AbuseIPDB » 104.207.32.116
104.207.32.116 was found in our database!
This IP was reported 168 times. Confidence of
Abuse
is 10% : ?
ISP
3xK Tech GmbH
Usage Type
Data Center/Web Hosting/Transit
ASN
AS200373
Domain Name
3xktech.cloud
Country
๐บ๐ธ
United States of America
City
Ashburn, Virginia
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 104.207.32.116 :
This IP address has been reported a total of
168
times from
27 distinct
sources.
104.207.32.116 was first reported on
June 7th 2024 , and the most recent report was
6 days ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐บ๐ธ
Axel
2026-06-14 09:35:19
(6 days ago)
Blocked by UFW on MVI [443/tcp] | SPT: 38825 | TTL: 55 | LEN: 60 | TOS: 0x00 โข Reported by: github.c ...
show more
Blocked by UFW on MVI [443/tcp] | SPT: 38825 | TTL: 55 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Anonymous
2026-05-04 19:37:16
(1 month ago)
Forum/form spam
Web Spam
Anonymous
2026-04-06 20:39:25
(2 months ago)
Forum/form spam
Web Spam
๐ฑ๐ป
garmtech.com
2026-03-18 17:35:56
(3 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 19-35.104.207.32.116.web-spamm ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 19-35.104.207.32.116.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-14 17:21:42
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 104.207.32.116 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 104.207.32.116 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 12:21:35.942592 2026] [security2:error] [pid 25715:tid 25721] [client 104.207.32.116:37351] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||npaccountants.org|F|2"] [data ".htm.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "npaccountants.org"] [uri "/index.htm.bak"] [unique_id "aZCvH9HShhUqtq8Hkb83RQAAAIM"], referer: https://npaccountants.org/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
oncord
2026-01-31 18:55:03
(4 months ago)
Form spam
Web Spam
๐ฌ๐ง
oncord
2026-01-22 14:50:54
(4 months ago)
Form spam
Web Spam
๐จ๐ญ
backslash
2026-01-17 16:05:04
(5 months ago)
block ruleset 6A1105329D233F6F53B9B61CE056BD4DAAE75AB4
Web Spam
๐ง๐ช
Ivo Vynckier
2026-01-06 15:59:00
(5 months ago)
104.207.32.116 - mailto [06/Jan/2026:00:21:19 +0100] "POST /?subject=Feedback%20Web%20Site%20'How%20 ...
show more
104.207.32.116 - mailto [06/Jan/2026:00:21:19 +0100] "POST /?subject=Feedback%20Web%20Site%20'How%20OCR%20Works' HTTP/1.1" 301 298 "https://how-ocr-works.com/contact.html" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36"
104.207.32.116 - - [06/Jan/2026:00:21:20 +0100] "GET /?subject=Feedback%20Web%20Site%20'How%20OCR%20Works' HTTP/1.1" 200 3517 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36"
show less
Email Spam
๐ฌ๐ง
oncord
2026-01-05 08:07:17
(5 months ago)
Form spam
Web Spam
๐บ๐ธ
oncord
2025-12-19 13:54:18
(6 months ago)
Form spam
Web Spam
๐ฆ๐บ
oncord
2025-12-17 05:59:24
(6 months ago)
Form spam
Web Spam
๐ฆ๐บ
oncord
2025-12-11 14:09:41
(6 months ago)
Form spam
Web Spam
๐ฉ๐ช
Packets-Decreaser.NET
2025-11-30 13:09:59
(6 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐ฆ๐บ
oncord
2025-11-30 00:56:41
(6 months ago)
Form spam
Web Spam
Showing 1 to
15
of 168 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: