AbuseIPDB » 182.9.48.75
182.9.48.75 was found in our database!
This IP was reported 10 times. Confidence of
Abuse
is 11% : ?
ISP
PT. Telekomunikasi Selular (Telkomsel) Indonesia
Usage Type
Fixed Line ISP
ASN
AS23693
Domain Name
telkomsel.co.id
Country
๐ฎ๐ฉ
Indonesia
City
Medan, North Sumatra
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 182.9.48.75 :
This IP address has been reported a total of
10
times from
9 distinct
sources.
182.9.48.75 was first reported on
March 24th 2026 , and the most recent report was
4 hours ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ซ๐ท
thecocasio
2026-09-18 05:05:11
(4 hours ago)
PortSentry honeypot: unsolicited TCP connection to closed decoy port 445 (SMB) on a host running no ...
show more
PortSentry honeypot: unsolicited TCP connection to closed decoy port 445 (SMB) on a host running no such service. Automated port-scan detection at 2026-09-18T05:05:10Z.
show less
Port Scan
๐บ๐ธ
kosada.com
2026-08-25 01:20:39
(3 weeks ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
Anonymous
2026-07-06 03:45:16
(2 months ago)
Large-scale coordinated botnet (200+k IPs). Attacker: mikhail-smirnov-79830323 (LinkedIn/profile ID) ...
show more
Large-scale coordinated botnet (200+k IPs). Attacker: mikhail-smirnov-79830323 (LinkedIn/profile ID) employed by Angara Technologies Group (Explicitly identified himself as enemy a week before attack began) | Attack Signature Blocked: /brands/fortinet/shopby/manufacturer-lsi-sms-aruba_networks-haivision-sanus-xyz-fortinet.html | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 | (Magento Site)
show less
Hacking
Bad Web Bot
๐บ๐ธ
kosada.com
2026-07-03 15:39:43
(2 months ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐ฉ๐ช
pltcldvlpr
2026-06-29 01:03:11
(2 months ago)
Bogus Useragent: 182.9.48.75 - - [29/Jun/2026:03:03:10 +0200] "GET /protocol?id=bb_3_18¶graph=99 ...
show more
Bogus Useragent: 182.9.48.75 - - [29/Jun/2026:03:03:10 +0200] "GET /protocol?id=bb_3_18¶graph=9984&seq=556 HTTP/1.1" 444 0 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows CE; Trident/3.1)" asn=23693 org="PT. Telekomunikasi Selular" country=ID
...
show less
Bad Web Bot
๐ฎ๐ฉ
hermawan
2026-06-09 11:48:34
(3 months ago)
[Tue Jun 09 18:48:29.432822 2026] [security2:error] [pid 490705:tid 139738848294592] [client 182.9.4 ...
show more
[Tue Jun 09 18:48:29.432822 2026] [security2:error] [pid 490705:tid 139738848294592] [client 182.9.48.75:15629] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:Referer: https://www.bmkg.go.id/ request_line = GET /index.php/analisis-iklim/analisis-musim/perbandingan-musim-kemarau/perbandingan-awal-musim-kemarau-dengan-normalnya HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/analisis-iklim/analisis-musim/perbandingan-musim-kemarau/perbandingan-awal-musim-kemarau-dengan-normalnya"] [unique_id "aif9je1P5xkXX-BDiGaGCAAADgM"], referer https://www.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[490709] [OSqftBDGf5c] [aif9je1P5xkXX-BDiGaGCAAADgM] keep_alive=[1] [2026-06-09
...
show less
Email Spam
Hacking
๐ท๐ธ
Scan
2026-06-09 00:40:27
(3 months ago)
MultiHost/MultiPort Probe, Scan, Hack -
Port Scan
Hacking
๐ฉ๐ช
Tamsy
2026-04-06 16:45:50
(5 months ago)
SMTP - Brute-force attack
Brute-Force
๐น๐ท
rtbh.com.tr
2026-03-24 04:12:13
(5 months ago)
list.rtbh.com.tr report: tcp/445
Brute-Force
๐ณ๐ฑ
EGP Abuse Dept
2026-03-24 01:42:55
(5 months ago)
Unsolicited connection to port 445
Port Scan
Hacking
Showing 1 to
10
of 10 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: