This IP address has been reported a total of
5
times from
4 distinct
sources.
64.131.33.236 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
France
with 2
reports;
Indonesia
with 1
report;
United States of America
with 1
report.
The most common categories in these recent reports were:
Bad Web Bot
4
times;
Exploited Host
2
times;
Web App Attack
2
times;
Hacking
1
time;
Email Spam
1
time;
Other
1
time.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
[Tue Oct 06 07:50:11.526976 2026] [security2:error] [pid 1167554:tid 140665606366912] [client 64.131 ...
show more[Tue Oct 06 07:50:11.526976 2026] [security2:error] [pid 1167554:tid 140665606366912] [client 64.131.33.236:0] ModSecurity: Access denied with code 403 (phase 1). Match of "pm matomo.staklim-malang.info " against "SERVER_NAME" required. [file "/etc/modsecurity/coreruleset-4.29.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "224"] [id "440235"] [msg "BAD REQUEST Bro"] [data " Matched Data ARGS charset: - Matched Data TX.1: found within Content-Type multipart form Matched Data: %3a found within SERVER_NAME: staklim-jatim.bmkg.go.id request_line = GET /index.php/profil/arsip-artikel?catid=618&id=555555706%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-23-29-mei-2017&start=10 HTTP/1.1 Request URI RAW = /index.php/profil/arsip-artikel?catid=618&id=555555706%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-23-29-mei-2017&sta..."] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/arsip-artikel"] [unique_id "asRFw9yDWA4
...
show less
HTTP application-layer DoS / botnet traffic from 64.131.33.236: repeated high-cost dynamic page and ...
show moreHTTP application-layer DoS / botnet traffic from 64.131.33.236: repeated high-cost dynamic page and feed requests (profile/tag views, forums, tracker, RSS) at abusive rates via completed TCP/HTTPS. Likely compromised end-user host.
show less
DDoS Attack
Bad Web Bot
Exploited Host
Anonymous
Web attack
Bad Web Bot
Web App Attack
Anonymous
Web attack
Bad Web Bot
Web App Attack
Anonymous
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to ...
show moreDistributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to bypass firewall/robots.txt restrictions in email-link.asp
show less
Exploited Host
Bad Web Bot
Showing 1 to
5
of 5 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ