This IP address has been reported a total of
24
times from
16 distinct
sources.
37.239.61.22 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Web bot: denial-of-service flood: ["Access denied with code 406 (phase 1)", "Failed to lock global m ...
show moreWeb bot: denial-of-service flood: ["Access denied with code 406 (phase 1)", "Failed to lock global mutex: Invalid argument"]
show less
UDP flood (DDoS) vs AS215599: 70 pkts / 0.1 MB to UDP 8443 across 41 dst IP(s), 2026-08-19 21:46 to ...
show moreUDP flood (DDoS) vs AS215599: 70 pkts / 0.1 MB to UDP 8443 across 41 dst IP(s), 2026-08-19 21:46 to 2026-08-20 00:36 CEST. No legitimate service on these UDP ports (7-day baseline 0 GB/day). Carpet-bombing of a /24, likely botnet-compromised host. Evidence: sFlow + hardware ACL counters.
show less
UDP flood (DDoS) vs AS215599: 70 pkts / 0.1 MB to UDP 8443 across 41 dst IP(s), 2026-08-19 21:46 to ...
show moreUDP flood (DDoS) vs AS215599: 70 pkts / 0.1 MB to UDP 8443 across 41 dst IP(s), 2026-08-19 21:46 to 2026-08-20 00:36 CEST. No legitimate service on these UDP ports (7-day baseline 0 GB/day). Carpet-bombing of a /24, likely botnet-compromised host. Evidence: sFlow + hardware ACL counters.
show less
HTTP application-layer DoS / botnet traffic from 37.239.61.22: repeated high-cost dynamic page and f ...
show moreHTTP application-layer DoS / botnet traffic from 37.239.61.22: repeated high-cost dynamic page and feed requests (profile/tag views, forums, tracker, RSS) at abusive rates via completed TCP/HTTPS. Likely compromised end-user host.
show less