Log in to view charts and search reports for this IP.
Log In
No reports in the last 60 days
139.5.157.49 has been reported 43
times. The most recent report is from
.
The full history is preserved below and remains searchable. A
0% score reflects the absence of recent activity, but
this is not a guarantee that earlier reports were invalid. Abuse confidence score decays,
naturally, over time, when the abusive activity stops.
[Mon May 18 08:13:48.677095 2026] [security2:error] [pid 9246:tid 140442199824064] [client 139.5.157 ...
show more[Mon May 18 08:13:48.677095 2026] [security2:error] [pid 9246:tid 140442199824064] [client 139.5.157.49:27758] ModSecurity: Access denied with code 403 (phase 1). Match of "eq 0" against "&REQUEST_HEADERS:Transfer-Encoding" required. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "857"] [id "920171"] [msg "GET or HEAD Request with Transfer-Encoding"] [data " Matched Data ARGS charset: - Matched Data TX.1: found within Content-Type multipart form Matched Data: GET found within REQUEST_HEADERS: 1 request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561307-infografis-perubahan-iklim-jawa-timur HTTP/2.0 Request URI RAW = /index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561307-infografis-perubahan-iklim-jawa-timur Request Basename = 555561307-infografis-perubahan-iklim-jawa-timur"] [severity "CRITICAL"] [ver "OWASP_CRS/4.26.0"] [tag "application-multi"] [tag "language-multi"] [tag "p
...
show less
received unsolicited smtp data stream:
Message-ID: <29F6A9B6D876E9C718475836980729F6@X5G2O3C91>
From ...
show morereceived unsolicited smtp data stream:
Message-ID: <29F6A9B6D876E9C718475836980729F6@X5G2O3C91>
From: <[email protected]>
To: <[email protected]>
Subject: =?utf-8?B?U3UgY3VlbnRhIGhhIHNpZG8gaGFja2VhZGEuIEhlIHJvYmFkbyBzdXMgZGF0b3MuIEF2ZXJpZ8O8ZSBj?= =?utf-8?B?w7NtbyByZWN1cGVyYXIgZWwgYWNjZXNvLg==?=
Date: 9 Aug 2023 01:46:08 +0600
MIME-Version: 1.0
Content-Type: multipart/alternative;
boundary="----=_NextPart_000_002E_01D9CA35.05DA7922"
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Windows Live Mail 15.4.3508.1109
X-MimeOLE: Produced By Microsoft MimeOLE V15.4.3508.1109
This is a multi-part message in MIME format.
------=_NextPart_000_002E_01D9CA35.05DA7922
Content-Type: text/plain;
charset="cp-850"
Content-Transfer-Encoding: quoted-printable
Hola,Soy hacker y he conseguido acceder a su sistema =
operativo.También tengo total acceso a su cuenta.Llevo varios meses =
vigilándole.La cuestión es que su ordenador se infectó =
con un malware cuando usted visitó un sitio para adult
show less
Email Spam
Anonymous
Aug 7 12:03:58 mail postfix/smtpd[2422246]: NOQUEUE: reject: RCPT from unknown[139.5.157.49]: 450 4 ...
show moreAug 7 12:03:58 mail postfix/smtpd[2422246]: NOQUEUE: reject: RCPT from unknown[139.5.157.49]: 450 4.7.1 Client host rejected: cannot find your reverse hostname, [139.5.157.49]; from=<[email protected]> to=<[email protected]> proto=ESMTP helo=<[139.5.157.49]>
Aug 7 12:04:59 mail postfix/smtpd[2422246]: NOQUEUE: reject: RCPT from unknown[139.5.157.49]: 450 4.7.1 Client host rejected: cannot find your reverse hostname, [139.5.157.49]; from=<[email protected]> to=<[email protected]> proto=ESMTP helo=<[139.5.157.49]>
Aug 7 12:05:31 mail postfix/smtpd[2422246]: NOQUEUE: reject: RCPT from unknown[139.5.157.49]: 450 4.7.1 Client host rejected: cannot find your reverse hostname, [139.5.157.49]; from=<[email protected]> to=<[email protected]> proto=ESMTP helo=<[139.5.157.49]>
...
show less
Jul 19 11:50:50 sean postfix/smtpd[750517]: NOQUEUE: reject: RCPT from unknown[139.5.157.49]: 554 5. ...
show moreJul 19 11:50:50 sean postfix/smtpd[750517]: NOQUEUE: reject: RCPT from unknown[139.5.157.49]: 554 5.7.1 Service unavailable; Client host [139.5.157.49] blocked using zen.spamhaus.org; https://www.spamhaus.org/query/ip/139.5.157.49; from=<[email protected]> to=<[email protected]> proto=ESMTP helo=<[139.5.157.49]>
...
show less
Recognized SMTP spam attack with very high confidence, e.g. misbehaved in pre-connection test, liste ...
show moreRecognized SMTP spam attack with very high confidence, e.g. misbehaved in pre-connection test, listed in RBL, content scan, or connected through wrong MX initially.
show less