AbuseIPDB » 136.0.109.103
136.0.109.103 was found in our database!
This IP was reported 4 times. Confidence of
Abuse
is 4% : ?
ISP
Ace Data Centers II, L.L.C.
Usage Type
Data Center/Web Hosting/Transit
ASN
AS18779
Hostname(s)
136-0-109-103.ips.acedatacenter.com
Domain Name
acedatacenter.com
Country
πΊπΈ
United States of America
City
Santa Clara, California
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 136.0.109.103 :
This IP address has been reported a total of
4
times from
4 distinct
sources.
136.0.109.103 was first reported on
June 15th 2024 , and the most recent report was
1 day ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
π¨π
Origon
2026-06-15 07:52:26
(1 day ago)
http-bad-user-agent - IP: 136.0.109.103 - time="2026-06-15T09:52:25+02:00" level=info msg="(555f66b ...
show more
http-bad-user-agent - IP: 136.0.109.103 - time="2026-06-15T09:52:25+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-bad-user-agent by ip 136.0.109.103 (US/18779) : 4h ban on Ip 136.0.109.103" module=db
show less
Bad Web Bot
π¨π
backslash
2025-05-28 04:00:06
(1 year ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
π»π³
Xuan Can
2025-03-16 02:05:50
(1 year ago)
(mod_security) mod_security (id:6) triggered by 136.0.109.103 (US/United States/136-0-109-103.ips.ac ...
show more
(mod_security) mod_security (id:6) triggered by 136.0.109.103 (US/United States/136-0-109-103.ips.acedatacenter.com): 1 in the last 3600 secs; Ports: 80,443; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 16 09:05:44.423635 2025] [security2:error] [pid 13987:tid 14015] [client 136.0.109.103:35291] [client 136.0.109.103] ModSecurity: Access denied with connection close (phase 2). Pattern match "wp-login.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "62"] [id "6"] [severity "CRITICAL"] [hostname "kb.pavietnam.vn"] [uri "/wp-login.php"] [unique_id "Z9Yx-JEODk3d9nRVsaJGgwAAAIE"], referer: https://kb.pavietnam.vn/so-dien-thoai-hien-thi-yund-la-gi-do-tin-cay-cua-cuoc-goi-tu-yund.html
show less
Brute-Force
SSH
πΊπΈ
TPI-Abuse
2024-06-15 05:45:16
(2 years ago)
(mod_security) mod_security (id:220020) triggered by 136.0.109.103 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:220020) triggered by 136.0.109.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 15 01:45:10.729931 2024] [security2:error] [pid 2636184:tid 47249100011264] [client 136.0.109.103:57707] [client 136.0.109.103] ModSecurity: Access denied with code 403 (phase 1). Pattern match "(^|;)=(;|$)" at REQUEST_HEADERS:Cookie. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "74"] [id "220020"] [rev "2"] [msg "COMODO WAF: DoS vulnerability in Apache 2.2.17 - 2.2.21 (CVE-2012-0021)||www.gingerharvey.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gingerharvey.com"] [uri "/contact.html"] [unique_id "Zm0qZjrKMdAYQLBaBiMEEgAAAk0"], referer: http://www.cramcram.fr
show less
Brute-Force
Bad Web Bot
Web App Attack
Showing 1 to
4
of 4 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown π©
Recently Reported IPs: