This IP address has been reported a total of
8
times from
7 distinct
sources.
106.55.54.122 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(modsec_5015) ModSec 5015: Suspicious User-Agent from 106.55.54.122 (CN/China/-): 1 in the last 3600 ...
show more(modsec_5015) ModSec 5015: Suspicious User-Agent from 106.55.54.122 (CN/China/-): 1 in the last 3600 secs (0-195)
show less
SecureLeaf CTI: high-volume automated enumeration of our sinkhole endpoint (/sink.html) - 62 request ...
show moreSecureLeaf CTI: high-volume automated enumeration of our sinkhole endpoint (/sink.html) - 62 requests with a single static user-agent and no referrer, part of a coordinated multi-host crawl of defensive infrastructure (advisory SL-ADV-2026-WP-001). Non-organic traffic. Defensive report from verified honeypot/sinkhole telemetry; logs retained.
show less
[SecureLeaf/Dispensight] Automated high-volume polling of sinkhole endpoint /sink.html. 35 requests ...
show more[SecureLeaf/Dispensight] Automated high-volume polling of sinkhole endpoint /sink.html. 35 requests 01:28-17:05 UTC-4, no Referer. Member of a 63-node distributed cluster sharing one byte-identical User-Agent across 21 distinct /16 prefixes - deliberate source diversification, not organic traffic. Endpoint is a sinkhole for Omegatech C2 domain gettrumpmemestrendingtokens.com (SL-2026-004). Source: secureleaf.dispensight.com SSL log 2026-08-29.
show less