AbuseIPDB » 171.252.189.84
171.252.189.84 was found in our database!
This IP was reported 4 times. Confidence of
Abuse
is 13% : ?
ISP
Viettel Group
Usage Type
Fixed Line ISP
ASN
AS7552
Hostname(s)
dynamic-ip-adsl.viettel.vn
Domain Name
viettel.com.vn
Country
π»π³
Viet Nam
City
Thanh Ha, Hai Phong
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 171.252.189.84 :
This IP address has been reported a total of
4
times from
4 distinct
sources.
171.252.189.84 was first reported on
January 3rd 2021 , and the most recent report was
2 hours ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
π°π·
zlhIcd
2026-06-24 06:26:04
(2 hours ago)
171.252.189.84 - - [16/Jun/2026:08:58:09 +0900] "GET /pcwiki/index.php?days=30&from=20251129054444&h ...
show more
171.252.189.84 - - [16/Jun/2026:08:58:09 +0900] "GET /pcwiki/index.php?days=30&from=20251129054444&hideanons=1&hidebots=0&hidemyself=1&title=%ED%8A%B9%EC%88%98%EA%B8%B0%EB%8A%A5:%EB%A7%81%ED%81%AC%EC%B5%9C%EA%B7%BC%EB%B0%94%EB%80%9C HTTP/1.1" 404 460 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_3_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.6367.155 Safari/537.36"
...
show less
Web Spam
SQL Injection
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-08 21:23:40
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 171.252.189.84 (dynamic-adsl.viettel.vn): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 171.252.189.84 (dynamic-adsl.viettel.vn): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 17:23:32.316220 2026] [security2:error] [pid 11999:tid 11999] [client 171.252.189.84:7000] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.franzexpress.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.franzexpress.com"] [uri "/franzexpress.com"] [unique_id "aicy1IP75DSAVg1kR018rwAAAAk"], referer: http://www.franzexpress.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
hostseries
2025-06-21 08:43:12
(1 year ago)
Trigger: LF_DISTATTACK
Brute-Force
IrisFlower
2021-01-03 08:41:53
(5 years ago)
Unauthorized connection attempt detected from IP address 171.252.189.84 to port 445 [T]
Port Scan
Showing 1 to
4
of 4 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown π©
Recently Reported IPs: