This IP address has been reported a total of
2
times from
2 distinct
sources.
179.9.198.2 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
France
with 1
report;
Indonesia
with 1
report.
The most common categories in these recent reports were:
DDoS Attack
1
time;
Exploited Host
1
time;
Hacking
1
time;
Email Spam
1
time.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
[Sun Oct 04 06:56:59.324632 2026] [security2:error] [pid 979662:tid 139890155050688] [client 179.9.1 ...
show more[Sun Oct 04 06:56:59.324632 2026] [security2:error] [pid 979662:tid 139890155050688] [client 179.9.198.2:0] ModSecurity: Access denied with code 403 (phase 1). Match of "pm matomo.staklim-malang.info " against "SERVER_NAME" required. [file "/etc/modsecurity/coreruleset-4.29.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "208"] [id "440235"] [msg "BAD REQUEST Bro"] [data " Matched Data ARGS charset: - Matched Data TX.1: found within Content-Type multipart form Matched Data: %3a found within SERVER_NAME: staklim-jatim.bmkg.go.id request_line = GET /index.php/profil/arsip-artikel?catid=500&id=1200%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-8-14-november-2016&start=10 HTTP/1.1 Request URI RAW = /index.php/profil/arsip-artikel?catid=500&id=1200%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-8-14-november-2016&start..."] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/arsip-artikel"] [unique_id "asGWSy9KaZsJbk
...
show less
UDP flood attack on 31.56.58.23 UDP:80 and UDP:9100 (2026-08-15 17:53-17:57 UTC). Peak aggregate 32 ...
show moreUDP flood attack on 31.56.58.23 UDP:80 and UDP:9100 (2026-08-15 17:53-17:57 UTC). Peak aggregate 32 Gbps / 1.95 Mpps against victim AS215599 - RTBH mitigation triggered. This IP (AS7418) sent ~4711 packets (6.51 MB) during the attack window. Likely a compromised device (Mirai-like botnet).
show less
DDoS Attack
Exploited Host
Showing 1 to
2
of 2 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown 🚩