AbuseIPDB » 13.212.173.0
13.212.173.0 was found in our database!
This IP was reported 10 times. Confidence of
Abuse
is 53% : ?
ISP
Amazon Data Services Singapore
Usage Type
Data Center/Web Hosting/Transit
ASN
AS16509
Hostname(s)
ec2-13-212-173-0.ap-southeast-1.compute.amazonaws.com
Domain Name
amazon.com
Country
πΈπ¬
Singapore
City
Singapore
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 13.212.173.0 :
This IP address has been reported a total of
10
times from
9 distinct
sources.
13.212.173.0 was first reported on
August 21st 2026 , and the most recent report was
3 days ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
π©πͺ
MBombeck
2026-08-23 10:02:09
(3 days ago)
Fail2Ban/traefik-botsearch on apps-01: banned after 5 failures
Web App Attack
π³π±
Site.eu
2026-08-23 02:41:15
(4 days ago)
Excessive 404/403 errors
Brute-Force
π³π±
ConsulHosting
2026-08-23 02:08:20
(4 days ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
π³π±
Mangelot Hosting
2026-08-23 02:04:43
(4 days ago)
(modsecurity) srv201 ModSecurity 13.212.173.0 (SG/Singapore/ec2-13-212-173-0.ap-southeast-1.compute. ...
show more
(modsecurity) srv201 ModSecurity 13.212.173.0 (SG/Singapore/ec2-13-212-173-0.ap-southeast-1.compute.amazonaws.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-23 00:43:15
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 13.212.173.0 (ec2-13-212-173-0.ap-southeast-1.c ...
show more
(mod_security) mod_security (id:210492) triggered by 13.212.173.0 (ec2-13-212-173-0.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 20:43:08.782865 2026] [security2:error] [pid 15902:tid 15902] [client 13.212.173.0:50374] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.zost.net"] [uri "/.git/config"] [unique_id "aopCHDmT-Hob66PJ_bVTBgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
WeCloudit-Anti-Abuse
2026-08-22 16:08:42
(4 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
πΊπΈ
JustMeHere
2026-08-22 13:02:49
(4 days ago)
[Sat Aug 22 09:02:44.579154 2026] [security2:error] [pid 1226:tid 1269] [client 13.212.173.0:41500] ...
show more
[Sat Aug 22 09:02:44.579154 2026] [security2:error] [pid 1226:tid 1269] [client 13.212.173.0:41500] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 55)"] [ver "OWASP_CRS/4.15.0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "mail.yorknation.com"] [uri "/"] [unique_id "aomd9LucslLPkFAb25SjXwAAAM8"]
...
show less
Web App Attack
Anonymous
2026-08-22 05:25:02
(4 days ago)
suspicious request in access.log
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-22 01:57:06
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 13.212.173.0 (ec2-13-212-173-0.ap-southeast-1.c ...
show more
(mod_security) mod_security (id:210492) triggered by 13.212.173.0 (ec2-13-212-173-0.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 21:56:59.676863 2026] [security2:error] [pid 29344:tid 29344] [client 13.212.173.0:53720] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "liburumi.tucek.org"] [uri "/.git/config"] [unique_id "aokB60hCR-KLe6lLrOlutwAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
MM-bot
2026-08-21 18:32:03
(5 days ago)
URL-probe: HTTP/1.1 GET request on /.git/config (2026-08-21 20:32:03 UTC+2)
Web App Attack
Hacking
Showing 1 to
10
of 10 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown π©
Recently Reported IPs: