AbuseIPDB » 185.116.172.78
185.116.172.78 was found in our database!
This IP was reported 5 times. Confidence of
Abuse
is 4% : ?
ISP
NGS
Usage Type
Fixed Line ISP
ASN
AS25335
Domain Name
ngsuk.com
Country
๐ฌ๐ง
United Kingdom of Great Britain and Northern Ireland
City
London, England
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 185.116.172.78 :
This IP address has been reported a total of
5
times from
1 distinct
source.
185.116.172.78 was first reported on
May 27th 2026 , and the most recent report was
7 hours ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฎ๐ฉ
hermawan
2026-07-01 14:38:52
(7 hours ago)
[Wed Jul 01 21:38:52.041903 2026] [security2:error] [pid 441530:tid 139637510100672] [client 185.116 ...
show more
[Wed Jul 01 21:38:52.041903 2026] [security2:error] [pid 441530:tid 139637510100672] [client 185.116.172.78:46744] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "601"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:Referer: https://www.bmkg.go.id/ request_line = GET /index.php/profil/meteorologi/list-all-categories HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-all-categories"] [unique_id "akUmfMTXzd88o-tenHUmuwACFgE"], referer https://www.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[441532] [MyB2ps3oaAI] [akUmfMTXzd88o-tenHUmuwACFgE] keep_alive=[1] [2026-07-01 21:38:52.041915] [R:akUmfMTXzd88o-tenHUmuwACFgE] UA:'Mozilla/5.0 (Linux; Android 11; SM-S901B) AppleWebKit/537.36 (KHTML, like Gec
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2026-06-25 13:28:22
(6 days ago)
[Thu Jun 25 20:28:18.196534 2026] [security2:error] [pid 211815:tid 140398238959296] [client 185.116 ...
show more
[Thu Jun 25 20:28:18.196534 2026] [security2:error] [pid 211815:tid 140398238959296] [client 185.116.172.78:52986] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:Referer: https://www.bmkg.go.id/ request_line = GET /index.php/informasi-iklim/buletin-1/buletin-informasi-iklim-dan-lingkungan HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/buletin-1/buletin-informasi-iklim-dan-lingkungan"] [unique_id "aj0s8mPHTLprXgZOgDhA7QAFUhI"], referer https://www.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[211834] [ZkQL9xPkSyg] [aj0s8mPHTLprXgZOgDhA7QAFUhI] keep_alive=[1] [2026-06-25 20:28:18.196538] [R:aj0s8mPHTLprXgZOgDhA7QAFUhI] UA:'Mozilla/5.0 (Linux; U; An
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2026-06-19 20:00:19
(1 week ago)
[Sat Jun 20 03:00:15.127807 2026] [security2:error] [pid 1410183:tid 140501137266368] [client 185.11 ...
show more
[Sat Jun 20 03:00:15.127807 2026] [security2:error] [pid 1410183:tid 140501137266368] [client 185.116.172.78:60834] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:Referer: https://www.bmkg.go.id/ request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561307-infografis-perubahan-iklim-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561307-infografis-perubahan-iklim-jawa-timur"] [unique_id "ajWfz5wveUHu-Z7vi-Y8CwACCRg"], referer https://www.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[1410208] [6mezvWBQmFM] [ajWfz5wveUHu-Z7vi-Y8CwACCRg] keep_alive=[1] [2026-06
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2026-06-02 09:29:10
(4 weeks ago)
[Tue Jun 02 16:29:06.058622 2026] [security2:error] [pid 293535:tid 140637123897024] [client 185.116 ...
show more
[Tue Jun 02 16:29:06.058622 2026] [security2:error] [pid 293535:tid 140637123897024] [client 185.116.172.78:17880] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.yandex.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.yandex.go.id found within REQUEST_HEADERS:Referer: https://www.yandex.go.id/ request_line = GET /index.php/prediksi-iklim/prediksi-dasarian/monitoring-dan-prediksi-curah-hujan HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prediksi-iklim/prediksi-dasarian/monitoring-dan-prediksi-curah-hujan"] [unique_id "ah6iYsMCOZ7O8dIGjN9KbwABAgE"], referer https://www.yandex.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[293537] [FHNA8UH+ob8] [ah6iYsMCOZ7O8dIGjN9KbwABAgE] keep_alive=[1] [2026-06-02 16:29:06.058631] [R:ah6iYsMCOZ7O8dIGjN9KbwABAgE] UA:'Mozilla/5
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2026-05-27 07:21:09
(1 month ago)
[Wed May 27 14:21:08.309586 2026] [security2:error] [pid 655461:tid 139875475035840] [client 185.116 ...
show more
[Wed May 27 14:21:08.309586 2026] [security2:error] [pid 655461:tid 139875475035840] [client 185.116.172.78:53966] ModSecurity: Access denied with code 403 (phase 1). Match of "eq 0" against "&REQUEST_HEADERS:Transfer-Encoding" required. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "815"] [id "920171"] [msg "GET or HEAD Request with Transfer-Encoding"] [data " Matched Data ARGS charset: - Matched Data TX.1: found within Content-Type multipart form Matched Data: GET found within REQUEST_HEADERS: 1 request_line = GET /index.php/analisis-iklim/analisis-bulanan/analisis-distribusi-hujan/analisis-distribusi-curah-hujan HTTP/2.0 Request URI RAW = /index.php/analisis-iklim/analisis-bulanan/analisis-distribusi-hujan/analisis-distribusi-curah-hujan Request Basename = analisis-distribusi-curah-hujan"] [severity "CRITICAL"] [ver "OWASP_CRS/4.26.0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [t
...
show less
Email Spam
Hacking
Showing 1 to
5
of 5 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: