AbuseIPDB » 50.31.161.93
50.31.161.93 was found in our database!
This IP was reported 6 times. Confidence of
Abuse
is 0% : ?
ISP
Internet Utilities NA LLC
Usage Type
Data Center/Web Hosting/Transit
ASN
AS212238
Domain Name
iana.org
Country
๐ฏ๐ต
Japan
City
Tokyo, Tokyo
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 50.31.161.93 :
This IP address has been reported a total of
6
times from
6 distinct
sources.
50.31.161.93 was first reported on
July 8th 2025 , and the most recent report was
1 month ago .
Old Reports:
The most recent abuse report for this IP address is from
1 month ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
2026-07-16 08:11:00
(1 month ago)
"Packet Flood; Triggered WAF; Persistent 404 Attempts"
DDoS Attack
๐ฆ๐บ
prologic
2026-06-12 20:55:17
(2 months ago)
Coordinated application-layer DDoS against git.mills.io (self-hosted Gitea), 2026-06-12 ~20:30-21:10 ...
show more
Coordinated application-layer DDoS against git.mills.io (self-hosted Gitea), 2026-06-12 ~20:30-21:10 UTC. Deliberately expensive multi-label Gitea issue-search queries (/issues?type=all&state=closed&sort=...&labels=<multiple IDs>, ~60-113s CPU each) flooded the backend via proxy/hosting networks. ~36,700 source IPs, ~1 request per IP, identical TLS fingerprint (TLS1.3 0x1301) and one spoofed Chrome UA = single automated tool.
show less
DDoS Attack
Web App Attack
๐ธ๐ฌ
securejdprop
2026-05-30 15:09:12
(2 months ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing. crowdsecurity/http-probing
Hacking
Web App Attack
๐ต๐ฑ
TI
2026-02-14 20:57:50
(6 months ago)
Web app DDoS, #14022026
DDoS Attack
Bad Web Bot
๐จ๐ญ
backslash
2025-11-05 12:55:12
(9 months ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-07-08 17:33:14
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 50.31.161.93 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 50.31.161.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 08 13:33:06.373759 2025] [security2:error] [pid 26126:tid 26126] [client 50.31.161.93:11704] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.vangentholding.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.vangentholding.com"] [uri "/wp-json/wp/v2/users/27561"] [unique_id "aG1WUklvhj_Y21vMq4Ks7wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: