IP Address Inspector
ATTENTION |
|
125.216.144.199
The Project Honey Pot system has detected behavior from the IP address consistent with that of a comment spammer and rule breaker. Below we've reported some other data associated with this IP. This interrelated data helps map spammers' networks and aids in law enforcement efforts. If you know something about this IP, please leave a comment.
Lookup IP In: Domain Tools | SpamHaus | Spamcop | SenderBase | Google Groups | Google
Geographic Location | China |
Spider First Seen | approximately 11 years, 7 months, 3 weeks ago |
Spider Last Seen | within 10 years, 7 months, 4 weeks |
Spider Sightings | 12,443 visit(s) |
User-Agents | seen with 30 user-agent(s) |
First Post On | approximately 11 years, 7 months, 3 weeks ago |
Last Post On | within 10 years, 7 months, 4 weeks |
Form Posts | 7,163 web post submission(s) sent from this IP |
First Rule-Break On | approximately 10 years, 11 months, 1 week ago |
Last Rule-Break On | within 10 years, 8 months, 5 weeks |
Rule Breaks | 5 web page navigation rule(s) broken by this IP |
|
3 comment(s) - Comment on this IP | Collapse All
|
H.User7152 commented...
Attack running over a botnet, probably
36.248.30.202, 41.220.28.138 - - [10/Sep/2013:20:06:10 +0000] "GET /blog HTTP/1.0" 403 931 "http://[my server]/blog" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0)" All accesses were identical to this, every IP one of these IPs tried accessing up to 4 times: 116.228.55.184, 125.216.144.199, 190.36.168.70, 221.10.40.236, 221.10.40.232 September 10 2013 05:03 PM |
D.Hunter9 commented...
@: Sat, 27 Jul 2013 22:59:34 +0200 Running: ????????
Host: 125.216.144.199 IP: 125.216.144.199 Score: 1 Violation count: 1 BANNED Why blocked: Suspected spamtool mail.ru agent (UA-0135). Query: Referer: http://????????/index.php User Agent: Opera/9.80 (Windows NT 6.1; WOW64; MRA 8.0 (build 5880)) Presto/2.12.388 Version/12.11 Reconstructed URL: http:// ???????? /index.php August 12 2013 09:38 AM |
H.Schwarzin commented...
11 IPs [58.210.212.107, 61.147.82.178, 61.183.9.20, 106.3.98.88, 111.161.30.218, 119.7.221.136, 124.89.36.178, 125.216.144.199, 202.91.248.74, 202.116.160.89, 221.10.40.232] all with the same user agent [opera/9.80 (windows nt 6.1; u; ru) presto/2.10.229 version/11.61] submitted "dangerous" URLs within a 2 minute period were all routed to a "BadRobot page" with each request by using the HttpBL API. Don't know if they are part of some "network" or not but seemed very suspicious. This comment was added to each of the IPs listed above.
December 20 2012 05:38 PM |
Page generated on: May 08 2024 04:07:07 PM
Privacy Policy | Terms of Use | About Project Honey Pot | FAQ | Cloudflare Site Protection | Contact Us
Copyright © 2004–24, Unspam Technologies, Inc. All rights reserved.
Advertisements displayed on this page are not necessarily endorsed by Project Honey Pot