This IP address has been reported a total of
6
times from
5 distinct
sources.
168.194.235.251 was first reported on
January 23rd 2022 , and the most recent report was
1 day ago .
In the last 60 days, the top reporter locations were:
Canada
with 1
report;
Netherlands
with 1
report;
United States of America
with 1
report.
The most common categories in these recent reports were:
Bad Web Bot
2
times;
Brute-Force
1
time;
Spoofing
1
time;
SSH
1
time;
Web App Attack
1
time;
Other
2
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ณ๐ฑ
EGP Abuse Dept
2026-10-04 04:16:58
(1 day ago)
Unauthorized connection to SSH port 22
Port Scan
Hacking
SSH
๐บ๐ธ
TPI-Abuse
2026-09-18 11:21:59
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 168.194.235.251 (host-168-194-235-251.telered.c ...
show more
(mod_security) mod_security (id:210350) triggered by 168.194.235.251 (host-168-194-235-251.telered.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 07:21:52.567980 2026] [security2:error] [pid 8542:tid 8542] [client 168.194.235.251:36069] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||andrejblatnik.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "andrejblatnik.com"] [uri "/"] [unique_id "aq0e0LG2dgXRige2Tqo95gAAAA8"], referer: https://fullbacklinkchecker.site/dir/strong-seo-backlinks-9629
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Anytech
2026-09-09 05:31:50
(3 weeks ago)
Blocked by ConnMonitor: Bad Bot
Bad Web Bot
Spoofing
๐บ๐ธ
kosada.com
2026-08-01 05:00:24
(2 months ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐ฐ๐ฌ
dos5n
2022-01-23 22:59:17
(4 years ago)
Jan 24 09:11:46 mail postfix/smtpd\[5989\]: NOQUEUE: reject: RCPT from unknown\[168.194.235.251\]: 5 ...
show more
Jan 24 09:11:46 mail postfix/smtpd\[5989\]: NOQUEUE: reject: RCPT from unknown\[168.194.235.251\]: 550 5.1.0 \<[email protected] \>: Sender address rejected: mega.kg\; from=\<[email protected] \> to=\<[email protected] \> proto=ESMTP helo=\<host-168-194-235-251.telered.com.ar\>
Jan 24 09:12:12 mail postfix/smtpd\[5986\]: NOQUEUE: reject: RCPT from unknown\[168.194.235.251\]: 550 5.1.0 \<[email protected] \>: Sender address rejected: mega.kg\; from=\<[email protected] \> to=\<[email protected] \> proto=ESMTP helo=\<host-168-194-235-251.telered.com.ar\>
Jan 24 09:12:34 mail postfix/smtpd\[6392\]: NOQUEUE: reject: RCPT from unknown\[168.194.235.251\]: 550 5.1.0 \<[email protected] \>: Sender address rejected: mega.kg\; from=\<[email protected] \> to=\<[email protected] \> proto=ESMTP helo=\<host-168-194-235-251.telered.com.ar\>
Jan 24 09:18:35 mail postfix/smtpd\[5511\]: NOQUEUE: reject: RCPT from unknown\[168.194.235.251\]: 550 5.1.0 \<[email protected] \>: Sender address rejected: me
...
show less
Brute-Force
๐ฐ๐ฌ
dos5n
2022-01-23 22:31:33
(4 years ago)
Jan 24 08:55:55 mail postfix/smtpd\[28845\]: NOQUEUE: reject: RCPT from unknown\[168.194.235.251\]: ...
show more
Jan 24 08:55:55 mail postfix/smtpd\[28845\]: NOQUEUE: reject: RCPT from unknown\[168.194.235.251\]: 550 5.1.0 \<[email protected] \>: Sender address rejected: mega.kg\; from=\<[email protected] \> to=\<[email protected] \> proto=ESMTP helo=\<host-168-194-235-251.telered.com.ar\>
Jan 24 08:56:40 mail postfix/smtpd\[20598\]: NOQUEUE: reject: RCPT from unknown\[168.194.235.251\]: 550 5.1.0 \<[email protected] \>: Sender address rejected: mega.kg\; from=\<[email protected] \> to=\<[email protected] \> proto=ESMTP helo=\<host-168-194-235-251.telered.com.ar\>
Jan 24 08:57:10 mail postfix/smtpd\[1035\]: NOQUEUE: reject: RCPT from unknown\[168.194.235.251\]: 550 5.1.0 \<[email protected] \>: Sender address rejected: mega.kg\; from=\<[email protected] \> to=\<[email protected] \> proto=ESMTP helo=\<host-168-194-235-251.telered.com.ar\>
Jan 24 08:57:44 mail postfix/smtpd\[28845\]: NOQUEUE: reject: RCPT from unknown\[168.194.235.251\]: 550 5.1.0 \<[email protected] \>: Sender address rejected: mega.kg\; fr
...
show less
Brute-Force
Showing 1 to
6
of 6 reports