AbuseIPDB » 103.82.246.127
103.82.246.127 was found in our database!
This IP was reported 6 times. Confidence of
Abuse
is 12% : ?
ISP
PT Aswatama Jaya Mandiri
Usage Type
Fixed Line ISP
ASN
AS142370
Domain Name
aswatama.id
Country
๐ฎ๐ฉ
Indonesia
City
Sidoarjo, East Java
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 103.82.246.127 :
This IP address has been reported a total of
6
times from
2 distinct
sources.
103.82.246.127 was first reported on
April 20th 2026 , and the most recent report was
10 hours ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฎ๐ฉ
hermawan
2026-06-18 18:07:24
(10 hours ago)
[Fri Jun 19 01:07:20.863278 2026] [security2:error] [pid 697872:tid 140711155451584] [client 103.82. ...
show more
[Fri Jun 19 01:07:20.863278 2026] [security2:error] [pid 697872:tid 140711155451584] [client 103.82.246.127:49070] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:Referer: https://www.bmkg.go.id/ request_line = GET / HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/"] [unique_id "ajQz2KELHVvtC8Kg4XmuUwAAEgI"], referer https://www.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[697875] [yAkbDEshy/I] [ajQz2KELHVvtC8Kg4XmuUwAAEgI] keep_alive=[1] [2026-06-19 01:07:20.863283] [R:ajQz2KELHVvtC8Kg4XmuUwAAEgI] UA:'Mozilla/5.0 (Linux; Android 14; Pixel 6 Pro) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/122.0.6261.119 Mobile Safari/537.36 OPR/81.2.4292.78581' Host:'staklim-jatim.bmkg.
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
sockominfo
2026-05-23 17:00:39
(3 weeks ago)
User login to application during non-business hours. Threat Score: 6.6/10 (HIGH). Confidence: 40%. C ...
show more
User login to application during non-business hours. Threat Score: 6.6/10 (HIGH). Confidence: 40%. CVSS v3.1: 4.6/10 (Medium). CVSS Vector: CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L. Bayesian Probability: 87%. MITRE ATT&CK: T1046 (Network Service Scanning). Tactic: TA0001. Freshness: Very Fresh. Source Reputation: UNKNOWN. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-05-01 15:00:17
(1 month ago)
Double URL encoding detection. Threat Score: 6.7/10 (MEDIUM). Reported by TangerangKota-CSIRT
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-05-01 14:00:15
(1 month ago)
Double URL encoding detection. Threat Score: 6.9/10 (MEDIUM). Reported by TangerangKota-CSIRT
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-05-01 13:00:13
(1 month ago)
Double URL encoding detection. Threat Score: 7/10 (MEDIUM). Reported by TangerangKota-CSIRT. Status: ...
show more
Double URL encoding detection. Threat Score: 7/10 (MEDIUM). Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-04-20 16:00:44
(1 month ago)
Late night login (22:00-05:30) - High risk Jakarta timezone (WIB). Threat Score: 8.9/10 (CRITICAL). ...
show more
Late night login (22:00-05:30) - High risk Jakarta timezone (WIB). Threat Score: 8.9/10 (CRITICAL). Confidence: 70%. CVSS v3.1: 9.9/10 (Critical). CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H. Bayesian Probability: 87%. MITRE ATT&CK: T1078 (Valid Accounts). Tactic: TA0001. Freshness: Very Fresh. Source Reputation: KNOWN_MALICIOUS. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: