AbuseIPDB » 103.19.78.133
103.19.78.133 was found in our database!
This IP was reported 8 times. Confidence of
Abuse
is 0% : ?
ISP
PT Persada Data Multimedia
Usage Type
Fixed Line ISP
ASN
AS149359
Domain Name
pdm.net.id
Country
๐ฎ๐ฉ
Indonesia
City
Lamongan, East Java
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 103.19.78.133 :
This IP address has been reported a total of
8
times from
6 distinct
sources.
103.19.78.133 was first reported on
May 22nd 2025 , and the most recent report was
2 months ago .
Old Reports:
The most recent abuse report for this IP address is from
2 months ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฎ๐ณ
liveaspankaj
2026-03-14 16:02:21
(2 months ago)
DDoS attack: 145 requests in 5m (GET / or repair.php).
DDoS Attack
๐ฉ๐ช
jasperedv.de
2026-03-06 01:04:34
(2 months ago)
Failed IMAP Login - Brutforcing
Email Spam
Brute-Force
๐ฉ๐ช
John Chrys.
2026-03-03 07:12:06
(3 months ago)
103.19.78.133 - - [03/Mar/2026:09:11:53 +0200] "POST /wp-comments-post.php HTTP/1.1" 403 6776 "-" "M ...
show more
103.19.78.133 - - [03/Mar/2026:09:11:53 +0200] "POST /wp-comments-post.php HTTP/1.1" 403 6776 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
103.19.78.133 - - [03/Mar/2026:09:11:56 +0200] "POST /wp-comments-post.php HTTP/1.1" 403 6776 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
103.19.78.133 - - [03/Mar/2026:09:11:58 +0200] "POST /wp-comments-post.php HTTP/1.1" 403 6776 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
103.19.78.133 - - [03/Mar/2026:09:12:02 +0200] "POST /wp-comments-post.php HTTP/1.1" 403 6776 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
103.19.78.133 - - [03/Mar/2026:09:12:05 +0200] "POST /wp-comments-post.php HTTP/1.1" 403 6776 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit
...
show less
Brute-Force
Web App Attack
๐ฌ๐ง
gtabomber
2026-02-27 19:17:50
(3 months ago)
2026-02-27T19:17:35.115857 espaceonline.co.uk auth[14705]: pam_unix(dovecot:auth): authentication fa ...
show more
2026-02-27T19:17:35.115857 espaceonline.co.uk auth[14705]: pam_unix(dovecot:auth): authentication failure; logname= uid=0 euid=0 tty=dovecot [email protected] rhost=103.19.78.133
2026-02-27T19:17:37.369840 espaceonline.co.uk dovecot[23296]: auth-worker(14705): pam([email protected] ,103.19.78.133,<xX7tFtNLiMtnE06F>): unknown user (given password: Samtron)
2026-02-27T19:17:39.787172 espaceonline.co.uk dovecot[23296]: imap-login: Disconnected (auth failed, 1 attempts in 4 secs): user=<[email protected] >, method=PLAIN, rip=103.19.78.133, lip=176.126.240.132, TLS, session=<xX7tFtNLiMtnE06F>
...
show less
Brute-Force
SSH
๐ฎ๐ฉ
hermawan
2025-08-18 04:30:52
(9 months ago)
[Mon Aug 18 11:29:17.408822 2025] [security2:error] [pid 334235:tid 139955117459136] [client 103.19. ...
show more
[Mon Aug 18 11:29:17.408822 2025] [security2:error] [pid 334235:tid 139955117459136] [client 103.19.78.133:50782] ModSecurity: Access denied with code 403 (phase 1). Match of "pm matomo.staklim-malang.info " against "SERVER_NAME" required. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "180"] [id "40236"] [msg "BAD REQUEST Bro"] [data " Matched Data ARGS charset: - Matched Data TX.1: found within Content-Type multipart form Matched Data: %20 found within SERVER_NAME: staklim-jatim.bmkg.go.id request_line = GET /index.php/using-joomla/extensions/components/search-component/search?searchword=Prakiaann%20hujan%20bulan%20September%202035&searchphrase=all HTTP/2.0 Request URI RAW = /index.php/using-joomla/extensions/components/search-component/search?searchword=Prakiaann%20hujan%20bulan%20September%202035&searchphrase=all Request Basename..."] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/using-joomla/extensions/components/search-co
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-06-29 05:16:52
(11 months ago)
[Sun Jun 29 12:16:20.853937 2025] [security2:error] [pid 394206:tid 139640292828864] [client 103.19. ...
show more
[Sun Jun 29 12:16:20.853937 2025] [security2:error] [pid 394206:tid 139640292828864] [client 103.19.78.133:46342] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "myactivity.google.com" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "455"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: myactivity.google.com found within REQUEST_HEADERS:Referer: https://myactivity.google.com/ request_line = GET /images/Klimatologi/Prakiraan/03-Prakiraan-Bulanan/Prakiraan_Sifat_Hujan_Bulanan/Prakiraan_Sifat_Hujan_Bulanan_Provinsi_Jawa_Timur/2025/02_FEBRUARI_2025/03_Prakiraan_Sifat_Hujan_Bulan_JUNI_2025_di_Provinsi_Jawa_Timur-Update_dari_Analisis_Bulan_Februari_2025.jpg HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/Klimatologi/Prakiraan/03-Prakiraan-Bulanan/Prakiraan_Sifat_Hujan_Bulanan/Prakiraan_Sifat_Hujan_Bulanan_Provinsi_Jawa_Timur/2025/02_FEBRUARI_2025/03_Prakira
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-06-10 16:15:03
(11 months ago)
[Tue Jun 10 23:13:34.558477 2025] [security2:error] [pid 111309:tid 140214349579968] [client 103.19. ...
show more
[Tue Jun 10 23:13:34.558477 2025] [security2:error] [pid 111309:tid 140214349579968] [client 103.19.78.133:38152] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "okhttp" at REQUEST_HEADERS:user-agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: okhttp found within REQUEST_HEADERS:user-agent: okhttp/4.12.0 request_line = GET /b/bulananlamongan.pdf HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/b/bulananlamongan.pdf"] [unique_id "aEhZrpsndEUpLV96Bl3oLAAAANQ"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[111361] [ySFv+iHjG5c] [aEhZrpsndEUpLV96Bl3oLAAAANQ] keep_alive=[0] [2025-06-10 23:13:34.558481] [R:aEhZrpsndEUpLV96Bl3oLAAAANQ] UA:'okhttp/4.12.0' Host:'staklim-jatim.bmkg.go.id' Accept-Encoding:'gzip
...
show less
Hacking
Web App Attack
๐ฉ๐ช
stalker.to
2025-05-22 23:28:09
(1 year ago)
Datacenter Proxy
Web Spam
Showing 1 to
8
of 8 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: