Log in to view charts and search reports for this IP.
Log In
Reports Activity
Example preview
Report Categories (Last 60 Days)
Example preview
Top Reporter Countries (Last 60 Days)
Example preview
Account required for the enhanced features
Log inSign up
IP Abuse Reports for 16.216.88.132
This IP address has been reported a total of
117
times from
44 distinct
sources.
16.216.88.132 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Germany
with 28
reports;
Russian Federation
with 19
reports;
United States of America
with 18
reports.
The most common categories in these recent reports were:
Web App Attack
71
times;
Bad Web Bot
48
times;
Hacking
20
times;
Brute-Force
19
times;
Port Scan
16
times;
Other
24
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
16.216.88.132 - - [28/Sep/2026:18:24:46 +0700] "GET /analysis/theta/ws?p=5e-8&r2=0.9&rs-id=rs1125927 ...
show more16.216.88.132 - - [28/Sep/2026:18:24:46 +0700] "GET /analysis/theta/ws?p=5e-8&r2=0.9&rs-id=rs11259273 HTTP/1.1" 400 34 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Reflectionbot/1.0; +https://reflection.ai/bot) Chrome/151.0.0.0 Safari/537.36"
...
show less
Web App Attack
Anonymous
FortiWeb WAF: 154 attacks detected. Threat Score: 58400. Types: Client Management(77), Block IP List ...
show moreFortiWeb WAF: 154 attacks detected. Threat Score: 58400. Types: Client Management(77), Block IP List(77). Origin: United States.
show less
HTTP application-layer DoS / botnet traffic from 16.216.88.132: repeated high-cost dynamic page and ...
show moreHTTP application-layer DoS / botnet traffic from 16.216.88.132: repeated high-cost dynamic page and feed requests (profile/tag views, forums, tracker, RSS) at abusive rates via completed TCP/HTTPS. Likely compromised end-user host.
show less
HTTP application-layer DoS / botnet traffic from 16.216.88.132: repeated high-cost dynamic page and ...
show moreHTTP application-layer DoS / botnet traffic from 16.216.88.132: repeated high-cost dynamic page and feed requests (profile/tag views, forums, tracker, RSS) at abusive rates via completed TCP/HTTPS. Likely compromised end-user host.
show less
[Sat Sep 26 14:46:53.908762 2026] [php:error] [pid 6112] [client 16.216.88.132:53249] script '/var/w ...
show more[Sat Sep 26 14:46:53.908762 2026] [php:error] [pid 6112] [client 16.216.88.132:53249] script '/var/www/html/page.php' not found or unable to stat
...
show less