This IP address has been reported a total of
11
times from
7 distinct
sources.
122.50.10.118 was first reported on
April 16th 2026 , and the most recent report was
2 days ago .
In the last 60 days, the top reporter locations were:
France
with 2
reports;
Germany
with 1
report;
Japan
with 1
report.
The most common categories in these recent reports were:
Web App Attack
2
times;
Bad Web Bot
2
times;
Port Scan
2
times;
Brute-Force
1
time;
Hacking
1
time.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
2026-09-19 21:23:02
(2 days ago)
denied traffic to a honeypot network. destination port 22.
Port Scan
Hacking
π«π·
Sklurk
2026-09-19 00:28:49
(3 days ago)
Web App Attack
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-18 23:39:08
(3 days ago)
(mod_security) mod_security (id:210350) triggered by 122.50.10.118 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 122.50.10.118 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 19:39:03.521243 2026] [security2:error] [pid 18602:tid 18621] [client 122.50.10.118:60020] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||rockabyecotons.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "rockabyecotons.com"] [uri "/"] [unique_id "aq3Ll9P4jq8Vp-Af9Zd6CgAAANE"], referer: https://cotonica.com/important-links
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
bigorre.org
2026-09-18 06:32:00
(4 days ago)
Unidentified crawling: not a self-announced bot in user-agent
Bad Web Bot
Anonymous
2026-09-16 10:32:06
(6 days ago)
suricata IPS/IDS detection, ruleset ET SCAN Potential SSH Scan
Port Scan
π«π·
Sklurk
2026-06-11 07:30:02
(3 months ago)
Web App Attack
Web App Attack
Anonymous
2026-06-09 08:51:34
(3 months ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
π©πͺ
Vegascosmetics
2026-06-08 12:06:01
(3 months ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after obfuscated encoding. Vegas Security
DDoS Attack
Hacking
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-05-13 16:41:24
(4 months ago)
(mod_security) mod_security (id:240950) triggered by 122.50.10.118 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240950) triggered by 122.50.10.118 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 13 12:41:19.901061 2026] [security2:error] [pid 2235:tid 2235] [client 122.50.10.118:18349] ModSecurity: Access denied with code 403 (phase 1). Pattern match "\\\\D" at TX:1. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "4530"] [id "240950"] [rev "2"] [msg "COMODO WAF: XSS & SQL injection vulnerability in Pragyan CMS 3.0 (CVE-2015-1471)||portalvasco.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "portalvasco.com"] [uri "/blog/2023/05/francia-retira-medidores-tramo/spotify:user:antiradares"] [unique_id "agSpr3spxfNZN8m-uUpbugAAAAs"], referer: https://portalvasco.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-03 11:47:44
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 122.50.10.118 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 122.50.10.118 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 03 07:47:40.071245 2026] [security2:error] [pid 7833:tid 7868] [client 122.50.10.118:4966] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.bh4sale.omegaoak.com|F|2"] [data ".dat"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.bh4sale.omegaoak.com"] [uri "/includes/geo/GeoIP.dat"] [unique_id "afc13Pkehw5M1iimAXYHvAAAAEI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-04-16 12:13:46
(5 months ago)
Login Too Frequent (7)
Brute-Force
Web App Attack
Showing 1 to
11
of 11 reports