AbuseIPDB » 95.56.10.163
95.56.10.163 was found in our database!
This IP was reported 5 times. Confidence of
Abuse
is 0% : ?
ISP
JSC Kazakhtelecom
Usage Type
Fixed Line ISP
ASN
AS9198
Hostname(s)
95.56.10.163.dynamic.telecom.kz
Domain Name
telecom.kz
Country
๐ฐ๐ฟ
Kazakhstan
City
Almaty, Almaty
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 95.56.10.163 :
This IP address has been reported a total of
5
times from
4 distinct
sources.
95.56.10.163 was first reported on
October 13th 2025 , and the most recent report was
3 days ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ง๐ท
ronimarques
2026-09-13 09:43:22
(3 days ago)
Automated fake-account registration attack against a web platform in Portugal. Part of a distributed ...
show more
Automated fake-account registration attack against a web platform in Portugal. Part of a distributed campaign of 5300 fraudulent registration attempts from 1544 source IPs across 501 ASNs in 51 countries between 2026-09-13 03:39:43 and 09:43:22 UTC, at a deliberately low sustained rate (~14.6/min) consistent with a commercial residential proxy network.
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-14 02:13:22
(11 months ago)
(mod_security) mod_security (id:234930) triggered by 95.56.10.163 (95.56.10.163.dynamic.telecom.kz): ...
show more
(mod_security) mod_security (id:234930) triggered by 95.56.10.163 (95.56.10.163.dynamic.telecom.kz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 13 22:13:15.073623 2025] [security2:error] [pid 1066:tid 1066] [client 95.56.10.163:55546] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\/lib\\\\/php\\\\/connector\\\\.minimal\\\\.php$" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/27_Apps_WPPlugin.conf"] [line "6778"] [id "234930"] [rev "2"] [msg "COMODO WAF: File upload vulnerability in the file manager plugin before 6.9 for WordPress (CVE-2020-25213)||verdeprofundo.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WPPlugin"] [hostname "verdeprofundo.net"] [uri "/wp-content/plugins/wp-file-manager/lib/php/connector.minimal.php"] [unique_id "aO2xu4NcI6AIo1ID6HYDiwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-13 23:29:28
(11 months ago)
(mod_security) mod_security (id:234930) triggered by 95.56.10.163 (95.56.10.163.dynamic.telecom.kz): ...
show more
(mod_security) mod_security (id:234930) triggered by 95.56.10.163 (95.56.10.163.dynamic.telecom.kz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 13 19:29:21.581738 2025] [security2:error] [pid 14959:tid 14968] [client 95.56.10.163:52508] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\/lib\\\\/php\\\\/connector\\\\.minimal\\\\.php$" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/27_Apps_WPPlugin.conf"] [line "6778"] [id "234930"] [rev "2"] [msg "COMODO WAF: File upload vulnerability in the file manager plugin before 6.9 for WordPress (CVE-2020-25213)||guitarprimer.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WPPlugin"] [hostname "guitarprimer.com"] [uri "/wp-content/plugins/wp-file-manager/lib/php/connector.minimal.php"] [unique_id "aO2LUVFy5kBjMHaN-QePrQAAAIc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-10-13 22:59:25
(11 months ago)
wordpress-trap
Web App Attack
๐ง๐ช
cmbplf
2025-10-13 08:26:58
(11 months ago)
451 requests with url.path /shell.php
Brute-Force
Bad Web Bot
Showing 1 to
5
of 5 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: