AbuseIPDB » 180.254.68.223
180.254.68.223 was found in our database!
This IP was reported 10 times. Confidence of
Abuse
is 10% : ?
ISP
PT TELKOM INDONESIA
Usage Type
Fixed Line ISP
ASN
AS7713
Domain Name
telkom.co.id
Country
๐ฎ๐ฉ
Indonesia
City
Tangerang, Banten
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 180.254.68.223 :
This IP address has been reported a total of
10
times from
8 distinct
sources.
180.254.68.223 was first reported on
May 25th 2021 , and the most recent report was
23 hours ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐จ๐ฆ
Blinker73
2026-08-23 05:39:19
(23 hours ago)
2026-08-23T01:39 kernel: OUT= SRC=180.254.68.223 LEN=44 TOS=0x00 PREC=0x00 TTL=235 ID=32616 DF ...
show more
2026-08-23T01:39 kernel: OUT= SRC=180.254.68.223 LEN=44 TOS=0x00 PREC=0x00 TTL=235 ID=32616 DF PROTO=TCP SPT=36828 DPT=23 WINDOW=65535 RES=0x00 SYN URGP=0
2026-08-23T01:39 kernel: OUT= SRC=180.254.68.223 LEN=44 TOS=0x00 PREC=0x00 TTL=235 ID=43494 DF PROTO=TCP SPT=36828 DPT=23 WINDOW=65535 RES=0x00 SYN URGP=0
2026-08-23T01:39 kernel: OUT= SRC=180.254.68.223 LEN=44 TOS=0x00 PREC=0x00 TTL=235 ID=54963 DF PROTO=TCP SPT=36828 DPT=23 WINDOW=65535 RES=0x00 SYN URGP=
show less
Port Scan
๐ฉ๐ช
pltcldvlpr
2026-07-04 01:32:56
(1 month ago)
Bogus Useragent: 180.254.68.223 - - [04/Jul/2026:03:32:56 +0200] "GET /protocol?id=st_5_89&offset=11 ...
show more
Bogus Useragent: 180.254.68.223 - - [04/Jul/2026:03:32:56 +0200] "GET /protocol?id=st_5_89&offset=1100&seq=1130 HTTP/1.1" 444 0 "-" "Mozilla/5.0 (compatible; MSIE 7.0; Windows NT 5.01; Trident/3.1)" asn=7713 org="Telekomunikasi Indonesia (PT)" country=ID
...
show less
Bad Web Bot
๐ฎ๐ฉ
sockominfo
2026-06-19 21:00:53
(2 months ago)
SIMASN Account Signin during non bussiness hour.. Threat Score: 8.2/10 (CRITICAL). Confidence: 75%. ...
show more
SIMASN Account Signin during non bussiness hour.. Threat Score: 8.2/10 (CRITICAL). Confidence: 75%. CVSS v3.1: 7.3/10 (High). CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L. Bayesian Probability: 99%. MITRE ATT&CK: T1071 (Application Layer Protocol). Tactic: TA0001. Freshness: Fresh. Source Reputation: SUSPICIOUS. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-06-19 20:00:09
(2 months ago)
SIMASN Account Signin during non bussiness hour.. Threat Score: 6.7/10 (MEDIUM). Reported by Tangera ...
show more
SIMASN Account Signin during non bussiness hour.. Threat Score: 6.7/10 (MEDIUM). Reported by TangerangKota-CSIRT
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-06-19 18:00:53
(2 months ago)
User login to application during non-business hours. Threat Score: 6.7/10 (HIGH). Confidence: 40%. C ...
show more
User login to application during non-business hours. Threat Score: 6.7/10 (HIGH). Confidence: 40%. CVSS v3.1: 4.6/10 (Medium). CVSS Vector: CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L. Bayesian Probability: 93%. MITRE ATT&CK: T1046 (Network Service Scanning). Tactic: TA0001. Freshness: Very Fresh. Source Reputation: UNKNOWN. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ซ๐ท
security.rdmc.fr
2024-11-25 17:20:02
(1 year ago)
Port Scan Attack proto:TCP src:56393 dst:23
Port Scan
๐ฆ๐บ
Block Rockin' Beats
2024-11-24 22:52:06
(1 year ago)
Attempted connection to TCP port 23
Port Scan
Anonymous
2024-11-24 11:18:05
(1 year ago)
Unauthorized connection attempt on Port 23
Port Scan
Hacking
Exploited Host
๐ฟ๐ฆ
Birdflew
2023-07-18 00:31:05
(3 years ago)
Failed IMAP login
Brute-Force
๐ฉ๐ช
KPS
2021-05-25 03:04:30
(5 years ago)
PortscanT
Port Scan
Showing 1 to
10
of 10 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: