AbuseIPDB » 142.111.98.188
142.111.98.188 was found in our database!
This IP was reported 3 times. Confidence of
Abuse
is 0%: ?
| ISP |
Ace Data Centers II, L.L.C.
|
| Usage Type |
Data Center/Web Hosting/Transit
|
| ASN |
AS393886
|
| Hostname(s) |
142-111-98-188.ips.acedatacenter.com
|
| Domain Name |
acedatacenter.com
|
| Country |
๐บ๐ธ
United States of America
|
| City |
Miami, Florida
|
IP info including ISP, Usage Type, and Location provided
by IPInfo. Updated weekly.
IP Abuse Reports for 142.111.98.188:
This IP address has been reported a total of
3
times from
2 distinct
sources.
142.111.98.188 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
| Reporter |
IoA Timestamp (UTC)
|
Comment |
Categories |
|
|
Anonymous
|
|
[Wed Dec 31 13:54:47.699918 2025] [:error] [pid 3947401:tid 3947401] [client 142.111.98.188:33621] M ...
show more
[Wed Dec 31 13:54:47.699918 2025] [:error] [pid 3947401:tid 3947401] [client 142.111.98.188:33621] ModSecurity: Warning. Matched "Operator `Within' with parameter `.ani/ .asa/ .asax/ .ascx/ .back/ .backup/ .bak/ .bck/ .bk/ .bkp/ .bat/ .cdx/ .cer/ .cfg/ .cmd/ .cnf/ .com/ .compositefont/ .config/ .conf/ .copy/ .crt/ .cs/ .csproj/ .csr/ .dat/ .db/ .dbf/ .dist/ .dll (418 characters omitted)' against variable `TX:EXTENSION' (Value: `.bak/' ) [file "/usr/local/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "1039"] [id "920440"] [rev ""] [msg "URL file extension is restricted by policy"] [data ".bak"] [severity "2"] [ver "OWASP_CRS/4.22.0-dev"] [maturity "0"] [accuracy "0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "OWASP_CRS/PROTOCOL-ENFORCEMENT"] [tag "capec/1000/210/272"] [uri "/.env.bak"] [unique_id "176718568773.765049"] [ref "o4,4o5,3v5,
...
show less
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:221260) triggered by 142.111.98.188 (142-111-98-188.ips.acedatacente ...
show more
(mod_security) mod_security (id:221260) triggered by 142.111.98.188 (142-111-98-188.ips.acedatacenter.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 22:51:53.950654 2025] [security2:error] [pid 26530:tid 26530] [client 142.111.98.188:57211] ModSecurity: Access denied with code 403 (phase 1). Pattern match "^(?:\\\\'\\\\w+?=)?\\\\(\\\\)\\\\s{" at MATCHED_VAR. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "77"] [id "221260"] [rev "3"] [msg "COMODO WAF: Shellshock Command Injection Vulnerabilities in GNU Bash through 4.3 bash43-026 (CVE-2014-7187, CVE-2014-7186, CVE-2014-7169, CVE-2014-6278, CVE-2014-6277, CVE-2014-6271)||cpcontacts.farmers123.com:80|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.farmers123.com"] [uri "/debug.cgi"] [unique_id "aS-z2bG2c5QU3DB2D15ExAAAABw"], referer: () { ignored; }; echo Content-Type: text/html; echo ; /bin/cat /etc/passwd
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 142.111.98.188 (142-111-98-188.ips.acedatacente ...
show more
(mod_security) mod_security (id:210730) triggered by 142.111.98.188 (142-111-98-188.ips.acedatacenter.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 12 05:52:31.673258 2025] [security2:error] [pid 2295:tid 2295] [client 142.111.98.188:37777] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||nbcnewsradio.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "nbcnewsradio.com"] [uri "/MyErrors.log"] [unique_id "aRRm7yOgO6JYAjJbZd6emQAAAAw"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
Showing 1 to
3
of 3 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: