This IP address has been reported a total of
6
times from
2 distinct
sources.
185.127.70.52 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET DROP Spamhaus D ...
show moreThis IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET DROP Spamhaus DROP Listed Traffic Inbound group 36). Ip 185.127.70.52 performed 'crowdsecurity/suricata-major-severity' (1 events over 0s) at 2026-05-27 04:07:40.293221156 +0000 UTC
show less
[Sun May 24 08:40:14.372814 2026] [security2:error] [pid 105463:tid 140343688279744] [client 185.127 ...
show more[Sun May 24 08:40:14.372814 2026] [security2:error] [pid 105463:tid 140343688279744] [client 185.127.70.52:25500] ModSecurity: Access denied with code 403 (phase 1). Match of "eq 0" against "&REQUEST_HEADERS:Transfer-Encoding" required. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "857"] [id "920171"] [msg "GET or HEAD Request with Transfer-Encoding"] [data " Matched Data ARGS charset: - Matched Data TX.1: found within Content-Type multipart form Matched Data: GET found within REQUEST_HEADERS: 1 request_line = GET /index.php/analisis-iklim/analisis-bulanan/analisis-distribusi-hujan/analisis-distribusi-curah-hujan HTTP/2.0 Request URI RAW = /index.php/analisis-iklim/analisis-bulanan/analisis-distribusi-hujan/analisis-distribusi-curah-hujan Request Basename = analisis-distribusi-curah-hujan"] [severity "CRITICAL"] [ver "OWASP_CRS/4.26.0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [ta
...
show less
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET DROP Spamhaus D ...
show moreThis IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET DROP Spamhaus DROP Listed Traffic Inbound group 36). Ip 185.127.70.52 performed 'crowdsecurity/suricata-major-severity' (1 events over 0s) at 2026-05-22 10:03:26.00547176 +0000 UTC
show less