET HTTP/2) @ 2026-07-14T10:18:09Z (56 occurrences)
show less
DDoS Attack
Exploited Host
๐ฒ๐พ
Rizzy
2026-07-08 20:33:40
(2 weeks ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ท๐ด
Fn4ticHz
2026-05-30 15:41:23
(1 month ago)
DDoS blocked via ZeroGuard.ID
DDoS Attack
Exploited Host
Showing 1 to
9
of 9 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: