AbuseIPDB » 189.28.91.42
189.28.91.42 was found in our database!
This IP was reported 6 times. Confidence of
Abuse
is 4% : ?
ISP
Telefonica Celular de Bolivia S.A
Usage Type
Fixed Line ISP
ASN
AS27882
Hostname(s)
LPZ-189-28-91-00042.tigo.bo
Domain Name
tigo.com.bo
Country
๐ง๐ด
Bolivia (Plurinational State of)
City
La Paz, La Paz Department
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 189.28.91.42 :
This IP address has been reported a total of
6
times from
6 distinct
sources.
189.28.91.42 was first reported on
August 1st 2025 , and the most recent report was
54 minutes ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ซ๐ท
Tilellit.PRO
2026-09-02 02:40:35
(54 minutes ago)
PrestaShop faceted search filter flooding attempt
DDoS Attack
Bad Web Bot
๐ฉ๐ช
SMARTNET
2026-05-27 06:03:53
(3 months ago)
Aisuru(Mirai variant) DDoS | Incident ID: 8969aafa-3f20-493f-8883-3bda65a2b909
DDoS Attack
๐ธ๐ฌ
mypatricks
2026-04-06 04:59:45
(4 months ago)
189.28.91.42 | Port: 13247 | DNS: LPZ-189-28-91-00042.tigo.bo 2026-04-06T12:59:44+08:00 America/La_P ...
show more
189.28.91.42 | Port: 13247 | DNS: LPZ-189-28-91-00042.tigo.bo 2026-04-06T12:59:44+08:00 America/La_Paz | IPs Spam list | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/135.0.0.0 Safari/537.36 HTTP/1.1 443 GET | URL: /cart/?b6cafcb50aa5c6d5c8f062a02dff68a0=1775387119b | Ref: https://xxxxxx/tracking/?91fefe99ecad044=ms-my&code=ms-my | Country: BO/Bolivia/โ04:00 IP City: La Paz Windows 9e7e3987de7a0bc1-GRU/Sรฃo Paulo, Brazil 1 hits/0 secs Robots 2
show less
Brute-Force
Web App Attack
Blog Spam
Web Spam
Exploited Host
Anonymous
2025-11-15 17:30:49
(9 months ago)
scanning http requests from known botnet
Web App Attack
๐ฎ๐ฉ
hermawan
2025-11-10 14:02:43
(9 months ago)
[Mon Nov 10 20:36:33.266993 2025] [security2:error] [pid 83424:tid 140245915924160] [client 189.28.9 ...
show more
[Mon Nov 10 20:36:33.266993 2025] [security2:error] [pid 83424:tid 140245915924160] [client 189.28.91.42:60775] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "WOW64" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "247"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: WOW64 found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.100 Safari/537.36 request_line = GET /index.php/profil/meteorologi/list-of-all-tags/prakiraan-curah-hujan-bulanan-di-propinsi-jawa-timur-tahun-2019 HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/prakiraan-curah-hujan-bulanan-di-propinsi-jawa-timur-tahun-2019"] [unique_id "aRHqYZ-BqcSJQPsGtVlR2wAAAUY"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[83457] [xSWPnn2wHsA] [aRHqYZ-
...
show less
Hacking
Web App Attack
๐ณ๐ฑ
exxos
2025-08-01 02:58:03
(1 year ago)
HTTP1.x attacks
DDoS Attack
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: