This IP address has been reported a total of
2,429
times from
537 distinct
sources.
66.132.195.107 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Web application attack / vulnerability scanning against our public nginx web server (TCP 80/443). So ...
show moreWeb application attack / vulnerability scanning against our public nginx web server (TCP 80/443). Source matched a blocked-path security rule (jail nginx-444); server returned HTTP 444 (connection closed without response). TCP three-way handshake completed (full HTTP request received).
show less
Malformed or malicious web request
66.132.195.107 - - [20/Jul/2026:10:50:13 +0200] "PRI * HTTP/2.0" ...
show moreMalformed or malicious web request
66.132.195.107 - - [20/Jul/2026:10:50:13 +0200] "PRI * HTTP/2.0" 400 157 "-" "-"
show less
[probe-44-49] 2026-07-20 07:34:27, Client: 66.132.195.107, Protocol: 6, Unauthorized activity to HTT ...
show more[probe-44-49] 2026-07-20 07:34:27, Client: 66.132.195.107, Protocol: 6, Unauthorized activity to HTTP: GET /
show less
[rede-44-49] 07/20/2026-04:12:10.130665, 66.132.195.107, Protocol: 6, ET DROP Dshield Block Listed S ...
show more[rede-44-49] 07/20/2026-04:12:10.130665, 66.132.195.107, Protocol: 6, ET DROP Dshield Block Listed Source group 1
show less
Automatically generated from firewall_v2 logs on Server_ID: SPPX01
Category: Port Scan
Occurrences ...
show moreAutomatically generated from firewall_v2 logs on Server_ID: SPPX01
Category: Port Scan
Occurrences: 10
Unique Ports: 3
Destination Ports:
2022, 31210, 8006
First Seen:
2026-07-12 15:35 UTC
Last Seen:
2026-07-20 06:20 UTC
show less
[rede-arem1] 07/20/2026-03:14:11.967277, 66.132.195.107, Protocol: 6, ET DROP Dshield Block Listed S ...
show more[rede-arem1] 07/20/2026-03:14:11.967277, 66.132.195.107, Protocol: 6, ET DROP Dshield Block Listed Source group 1
show less
Hacking
Anonymous
*Port Scan* detected from 66.132.195.107 (US/United States/107.195.132.66.censys-scanner.com). 5 hit ...
show more*Port Scan* detected from 66.132.195.107 (US/United States/107.195.132.66.censys-scanner.com). 5 hits in the last 5 seconds
show less
๐ก๏ธ Honeypot [bsts-tpot-hive]: Unauthorized mysqld/tcp traffic (dst port 3306, src port 29950) agains ...
show more๐ก๏ธ Honeypot [bsts-tpot-hive]: Unauthorized mysqld/tcp traffic (dst port 3306, src port 29950) against a passive decoy service with no legitimate function, consistent with automated scanning.
show less