AbuseIPDB » 106.219.151.212
106.219.151.212 was found in our database!
This IP was reported 10 times. Confidence of
Abuse
is 24% : ?
ISP
Bharti Airtel Limited
Usage Type
Fixed Line ISP
ASN
AS24560
Domain Name
airtel.in
Country
๐ฎ๐ณ
India
City
Meerut, Uttar Pradesh
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 106.219.151.212 :
This IP address has been reported a total of
10
times from
7 distinct
sources.
106.219.151.212 was first reported on
July 27th 2025 , and the most recent report was
14 hours ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ซ๐ท
tecnicorioja
2026-07-31 22:01:15
(14 hours ago)
POST /xmlrpc.php [31/Jul/2026:18:06:09
Web App Attack
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-31 13:26:52
(22 hours ago)
(mod_security) mod_security (id:240335) triggered by 106.219.151.212 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240335) triggered by 106.219.151.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 09:26:44.530174 2026] [security2:error] [pid 3280633:tid 3280633] [client 106.219.151.212:13528] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 106.219.151.212 (+1 hits since last alert)|bergenoaks.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "bergenoaks.com"] [uri "/xmlrpc.php"] [unique_id "amyilFQ5xzRe7l48AL3AZQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-31 12:03:08
(1 day ago)
Apache credential probing in 15m window: 56 hits. url=/xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-31 11:57:17
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 106.219.151.212 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240335) triggered by 106.219.151.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 07:57:10.170360 2026] [security2:error] [pid 2928868:tid 2928885] [client 106.219.151.212:27672] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 106.219.151.212 (+1 hits since last alert)|duplexgoldmine.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "duplexgoldmine.com"] [uri "/xmlrpc.php"] [unique_id "amyNltFe4RVO7kSZXsGbjwAAAIo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
EGP Abuse Dept
2026-04-30 03:15:16
(3 months ago)
Unauthorized connection to Telnet port 23
Port Scan
Hacking
Anonymous
2026-03-12 07:15:57
(4 months ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
๐บ๐ธ
TPI-Abuse
2025-12-10 14:52:11
(7 months ago)
"Participant in large-scale DDoS Attack in which data injection was attmpted to gain unauthorized ac ...
show more
"Participant in large-scale DDoS Attack in which data injection was attmpted to gain unauthorized access"
show less
DDoS Attack
SQL Injection
Exploited Host
๐ณ๐ฑ
exxos
2025-08-08 17:03:01
(11 months ago)
HTTP1.x attacks
DDoS Attack
๐ณ๐ฑ
exxos
2025-08-08 13:03:01
(11 months ago)
http-no-verb
Hacking
๐ช๐ธ
Global Cyber Police
2025-07-27 17:26:29
(1 year ago)
Malicious bot activity detected: Hitting honeypot page (200 OK with 258/259 bytes sent).
Port Scan
Brute-Force
Web App Attack
Showing 1 to
10
of 10 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: