This IP address has been reported a total of
35
times from
11 distinct
sources.
152.42.201.245 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
{"level":"info","ts":1754858970.7693005,"logger":"http.log.access.log1","msg":"handled request","req ...
show more{"level":"info","ts":1754858970.7693005,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"152.42.201.245","remote_port":"63886","client_ip":"152.42.201.245","proto":"HTTP/1.1","method":"GET","host":"gajigesa.bestweb.id","uri":"/ckeditor/kcfinder/upload.php","headers":{"Connection":["keep-alive"],"User-Agent":["Mozilla/5.0 (Linux; Android 10; Redmi Note 9 Pro Build/QKQ1.191215.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/83.0.4103.101 Mobile Safari/537.36"],"Accept-Encoding":["gzip, deflate"],"Accept":["*/*"]}},"bytes_read":0,"user_id":"","duration":0.00006579,"size":0,"status":308,"resp_headers":{"Connection":["close"],"Location":["https://gajigesa.bestweb.id/ckeditor/kcfinder/upload.php"],"Content-Type":[],"Server":["Caddy"]}}
{"level":"info","ts":1754858973.4600177,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"152.42.201.245","remote_port":"50118","client_ip":"152.42.201.245","proto":"HTTP/1.1","met
...
show less
152.42.201.245 (AS14061 DIGITALOCEAN-ASN) was intercepted at 2025-08-06T14:07:44Z after violating WA ...
show more152.42.201.245 (AS14061 DIGITALOCEAN-ASN) was intercepted at 2025-08-06T14:07:44Z after violating WAF directive: 874a3e315c344b1281ad4f00046aab6f. Pre-cautionary/corrective action applied: block.
show less
152.42.201.245 (AS14061 DIGITALOCEAN-ASN) was intercepted at 2025-08-06T14:00:18Z after violating WA ...
show more152.42.201.245 (AS14061 DIGITALOCEAN-ASN) was intercepted at 2025-08-06T14:00:18Z after violating WAF directive: 874a3e315c344b1281ad4f00046aab6f. Pre-cautionary/corrective action applied: managed_challenge.
show less
{"level":"info","ts":1754074891.2615378,"logger":"http.log.access.log1","msg":"handled request","req ...
show more{"level":"info","ts":1754074891.2615378,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"152.42.201.245","remote_port":"56757","client_ip":"152.42.201.245","proto":"HTTP/1.1","method":"GET","host":"gajigesa.bestweb.id","uri":"/ckeditor/kcfinder/upload.php","headers":{"User-Agent":["Mozilla/5.0 (Linux; Android 10; Redmi Note 9 Pro Build/QKQ1.191215.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/83.0.4103.101 Mobile Safari/537.36"],"Accept-Encoding":["gzip, deflate"],"Accept":["*/*"],"Connection":["keep-alive"]}},"bytes_read":0,"user_id":"","duration":0.00006226,"size":0,"status":308,"resp_headers":{"Server":["Caddy"],"Connection":["close"],"Location":["https://gajigesa.bestweb.id/ckeditor/kcfinder/upload.php"],"Content-Type":[]}}
{"level":"info","ts":1754074898.081759,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"152.42.201.245","remote_port":"57146","client_ip":"152.42.201.245","proto":"HTTP/1.1","meth
...
show less
(php_susp_dir) srv102 PHP in suspicious dir 152.42.201.245 (SG/Singapore/-): 1 in the last 3600 secs ...
show more(php_susp_dir) srv102 PHP in suspicious dir 152.42.201.245 (SG/Singapore/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
(php_susp_dir) srv102 PHP in suspicious dir 152.42.201.245 (SG/Singapore/-): 1 in the last 3600 secs ...
show more(php_susp_dir) srv102 PHP in suspicious dir 152.42.201.245 (SG/Singapore/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
(php_susp_dir) srv102 PHP in suspicious dir 152.42.201.245 (SG/Singapore/-): 1 in the last 3600 secs ...
show more(php_susp_dir) srv102 PHP in suspicious dir 152.42.201.245 (SG/Singapore/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
Showing 1 to
15
of 35 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ