AbuseIPDB » 147.136.65.205
147.136.65.205 was found in our database!
This IP was reported 6 times. Confidence of
Abuse
is 14% : ?
ISP
Darkness Reigns (Holding) B.V.
Usage Type
Data Center/Web Hosting/Transit
ASN
AS212238
Domain Name
darkness-reigns.net
Country
๐ฟ๐ฆ
South Africa
City
Johannesburg, Gauteng
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 147.136.65.205 :
This IP address has been reported a total of
6
times from
3 distinct
sources.
147.136.65.205 was first reported on
April 20th 2026 , and the most recent report was
1 day ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฎ๐ฉ
hermawan
2026-06-27 00:48:28
(1 day ago)
[Sat Jun 27 07:48:27.510664 2026] [security2:error] [pid 678178:tid 139695051663040] [client 147.136 ...
show more
[Sat Jun 27 07:48:27.510664 2026] [security2:error] [pid 678178:tid 139695051663040] [client 147.136.65.205:45816] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.yahoo.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "601"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.yahoo.go.id found within REQUEST_HEADERS:Referer: https://www.yahoo.go.id/ request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-dasarian/infografis-dasarian-iklim HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-dasarian/infografis-dasarian-iklim"] [unique_id "aj8d26VeD6XC3qCIYRimjwAARBg"], referer https://www.yahoo.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[678203] [qfpNlXHlP3E] [aj8d26VeD6XC3qCIYRimjwAARBg] keep_alive=[1] [2026-06-27 07:48:27.510669] [R:aj8d26VeD6XC3qCIYRimjwAARB
...
show less
Email Spam
Hacking
๐ฉ๐ช
HandyTreff.de
2026-06-19 06:53:19
(1 week ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -43.216 (Bad < -10 / Very Bad < -20 ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -43.216 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Mobile Sa
show less
Web App Attack
Bad Web Bot
๐ฎ๐ฉ
hermawan
2026-06-15 04:15:37
(1 week ago)
[Mon Jun 15 11:15:34.514227 2026] [security2:error] [pid 731063:tid 139672740075200] [client 147.136 ...
show more
[Mon Jun 15 11:15:34.514227 2026] [security2:error] [pid 731063:tid 139672740075200] [client 147.136.65.205:20626] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "bing" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "254"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: bing found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (Linux; Android 14; SM-A137F Build/UP1A.231005.007; ) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/140.0.7339.51 Mobile Safari/537.36 BingSapphire/32.3.430811005 request_line = GET /index.php/prediksi-iklim/prediksi-dasarian/monitoring-dan-prediksi-curah-hujan HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prediksi-iklim/prediksi-dasarian/monitoring-dan-prediksi-curah-hujan"] [unique_id "ai98ZhkI80iK-5XLaByEsAAAThU"], referer https://staklim-jatim.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [st
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2026-05-28 08:27:01
(1 month ago)
[Thu May 28 15:26:57.903725 2026] [security2:error] [pid 553232:tid 139852218595008] [client 147.136 ...
show more
[Thu May 28 15:26:57.903725 2026] [security2:error] [pid 553232:tid 139852218595008] [client 147.136.65.205:55988] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bing.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bing.go.id found within REQUEST_HEADERS:Referer: https://www.bing.go.id/ request_line = GET /images/Klimatologi/Konferensi_Pers/2026/03_Maret_2026/Press_Release_Prediksi_Musim_Kemarau_2026.webp HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/Klimatologi/Konferensi_Pers/2026/03_Maret_2026/Press_Release_Prediksi_Musim_Kemarau_2026.webp"] [unique_id "ahf8UT_tRMT6Qzt31JAe3wAABAc"], referer https://www.bing.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[553240] [HIvRfZxwRQk] [ahf8UT_tRMT6Qzt31JAe3wAABAc] keep_alive=[1] [2026-05-28 15:26:57.903729] [R:ahf8UT
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2026-05-05 16:53:35
(1 month ago)
[Tue May 05 23:48:39.472896 2026] [security2:error] [pid 18190:tid 139749150934720] [client 147.136. ...
show more
[Tue May 05 23:48:39.472896 2026] [security2:error] [pid 18190:tid 139749150934720] [client 147.136.65.205:43654] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "bing" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.25.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "295"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: bing found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (Linux; Android 13; SM-A326B Build/TP1A.220624.014; ) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Mobile Safari/537.36 BingSapphire/32.3.430811006 request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561495-infografis-waspada-cuaca-ekstrem-di-masa-pancaroba HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561495-infografis-waspada-cuaca-ekstrem-di-masa-pancaroba"] [unique_id "afofZ_YSKZtfZVRVtoZShg
...
show less
Email Spam
Hacking
๐บ๐ธ
MPL
2026-04-20 19:24:05
(2 months ago)
tcp/443 (8 or more attempts)
Port Scan
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: