AbuseIPDB » 185.223.42.107
185.223.42.107 was found in our database!
This IP was reported 4 times. Confidence of
Abuse
is 0% : ?
ISP
The Constant Company, LLC
Usage Type
Data Center/Web Hosting/Transit
ASN
AS20473
Domain Name
constant.com
Country
๐บ๐ธ
United States of America
City
Chicago, Illinois
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 185.223.42.107 :
This IP address has been reported a total of
4
times from
3 distinct
sources.
185.223.42.107 was first reported on
December 29th 2025 , and the most recent report was
1 month ago .
Old Reports:
The most recent abuse report for this IP address is from
1 month ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฎ๐น
A000Z
2026-05-10 03:48:22
(1 month ago)
Fail2Ban: 185.223.42.107 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5 ...
show more
Fail2Ban: 185.223.42.107 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5.0 (iPhone; CPU iPhone OS 11_0 like Mac OS X) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.5914.1938 Mobile Safari/537.36
show less
Bad Web Bot
๐ฎ๐ฉ
hermawan
2026-03-17 01:55:55
(3 months ago)
2026-03-16T14:21:15.116213+07:00 staklim-malang kernel: Ipt-PREROUCOBA:DROP IN=eth0 OUT= MAC=c4:37:7 ...
show more
2026-03-16T14:21:15.116213+07:00 staklim-malang kernel: Ipt-PREROUCOBA:DROP IN=eth0 OUT= MAC=c4:37:72:f5:bf:f3:90:e2:ba:b3:7b:52:08:00 SRC=185.223.42.107 DST=103.166.156.58 LEN=60 TOS=0x00 PREC=0x00 TTL=46 ID=61746 DF PROTO=TCP SPT=37993 DPT=443 WINDOW=43080 RES=0x00 SYN URGP=0
...
show less
Email Spam
Hacking
Anonymous
2026-02-09 13:52:20
(4 months ago)
Malicious activity detected
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-12-29 13:10:06
(6 months ago)
[Mon Dec 29 20:10:04.259606 2025] [security2:error] [pid 150986:tid 140584334374592] [client 185.223 ...
show more
[Mon Dec 29 20:10:04.259606 2025] [security2:error] [pid 150986:tid 140584334374592] [client 185.223.42.107:38331] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".svg" at REQUEST_LINE. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "451"] [id "440010"] [msg "BAD REQUEST Bro, 206 Partial Content"] [data " Matched Data ARGS charset: - Matched Data TX.1: found within Content-Type multipart form Matched Data: identity found within REQUEST_LINE: GET /pdfjs/web/images/toolbarButton-viewLayers.svg HTTP/2.0 request_line = GET /pdfjs/web/images/toolbarButton-viewLayers.svg HTTP/2.0 Request URI RAW = /pdfjs/web/images/toolbarButton-viewLayers.svg Request Basename = toolbarButton-viewLayers.svg"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/pdfjs/web/images/toolbarButton-viewLayers.svg"] [unique_id "aVJ9rC4o1wojgCU92PNQ3AAAxwU"], referer https://staklim-jatim.bmkg.go.id/pdfjs/web/viewer.css [staklim-jatim.bmkg.go.id] [staklim-
...
show less
Hacking
Web App Attack
Showing 1 to
4
of 4 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: