AbuseIPDB » 185.122.130.208
185.122.130.208 was found in our database!
This IP was reported 4 times. Confidence of
Abuse
is 3%: ?
| ISP |
NGS
|
| Usage Type |
Fixed Line ISP
|
| ASN |
AS25335
|
| Domain Name |
ngsuk.com
|
| Country |
๐ฌ๐ง
United Kingdom of Great Britain and Northern Ireland
|
| City |
London, England
|
IP info including ISP, Usage Type, and Location provided
by IPInfo. Updated weekly.
IP Abuse Reports for 185.122.130.208:
This IP address has been reported a total of
4
times from
1 distinct
source.
185.122.130.208 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
| Reporter |
IoA Timestamp (UTC)
|
Comment |
Categories |
|
|
๐ฎ๐ฉ
hermawan
|
|
[Wed Jun 17 17:43:01.969486 2026] [security2:error] [pid 1640964:tid 139897823291072] [client 185.12 ...
show more
[Wed Jun 17 17:43:01.969486 2026] [security2:error] [pid 1640964:tid 139897823291072] [client 185.122.130.208:23372] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.google.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.google.go.id found within REQUEST_HEADERS:Referer: https://www.google.go.id/ request_line = GET /index.php/e-buletin-untuk-kota-dan-kabupaten-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/e-buletin-untuk-kota-dan-kabupaten-di-provinsi-jawa-timur"] [unique_id "ajJ6NeBSikaiFg-rJ5GMLQABDQI"], referer https://www.google.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[1640994] [kgo/uTDUnYE] [ajJ6NeBSikaiFg-rJ5GMLQABDQI] keep_alive=[1] [2026-06-17 17:43:01.969490] [R:ajJ6NeBSikaiFg-rJ5GMLQABDQI] UA:'Mozilla/5.0 (Linux; Android
...
show less
|
Email Spam
Hacking
|
|
|
๐ฎ๐ฉ
hermawan
|
|
[Sat Jun 06 18:53:28.400096 2026] [authz_core:error] [pid 1843611:tid 140021347600064] [client 185.1 ...
show more
[Sat Jun 06 18:53:28.400096 2026] [authz_core:error] [pid 1843611:tid 140021347600064] [client 185.122.130.208:30510] AH01630: client denied by server configuration: /var/www/index.php, referer https://staklim-jatim.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[1843622] [TvfsbBRKE3A] [aiQKOGEclqAKrhV1tAFNjwABRQo] keep_alive=[1] [2026-06-06 18:53:28.400135] [R:aiQKOGEclqAKrhV1tAFNjwABRQo] UA:'Mozilla/5.0 (iPhone; CPU iPhone OS 15_5 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15_5 Mobile/15E148 Safari/604.1' Host:'staklim-jatim.bmkg.go.id:443' ACCEPT:'text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8' Referer:'https://staklim-jatim.bmkg.go.id/ Accept-Encoding:'gzip, deflate, br Accept-Language:'en-US,en;q=0.8
...
show less
|
Email Spam
Hacking
|
|
|
๐ฎ๐ฉ
hermawan
|
|
[Mon Jun 01 08:59:05.346357 2026] [security2:error] [pid 1550059:tid 140573531956928] [client 185.12 ...
show more
[Mon Jun 01 08:59:05.346357 2026] [security2:error] [pid 1550059:tid 140573531956928] [client 185.122.130.208:43268] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.yahoo.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.yahoo.go.id found within REQUEST_HEADERS:Referer: https://www.yahoo.go.id/ request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-dasarian/infografis-dasarian-iklim HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-dasarian/infografis-dasarian-iklim"] [unique_id "ahznaZU0T3hnIXLtpisf9QAAhQA"], referer https://www.yahoo.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[1550060] [IAMLiucK0O0] [ahznaZU0T3hnIXLtpisf9QAAhQA] keep_alive=[1] [2026-06-01 08:59:05.346362] [R:ahznaZU0T3hnIXLtpisf9QA
...
show less
|
Email Spam
Hacking
|
|
|
๐ฎ๐ฉ
hermawan
|
|
05/21/2026-18:40:32.402981 [Drop] [**] [1:2100001898:0] Suricata match TLS ja4 scan Uniq Zeek no 18 ...
show more
05/21/2026-18:40:32.402981 [Drop] [**] [1:2100001898:0] Suricata match TLS ja4 scan Uniq Zeek no 1898 with hash_t13d1812h1_85036bcba153_d41ae481755e [**] [Classification: (null)] [Priority: 3] {TCP} 185.122.130.208:2098 -> 103.166.156.58:443
...
show less
|
Email Spam
Hacking
|
|
Showing 1 to
4
of 4 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: