This IP address has been reported a total of
21
times from
13 distinct
sources.
200.24.132.161 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
United States of America
with 6
reports;
France
with 3
reports;
Finland
with 1
report.
The most common categories in these recent reports were:
Bad Web Bot
7
times;
Web App Attack
5
times;
Brute-Force
4
times;
DDoS Attack
3
times;
Exploited Host
2
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0. ...
show moreMozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36
show less
UDP flood (DDoS) vs AS215599: 570 pkts / 0.82 MB to UDP 80/8443 across 301 dst IP(s), 2026-08-19 21: ...
show moreUDP flood (DDoS) vs AS215599: 570 pkts / 0.82 MB to UDP 80/8443 across 301 dst IP(s), 2026-08-19 21:46 to 2026-08-20 00:36 CEST. No legitimate service on these UDP ports (7-day baseline 0 GB/day). Carpet-bombing of a /24, likely botnet-compromised host. Evidence: sFlow + hardware ACL counters.
show less
UDP flood (DDoS) vs AS215599: 570 pkts / 0.82 MB to UDP 80/8443 across 301 dst IP(s), 2026-08-19 21: ...
show moreUDP flood (DDoS) vs AS215599: 570 pkts / 0.82 MB to UDP 80/8443 across 301 dst IP(s), 2026-08-19 21:46 to 2026-08-20 00:36 CEST. No legitimate service on these UDP ports (7-day baseline 0 GB/day). Carpet-bombing of a /24, likely botnet-compromised host. Evidence: sFlow + hardware ACL counters.
show less
[Mon Sep 15 13:03:28.217228 2025] [security2:error] [pid 3139950:tid 140266048583360] [client 200.24 ...
show more[Mon Sep 15 13:03:28.217228 2025] [security2:error] [pid 3139950:tid 140266048583360] [client 200.24.132.161:19129] ModSecurity: Access denied with code 403 (phase 1). Match of "ipMatch 103.166.156.58" against "REMOTE_ADDR" required. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "372"] [id "440006"] [msg "Connection Close Header"] [data " Matched Data ARGS charset: - Matched Data TX.1: found within Content-Type multipart form Matched Data: close found within REMOTE_ADDR: 200.24.132.161 request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561326-infografis-himbauan-waspada-suhu-udara-panas HTTP/1.1 Request URI RAW = /index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561326-infografis-himbauan-waspada-suhu-udara-panas Request Basename = 555561326-infografis-himbauan-waspada-suhu-ud..."] [hostname "staklim-malang.info"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-kl
...
show less