This IP address has been reported a total of
25
times from
8 distinct
sources.
49.65.18.6 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
United States of America
with 9
reports;
Canada
with 4
reports;
Germany
with 2
reports.
The most common categories in these recent reports were:
Bad Web Bot
17
times;
Exploited Host
8
times;
DDoS Attack
8
times;
Brute-Force
1
time.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 49.65.18.6 (CN/China ...
show more(apache-useragents) Failed apache-useragents trigger with match [redacted] from 49.65.18.6 (CN/China/sogouspider-49-65-18-6.crawl.sogou.com)
show less
HTTP application-layer DoS / botnet traffic from 49.65.18.6: repeated high-cost dynamic page and fee ...
show moreHTTP application-layer DoS / botnet traffic from 49.65.18.6: repeated high-cost dynamic page and feed requests (profile/tag views, forums, tracker, RSS) at abusive rates via completed TCP/HTTPS. Likely compromised end-user host.
show less
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 49.65.18.6 (CN/China ...
show more(apache-useragents) Failed apache-useragents trigger with match [redacted] from 49.65.18.6 (CN/China/sogouspider-49-65-18-6.crawl.sogou.com)
show less
Blocked abusive HTTP application-layer DoS / botnet traffic from 49.65.18.6: traffic from this addre ...
show moreBlocked abusive HTTP application-layer DoS / botnet traffic from 49.65.18.6: traffic from this address continues high-cost dynamic page and feed requests at abusive rates via TCP/HTTPS despite edge block responses. Likely compromised end-user host.
show less
(mod_security) mod_security (id:980001) triggered by 49.65.18.6 (CN/China/sogouspider-49-65-18-6.cra ...
show more(mod_security) mod_security (id:980001) triggered by 49.65.18.6 (CN/China/sogouspider-49-65-18-6.crawl.sogou.com): 5 in the last 3600 secs; ID: Clar
show less
Abusive crawler: User-Agent on the known-bad list or claiming a placeholder identity | ua: Sogou web ...
show moreAbusive crawler: User-Agent on the known-bad list or claiming a placeholder identity | ua: Sogou web spider/4.0(+http://www.sogou.com/docs/help/webmasters.htm#07) | path: /solutions/contact-center-solution-for-banking-financial-services/ | 2026-09-18 08:59 UTC
show less
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 49.65.18.6 (CN/China ...
show more(apache-useragents) Failed apache-useragents trigger with match [redacted] from 49.65.18.6 (CN/China/sogouspider-49-65-18-6.crawl.sogou.com)
show less
HTTP application-layer DoS / botnet traffic from 49.65.18.6: repeated high-cost dynamic page and fee ...
show moreHTTP application-layer DoS / botnet traffic from 49.65.18.6: repeated high-cost dynamic page and feed requests (profile/tag views, forums, tracker, RSS) at abusive rates via completed TCP/HTTPS. Likely compromised end-user host.
show less
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 49.65.18.6 (CN/China ...
show more(apache-useragents) Failed apache-useragents trigger with match [redacted] from 49.65.18.6 (CN/China/sogouspider-49-65-18-6.crawl.sogou.com)
show less
Blocked abusive HTTP application-layer DoS / botnet traffic from 49.65.18.6: traffic from this addre ...
show moreBlocked abusive HTTP application-layer DoS / botnet traffic from 49.65.18.6: traffic from this address continues high-cost dynamic page and feed requests at abusive rates via TCP/HTTPS despite edge block responses. Likely compromised end-user host.
show less
Blocked abusive HTTP application-layer DoS / botnet traffic from 49.65.18.6: traffic from this addre ...
show moreBlocked abusive HTTP application-layer DoS / botnet traffic from 49.65.18.6: traffic from this address continues high-cost dynamic page and feed requests at abusive rates via TCP/HTTPS despite edge block responses. Likely compromised end-user host.
show less
Requests sent with a known malicious or scanner user-agent | req: / | 2 distinct paths | UA: MQQBrow ...
show moreRequests sent with a known malicious or scanner user-agent | req: / | 2 distinct paths | UA: MQQBrowser/26 Mozilla/5.0 (Linux; U; Android 4.4.2; zh-cn; MB200 Build/GRJ22; CyanogenMod-7) AppleWebKit/533.1 (KHTML, like Gecko) Version/4.0 Mobile
show less
Blocked abusive HTTP application-layer DoS / botnet traffic from 49.65.18.6: traffic from this addre ...
show moreBlocked abusive HTTP application-layer DoS / botnet traffic from 49.65.18.6: traffic from this address continues high-cost dynamic page and feed requests at abusive rates via TCP/HTTPS despite edge block responses. Likely compromised end-user host.
show less
Blocked abusive HTTP application-layer DoS / botnet traffic from 49.65.18.6: traffic from this addre ...
show moreBlocked abusive HTTP application-layer DoS / botnet traffic from 49.65.18.6: traffic from this address continues high-cost dynamic page and feed requests at abusive rates via TCP/HTTPS despite edge block responses. Likely compromised end-user host.
show less