AbuseIPDB » 180.248.22.28
180.248.22.28 was found in our database!
This IP was reported 7 times. Confidence of
Abuse
is 24% : ?
ISP
PT TELKOM INDONESIA
Usage Type
Fixed Line ISP
ASN
AS7713
Domain Name
telkom.co.id
Country
๐ฎ๐ฉ
Indonesia
City
Malang, East Java
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 180.248.22.28 :
This IP address has been reported a total of
7
times from
7 distinct
sources.
180.248.22.28 was first reported on
January 16th 2024 , and the most recent report was
2 days ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
2026-06-04 07:09:43
(2 days ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
๐บ๐ธ
MPL
2026-06-03 18:17:45
(2 days ago)
tcp/80 (2 or more attempts)
Port Scan
๐จ๐ฆ
DRI
2026-06-03 17:34:54
(2 days ago)
Unsolicited TCP traffic on Honeypot, srcport=7970 dstport=80
Port Scan
Hacking
Anonymous
2024-05-06 02:52:47
(2 years ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ฎ๐ฉ
hermawan
2024-02-29 04:14:58
(2 years ago)
[Thu Feb 29 11:14:55.871937 2024] [security2:error] [pid 210060:tid 136510819010112] [client 180.248 ...
show more
[Thu Feb 29 11:14:55.871937 2024] [security2:error] [pid 210060:tid 136510819010112] [client 180.248.22.28:38157] [client 180.248.22.28] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "ru" at REQUEST_HEADERS:Accept-Language. [file "/etc/modsecurity/coreruleset-3.3.5/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "21"] [id "440001"] [msg "Seperti Ddos bahasa Rusia ada di ip vietnam 2.59.0.188 "] [data "Matched Data: ru found within REQUEST_HEADERS:Accept-Language: id-ID,id;q=0.9,en-US;q=0.8,en;q=0.7,ru;q=0.6 request_line = GET /index.php/meteorologi/564-prakiraan-meteorologi/prakiraan-cuaca-batu/1203-prakiraan-cuaca-batu HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/meteorologi/564-prakiraan-meteorologi/prakiraan-cuaca-batu/1203-prakiraan-cuaca-batu"] [unique_id "ZeAEv8p9xwiz6peB2w3llgAArwQ"], referer https://www.google.com/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[210065] [MPV1gCUlYpg] [ZeAEv8p9xwiz6peB2
...
show less
Hacking
Web App Attack
๐ฉ๐ช
ghostwarriors
2024-01-16 21:50:08
(2 years ago)
Unauthorized connection attempt detected, SSH Brute-Force
Port Scan
Brute-Force
SSH
๐ง๐ฌ
geddo.in
2024-01-16 21:20:10
(2 years ago)
Jan 16 14:19:11 mortgagebase xinetd[769]: START: telnet pid=32375 from=::ffff:180.248.22.28
Jan 16 1 ...
show more
Jan 16 14:19:11 mortgagebase xinetd[769]: START: telnet pid=32375 from=::ffff:180.248.22.28
Jan 16 14:19:32 mortgagebase xinetd[769]: START: telnet pid=32378 from=::ffff:180.248.22.28
Jan 16 14:19:51 mortgagebase xinetd[769]: START: telnet pid=32396 from=::ffff:180.248.22.28
Jan 16 14:20:08 mortgagebase xinetd[769]: START: telnet pid=32399 from=::ffff:180.248.22.28
...
show less
Brute-Force
Showing 1 to
7
of 7 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: