AbuseIPDB » 138.94.219.86
138.94.219.86 was found in our database!
This IP was reported 5 times. Confidence of
Abuse
is 11% : ?
ISP
Philadelphia PA
Usage Type
Data Center/Web Hosting/Transit
ASN
AS263744
Domain Name
udasha.com
Country
๐บ๐ธ
United States of America
City
New York City, New York
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 138.94.219.86 :
This IP address has been reported a total of
5
times from
3 distinct
sources.
138.94.219.86 was first reported on
July 2nd 2025 , and the most recent report was
1 day ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฎ๐ฉ
hermawan
2026-06-29 11:06:55
(1 day ago)
[Mon Jun 29 18:06:54.295834 2026] [security2:error] [pid 1316289:tid 139911697950400] [client 138.94 ...
show more
[Mon Jun 29 18:06:54.295834 2026] [security2:error] [pid 1316289:tid 139911697950400] [client 138.94.219.86:47098] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "601"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:Referer: https://www.bmkg.go.id/ request_line = GET /index.php/profil/meteorologi/list-all-categories HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-all-categories"] [unique_id "akJRzkn-GflUqfvXqj9sXgAChhg"], referer https://www.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[1316314] [api8dGKnA/Y] [akJRzkn-GflUqfvXqj9sXgAChhg] keep_alive=[1] [2026-06-29 18:06:54.295839] [R:akJRzkn-GflUqfvXqj9sXgAChhg] UA:'Mozilla/5.0 (Linux; Android 14; Pixel 6 Pro) AppleWebKit/537.36 (KHTML, like
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2026-06-16 12:02:45
(2 weeks ago)
[Tue Jun 16 19:02:42.641903 2026] [security2:error] [pid 837753:tid 139771434231488] [client 138.94. ...
show more
[Tue Jun 16 19:02:42.641903 2026] [security2:error] [pid 837753:tid 139771434231488] [client 138.94.219.86:57546] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:Referer: https://www.bmkg.go.id/ request_line = GET /index.php HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php"] [unique_id "ajE7Ym-GWGKynxBzPg--ygAAQgA"], referer https://www.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[837759] [1pdguJ085CU] [ajE7Ym-GWGKynxBzPg--ygAAQgA] keep_alive=[1] [2026-06-16 19:02:42.641907] [R:ajE7Ym-GWGKynxBzPg--ygAAQgA] UA:'Mozilla/5.0 (Linux; Android 8.0.0; SM-J330G) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36 EdgA/114.0.1823.74' Host:'staklim-
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
securejdprop
2026-05-13 19:17:35
(1 month ago)
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET DROP Spamhaus D ...
show more
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET DROP Spamhaus DROP Listed Traffic Inbound group 26). Ip 138.94.219.86 performed 'crowdsecurity/suricata-major-severity' (1 events over 0s) at 2026-05-13 19:17:34.908147048 +0000 UTC
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2026-04-20 01:18:13
(2 months ago)
[Mon Apr 20 08:18:12.955762 2026] [security2:error] [pid 2082273:tid 140256362784448] [client 138.94 ...
show more
[Mon Apr 20 08:18:12.955762 2026] [security2:error] [pid 2082273:tid 140256362784448] [client 138.94.219.86:44382] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.yahoo.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.25.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "623"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.yahoo.go.id found within REQUEST_HEADERS:Referer: https://www.yahoo.go.id/ request_line = GET /index.php/informasi-iklim/buletin-1/buletin-informasi-iklim-dan-lingkungan HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/buletin-1/buletin-informasi-iklim-dan-lingkungan"] [unique_id "aeV-1ObHwdtIhjMyFKQ4cwAAABg"], referer https://www.yahoo.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[2082298] [7tyHEhqfOgQ] [aeV-1ObHwdtIhjMyFKQ4cwAAABg] keep_alive=[1] [2026-04-20 08:18:12.955766] [R:aeV-1ObHwdtIhjMyFKQ4cwAAABg] UA:'Mozilla/5.0 (Linux;
...
show less
Email Spam
Hacking
๐บ๐ธ
ipblock.com
2025-07-02 11:15:00
(11 months ago)
IPBlock protected site ID [4055-d][s=04].
Persistent 404, vulnerability scanner
Hacking
Bad Web Bot
Web App Attack
Showing 1 to
5
of 5 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: