AbuseIPDB » 138.94.219.13
138.94.219.13 was found in our database!
This IP was reported 6 times. Confidence of
Abuse
is 18% : ?
ISP
Philadelphia PA
Usage Type
Data Center/Web Hosting/Transit
ASN
AS263744
Domain Name
udasha.com
Country
๐บ๐ธ
United States of America
City
New York City, New York
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 138.94.219.13 :
This IP address has been reported a total of
6
times from
4 distinct
sources.
138.94.219.13 was first reported on
August 2nd 2025 , and the most recent report was
3 days ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฎ๐ฉ
hermawan
2026-06-15 11:52:33
(3 days ago)
[Mon Jun 15 18:52:32.582494 2026] [security2:error] [pid 147791:tid 140170935367360] [client 138.94. ...
show more
[Mon Jun 15 18:52:32.582494 2026] [security2:error] [pid 147791:tid 140170935367360] [client 138.94.219.13:31742] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.yahoo.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.yahoo.go.id found within REQUEST_HEADERS:Referer: https://www.yahoo.go.id/ request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561307-infografis-perubahan-iklim-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561307-infografis-perubahan-iklim-jawa-timur"] [unique_id "ai_ngM8DiXICJSIsSc8qowABxwg"], referer https://www.yahoo.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[147820] [j4ksdkkY4zM] [ai_ngM8DiXICJSIsSc8qowABxwg] keep_alive=[1] [2026-0
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2026-06-04 11:10:58
(2 weeks ago)
[Thu Jun 04 18:10:50.102564 2026] [security2:error] [pid 189170:tid 140507071813312] [client 138.94. ...
show more
[Thu Jun 04 18:10:50.102564 2026] [security2:error] [pid 189170:tid 140507071813312] [client 138.94.219.13:28322] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:Referer: https://www.bmkg.go.id/ request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561326-infografis-himbauan-waspada-suhu-udara-panas HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561326-infografis-himbauan-waspada-suhu-udara-panas"] [unique_id "aiFdOrF_ITsJ166tuHeCpAAAwwA"], referer https://www.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[189171] [GYbCmCvTZ2A] [aiFdOrF_ITsJ166tuHeCpAAAwwA] keep_alive=[
...
show less
Email Spam
Hacking
Anonymous
2026-05-31 16:55:26
(2 weeks ago)
Firewall - Suricata IDS [Priority 2 - High]: ET DROP Spamhaus DROP Listed Traffic Inbound group 26
Port Scan
Hacking
๐ฎ๐ฉ
securejdprop
2026-05-18 19:51:03
(1 month ago)
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET DROP Spamhaus D ...
show more
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET DROP Spamhaus DROP Listed Traffic Inbound group 26). Ip 138.94.219.13 performed 'crowdsecurity/suricata-major-severity' (1 events over 0s) at 2026-05-18 19:51:03.09683715 +0000 UTC
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2026-04-18 01:03:16
(2 months ago)
04/18/2026-08:03:16.197653 [Drop] [**] [1:2100001179:0] Suricata match TLS JA4 scan Uniq Zeek no 11 ...
show more
04/18/2026-08:03:16.197653 [Drop] [**] [1:2100001179:0] Suricata match TLS JA4 scan Uniq Zeek no 1179 with hash_t13d5112h1_6828d97b4e5a_d41ae481755e [**] [Classification: (null)] [Priority: 3] {TCP} 138.94.219.13:8310 -> 103.166.156.58:443
...
show less
Email Spam
Hacking
๐บ๐ธ
etu brutus
2025-08-02 13:53:04
(10 months ago)
138.94.219.13 Blocked by [Attack Vector List]
...
Hacking
Brute-Force
Exploited Host
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: