AbuseIPDB » 147.136.66.213
147.136.66.213 was found in our database!
This IP was reported 4 times. Confidence of
Abuse
is 0%: ?
| ISP |
Darkness Reigns (Holding) B.V.
|
| Usage Type |
Data Center/Web Hosting/Transit
|
| ASN |
AS212238
|
| Domain Name |
darkness-reigns.net
|
| Country |
๐ฟ๐ฆ
South Africa
|
| City |
Johannesburg, Gauteng
|
IP info including ISP, Usage Type, and Location provided
by IPInfo. Updated weekly.
IP Abuse Reports for 147.136.66.213:
This IP address has been reported a total of
4
times from
2 distinct
sources.
147.136.66.213 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
| Reporter |
IoA Timestamp (UTC)
|
Comment |
Categories |
|
|
๐ฎ๐ฉ
hermawan
|
|
[Sat Jun 20 15:29:47.931533 2026] [security2:error] [pid 271561:tid 140473226798784] [client 147.136 ...
show more
[Sat Jun 20 15:29:47.931533 2026] [security2:error] [pid 271561:tid 140473226798784] [client 147.136.66.213:35846] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.yandex.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.yandex.go.id found within REQUEST_HEADERS:Referer: https://www.yandex.go.id/ request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-bulanan/infografis-bulanan-iklim-ekstrim HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-bulanan/infografis-bulanan-iklim-ekstrim"] [unique_id "ajZPe6wGmcdR7pCiqxvQBAAAjxg"], referer https://www.yandex.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[271587] [TMtCNiu/y5s] [ajZPe6wGmcdR7pCiqxvQBAAAjxg] keep_alive=[1] [2026-06-20 15:29:47.931542] [R:ajZPe6wGmc
...
show less
|
Email Spam
Hacking
|
|
|
๐ฎ๐ฉ
hermawan
|
|
05/25/2026-15:13:38.208821 [Drop] [**] [1:2100001887:0] Suricata match TLS ja4 scan Uniq Zeek no 18 ...
show more
05/25/2026-15:13:38.208821 [Drop] [**] [1:2100001887:0] Suricata match TLS ja4 scan Uniq Zeek no 1887 with hash_t13d1715h2_5b57614c22b0_a54fffd0eb61 [**] [Classification: (null)] [Priority: 3] {TCP} 147.136.66.213:6008 -> 103.166.156.58:443
...
show less
|
Email Spam
Hacking
|
|
|
๐ซ๐ท
PHENIX EVENT
|
|
|
Web App Attack
|
|
|
๐ฎ๐ฉ
hermawan
|
|
04/22/2026-19:11:56.099782 [Drop] [**] [1:3100002542:0] Suricata match TLS JA3 scan Uniq Zeek no 25 ...
show more
04/22/2026-19:11:56.099782 [Drop] [**] [1:3100002542:0] Suricata match TLS JA3 scan Uniq Zeek no 2542 with hash_cd08e31494f9531f560d64c695473da9 [**] [Classification: (null)] [Priority: 3] {TCP} 147.136.66.213:54168 -> 103.166.156.58:443
...
show less
|
Email Spam
Hacking
|
|
Showing 1 to
4
of 4 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: