AbuseIPDB » 116.212.188.141
116.212.188.141 was found in our database!
This IP was reported 6 times. Confidence of
Abuse
is 17% : ?
ISP
HostRoyale Technologies Pvt Ltd
Usage Type
Data Center/Web Hosting/Transit
ASN
AS207990
Domain Name
hostroyale.com
Country
๐บ๐ธ
United States of America
City
Romulus, Michigan
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 116.212.188.141 :
This IP address has been reported a total of
6
times from
5 distinct
sources.
116.212.188.141 was first reported on
October 1st 2024 , and the most recent report was
2 days ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฆ๐บ
MAGIC
2026-06-14 02:24:20
(2 days ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฉ๐ช
big-cloud.nl
2026-05-21 09:06:14
(3 weeks ago)
Try to access /xmlrpc.php?rsd
Web App Attack
๐ฉ๐ช
4server
2026-05-10 02:37:03
(1 month ago)
[SunMay1004:36:58.4517922026][security2:error][pid267950:tid268012][client116.212.188.141:0]ModSecur ...
show more
[SunMay1004:36:58.4517922026][security2:error][pid267950:tid268012][client116.212.188.141:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.ilcartiglio.ch\"][uri\"/\"][unique_id\"af_vSlm0vefR8a7Jpe1EzgAAAE8\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-28 14:04:41
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 116.212.188.141 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 116.212.188.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 28 09:04:35.928527 2026] [security2:error] [pid 23285:tid 23285] [client 116.212.188.141:46539] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||saadeh.ws|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "saadeh.ws"] [uri "/wp-json/wp/v2/users/1"] [unique_id "aXoXc5_e5gauQ9BDmhmiLwAAAAE"], referer: https://www.saadeh.ws/author/admin
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-25 04:02:29
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 116.212.188.141 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 116.212.188.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 24 23:02:24.896698 2026] [security2:error] [pid 6532:tid 6532] [client 116.212.188.141:33545] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||gapanda.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "gapanda.com"] [uri "/php-old.ini"] [unique_id "aXWV0AtM19LjQVrmVnV4owAAAAY"], referer: http://gapanda.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
afleventoffice.com.au
2024-10-01 00:40:43
(1 year ago)
GET /2010.php HTTP/1.1
Web App Attack
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: