AbuseIPDB » 131.0.183.248
131.0.183.248 was found in our database!
This IP was reported 12 times. Confidence of
Abuse
is 27% : ?
ISP
SYSVOIP TELECOMUNICAÇÕES LTDA - ME
Usage Type
Fixed Line ISP
ASN
AS61707
Hostname(s)
248-183-0-131.iwbr.com.br
Domain Name
iwbr.com.br
Country
🇧🇷
Brazil
City
Sete Lagoas, Minas Gerais
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 131.0.183.248 :
This IP address has been reported a total of
12
times from
9 distinct
sources.
131.0.183.248 was first reported on
July 27th 2025 , and the most recent report was
2 days ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
🇷🇸
Scan
2026-07-19 00:48:22
(2 days ago)
MultiHost/MultiPort Probe, Scan, Hack -
Port Scan
Hacking
Anonymous
2026-07-18 06:25:43
(2 days ago)
denied traffic to a non-approved destination port. destination port 62322.
Port Scan
🇺🇸
kosada.com
2026-06-29 15:38:50
(3 weeks ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
🇮🇩
hermawan
2026-06-27 13:04:10
(3 weeks ago)
[Sat Jun 27 20:04:07.094039 2026] [security2:error] [pid 1282918:tid 139939158132416] [client 131.0. ...
show more
[Sat Jun 27 20:04:07.094039 2026] [security2:error] [pid 1282918:tid 139939158132416] [client 131.0.183.248:65058] ModSecurity: Access denied with code 403 (phase 1). Match of "pm www.office.com powerpoint.officeapps.live.com /offline-service-worker-19-02-2025.js /offline-service-worker-27-01-2024-v5-0-1.js /offline-service-worker-01-08-2023-v4-5-1.js /OneSignalSDKWorker.js /worker-analytic-helper-27-11-2022.js/ /worker-analyti ..." against "REQUEST_HEADERS:Referer" required. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "599"] [id "440067"] [msg "BAD Referer"] [data "Matched Data: staklim-jatim.bmkg.go.id found within REQUEST_HEADERS:Referer: https://www.google.sr/search?ictx=0&q=bmkg+musim+hujan&sa=X&safe=strict&tbm=isch request_line = GET /images/Geofisika/covid-19/cover_tsunami_covid19.jpg HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/Geofisika/covid-19/cover_tsunami_covid19.jpg"] [unique_id "aj_
...
show less
Email Spam
Hacking
🇩🇪
SMARTNET
2025-11-30 18:38:00
(7 months ago)
Aisuru(Mirai variant) DDoS
DDoS Attack
Anonymous
2025-11-26 07:43:54
(7 months ago)
scanning http requests from known botnet
Web App Attack
Anonymous
2025-11-18 10:51:48
(8 months ago)
scanning http requests from known botnet
Web App Attack
🇮🇩
hermawan
2025-10-14 14:12:05
(9 months ago)
[Tue Oct 14 21:11:05.892500 2025] [security2:error] [pid 2872706:tid 140020336719552] [client 131.0. ...
show more
[Tue Oct 14 21:11:05.892500 2025] [security2:error] [pid 2872706:tid 140020336719552] [client 131.0.183.248:8632] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "WOW64" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "228"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: WOW64 found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (Windows NT 6.3; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.100 ADG/11.0.2566 AOLBUILD/11.0.2566 Safari/537.36 request_line = GET /index.php/monitoring-hari-tanpa-hujan-berturut-turut/620-monitoring-hari-tanpa-hujan-berturut-turut-propinsi-jawa-timur/monitoring-hari-tanpa-hujan-berturut-turut-propinsi-jawa-timur-tahun-2017/1317-monitoring-hari-tanpa-hujan-berturut-turut-jawa-timur-update-10-januari-2017 HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/index.php/monitoring-hari-tanpa-hujan-berturut-
...
show less
Hacking
Web App Attack
🇩🇪
CommanderRoot
2025-10-14 04:35:58
(9 months ago)
Bot crawler
DDoS Attack
Web Spam
🇳🇱
exxos
2025-09-17 11:03:01
(10 months ago)
Attacks with Bad user agents
Hacking
🇳🇱
exxos
2025-08-26 06:03:01
(10 months ago)
http-no-verb
Hacking
🇪🇸
Global Cyber Police
2025-07-27 17:20:58
(11 months ago)
Malicious bot activity detected: Hitting honeypot page (200 OK with 258/259 bytes sent).
Port Scan
Brute-Force
Web App Attack
Showing 1 to
12
of 12 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown 🚩
Recently Reported IPs: