This IP address has been reported a total of
5
times from
5 distinct
sources.
182.253.127.236 was first reported on
May 16th 2022 , and the most recent report was
2 weeks ago .
In the last 60 days, the only reporter location was:
Indonesia
with 2
reports.
The most common categories in these recent reports were:
Email Spam
1
time;
Hacking
1
time;
Web App Attack
1
time;
Port Scan
1
time.
Old Reports
The most recent abuse report for this IP address is from
2 weeks ago . It is possible that this IP is no
longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฎ๐ฉ
hermawan
2026-09-24 03:34:08
(2 weeks ago)
[Thu Sep 24 10:33:35.263083 2026] [security2:error] [pid 47776:tid 139648554747584] [client 182.253. ...
show more
[Thu Sep 24 10:33:35.263083 2026] [security2:error] [pid 47776:tid 139648554747584] [client 182.253.127.236:0] ModSecurity: Access denied with code 403 (phase 1). Match of "pm matomo.staklim-malang.info " against "SERVER_NAME" required. [file "/etc/modsecurity/coreruleset-4.29.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "208"] [id "440235"] [msg "BAD REQUEST Bro"] [data " Matched Data ARGS charset: - Matched Data TX.1: found within Content-Type multipart form Matched Data: %3a found within SERVER_NAME: staklim-jatim.bmkg.go.id request_line = GET /index.php/profil/arsip-artikel?catid=476&id=539%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-19-mei-25-mei-2015&start=190 HTTP/1.1 Request URI RAW = /index.php/profil/arsip-artikel?catid=476&id=539%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-19-mei-25-mei-2015&start=..."] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/arsip-artikel"] [unique_id "arSaD6Zp26r
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
RemyLebeau
2026-09-17 05:31:28
(3 weeks ago)
Web App Attack
Port Scan
๐บ๐ธ
TPI-Abuse
2023-11-21 02:43:42
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 182.253.127.236 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 182.253.127.236 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 20 21:43:36.812925 2023] [security2:error] [pid 21757] [client 182.253.127.236:13988] [client 182.253.127.236] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/sftp-config.json" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.fo-to.com"] [uri "/sftp-config.json"] [unique_id "ZVwZWETUj_TRcy5iHnKFGAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
georgengelmann
2023-09-28 22:59:24
(3 years ago)
Failed login attempt for username
Brute-Force
SSH
๐ฉ๐ช
clamehost.it
2022-05-16 02:09:33
(4 years ago)
Automatic report - Brute Force attack using this IP address
Brute-Force
Showing 1 to
5
of 5 reports