This IP address has been reported a total of
24
times from
14 distinct
sources.
103.189.159.139 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
United States of America
with 8
reports;
Germany
with 3
reports;
Italy
with 2
reports.
The most common categories in these recent reports were:
Bad Web Bot
9
times;
Brute-Force
6
times;
DDoS Attack
5
times;
Web App Attack
4
times;
Port Scan
2
times;
Other
4
times.
Old Reports
The most recent abuse report for this IP address is from
. It is possible that this IP is no
longer involved in abusive activities.
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after high AbuseIPDB reputation + local blo ...
show moreKingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after high AbuseIPDB reputation + local block policy. Evidence: High Abuse + Suspicion (64, Abuse: 58)
show less
Unauthorized VPN login attempts: 1 attempts were recorded from 103.189.159.139
2026-09-30T13:14:03+0 ...
show moreUnauthorized VPN login attempts: 1 attempts were recorded from 103.189.159.139
2026-09-30T13:14:03+02:00 vpn Access-Reject 'serakova' station: 103.189.159.139 auth-type: PAP realm: vse.cz nas: <redacted> called: <redacted> => address-pool: zam_pool msg: '<redacted>'
show less
This address is taking part in a large-scale, distributed L7 DDoS against an online shop: automated ...
show moreThis address is taking part in a large-scale, distributed L7 DDoS against an online shop: automated requests to the shop's search, filter and sort pages โ the most expensive pages to serve โ sent with no referer and with no page asset loaded, so no browser is behind them. Each participating address sends only one or two such requests, but we count them by the million: a botnet, compromised devices, or abused proxies. The address is blocked. An investigation into what exactly sends these requests from your network (malware, an open proxy, a rented device) would help stop the attack at its source. | path: /141-bons-plans-gravel | query: order=product.position.asc&productListView=grid&q=Mat%C3%A9riau-Aluminium/Marque-Lapierre/Disponibilit%C3%A9-En+stock | 2026-09-27 16:04 UTC
show less
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Sa ...
show moreMozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36 Edg/144.0.0.0
show less
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Sa ...
show moreMozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36
show less
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Sa ...
show moreMozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36 Edg/144.0.0.0
show less
Repeated requests classified as pathological web bot behavior, for example: /[redacted]?topics%5B0%5 ...
show moreRepeated requests classified as pathological web bot behavior, for example: /[redacted]?topics%5B0%5D=29&topics%5B1%5D=50&topics%5B2%5D=53&topics%5B3%5D=63 (HTTP/2.0 port 443, user agent: "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:144.0) Gecko/20100101 Firefox/144.0")
show less
DDoS Attack
Bad Web Bot
Anonymous
denied traffic to a non-approved destination port. destination port 25.
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Sa ...
show moreMozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36
show less