This IP address has been reported a total of
16
times from
12 distinct
sources.
106.75.168.250 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 106.75.168.250 (CN/China/fpjjhzq.cn): ...
show more(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 106.75.168.250 (CN/China/fpjjhzq.cn): 2 in the last 3600 secs (0-196)
show less
Detectors: [NGINX] | Reasons: Nginx: Default server trap hit | Evidence: High-Criminality-Signature ...
show moreDetectors: [NGINX] | Reasons: Nginx: Default server trap hit | Evidence: High-Criminality-Signature (p0f:*:64:0:*:mss*1,9:mss,sok,ts,nop,ws:df,id+:0 - Ratio:0.94), OS-Signature-Mismatch (UA:Windows/p0f:Linux) | UA: Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36 | TCP Fingerprint: Modern Linux (Kernel 3.x+) (Link:PPPoE, Uptime:13710m)
show less
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 106.75.168.250 (CN/China/fpjjhzq.cn): ...
show more(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 106.75.168.250 (CN/China/fpjjhzq.cn): 1 in the last 3600 secs (0-195)
show less
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: CHALLENGE
Protocol: HTTP/2 (GET met ...
show moreTriggered Cloudflare WAF (firewallCustom) from CN.
Action taken: CHALLENGE
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 106.75.168.250 (CN/China/fpjjhzq.cn): ...
show more(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 106.75.168.250 (CN/China/fpjjhzq.cn): 2 in the last 3600 secs (0-196)
show less
HTTP header is restricted by policy (/accept-charset/). String match within "/accept-charset/ /conte ...
show moreHTTP header is restricted by policy (/accept-charset/). String match within "/accept-charset/ /content-encoding/ /proxy/ /lock-token/ /content-range/ /if/" at TX:header_name_accept-charset. (920450-165)
show less
2026-07-20T22:08:47Z - Recognized attacks\bad behavior from IP address 106.75.168.250 on port 443\80 ...
show more2026-07-20T22:08:47Z - Recognized attacks\bad behavior from IP address 106.75.168.250 on port 443\80 (4 daily hits): client denied by server configuration
show less
Port Scan
Hacking
SQL Injection
Brute-Force
Web App Attack
2026-07-08 11:43:12 | / | [] | Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) C ...
show more2026-07-08 11:43:12 | / | [] | Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36
show less