AbuseIPDB » 195.139.118.14
195.139.118.14 was found in our database!
This IP was reported 7 times. Confidence of
Abuse
is 18% : ?
ISP
GLOBALCONNECT AS
Usage Type
Fixed Line ISP
ASN
AS2116
Domain Name
globalconnect.no
Country
๐ณ๐ด
Norway
City
Ski, Akershus
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 195.139.118.14 :
This IP address has been reported a total of
7
times from
4 distinct
sources.
195.139.118.14 was first reported on
May 15th 2026 , and the most recent report was
3 days ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
2026-07-17 21:41:02
(3 days ago)
Fail2Ban - NGINX Honeypot
Bad Web Bot
๐ฎ๐ฉ
hermawan
2026-07-02 14:52:34
(2 weeks ago)
[Thu Jul 02 21:52:33.932461 2026] [security2:error] [pid 194611:tid 140026814891712] [client 195.139 ...
show more
[Thu Jul 02 21:52:33.932461 2026] [security2:error] [pid 194611:tid 140026814891712] [client 195.139.118.14:53457] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "601"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:Referer: https://www.bmkg.go.id/ request_line = GET /index.php/informasi-iklim/buletin-1/buletin-informasi-iklim-dan-lingkungan HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/buletin-1/buletin-informasi-iklim-dan-lingkungan"] [unique_id "akZ7MTNIYtAhJGayrczSGAABlwc"], referer https://www.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[194626] [V9VH9eERxZg] [akZ7MTNIYtAhJGayrczSGAABlwc] keep_alive=[1] [2026-07-02 21:52:33.932467] [R:akZ7MTNIYtAhJGayrczSGAABlwc] UA:'Mozilla/5.0 (Android 13;
...
show less
Email Spam
Hacking
๐ธ๐ฌ
securejdprop
2026-06-30 15:32:41
(3 weeks ago)
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(๐พ - ๐จ Network ๐ต sc ...
show more
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(๐พ - ๐จ Network ๐ต scan ๐ฉ Nuclei ๐จโ๐ป). Ip 195.139.118.14 performed 'crowdsecurity/suricata-major-severity' (1 events over 0s) at 2026-06-30 15:32:39.794140956 +0000 UTC
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2026-06-20 08:19:53
(1 month ago)
[Sat Jun 20 15:19:50.289785 2026] [security2:error] [pid 264691:tid 140473407616704] [client 195.139 ...
show more
[Sat Jun 20 15:19:50.289785 2026] [security2:error] [pid 264691:tid 140473407616704] [client 195.139.118.14:54198] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.yahoo.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.yahoo.go.id found within REQUEST_HEADERS:Referer: https://www.yahoo.go.id/ request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561495-infografis-waspada-cuaca-ekstrem-di-masa-pancaroba HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561495-infografis-waspada-cuaca-ekstrem-di-masa-pancaroba"] [unique_id "ajZNJvDLOC2V8ahNCMqShwACTgM"], referer https://www.yahoo.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[264695] [l76uEqsyJaM] [ajZNJvDLOC2V8ahNCMqShwAC
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2026-06-18 17:37:08
(1 month ago)
[Fri Jun 19 00:37:07.738489 2026] [security2:error] [pid 672147:tid 140711172232896] [client 195.139 ...
show more
[Fri Jun 19 00:37:07.738489 2026] [security2:error] [pid 672147:tid 140711172232896] [client 195.139.118.14:59784] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.yahoo.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.yahoo.go.id found within REQUEST_HEADERS:Referer: https://www.yahoo.go.id/ request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-klimat-story HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-klimat-story"] [unique_id "ajQsw5zuUQ8_3C9mjLcFOQABBAE"], referer https://www.yahoo.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[672149] [vhoFoApVTvU] [ajQsw5zuUQ8_3C9mjLcFOQABBAE] keep_alive=[1] [2026-06-19 00:37:07.738495] [R:ajQsw5zuUQ8_3C9mjLcFOQABBAE] UA:'Mozilla/5.0 (Linux; Android 7; SM-S90
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2026-06-04 15:56:26
(1 month ago)
[Thu Jun 04 22:56:21.958135 2026] [security2:error] [pid 325529:tid 139764431775424] [client 195.139 ...
show more
[Thu Jun 04 22:56:21.958135 2026] [security2:error] [pid 325529:tid 139764431775424] [client 195.139.118.14:54383] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:Referer: https://www.bmkg.go.id/ request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561307-infografis-perubahan-iklim-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561307-infografis-perubahan-iklim-jawa-timur"] [unique_id "aiGgJYhblPa-PVriUpqtmgAA0RI"], referer https://www.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[325575] [40fhla+fxZU] [aiGgJYhblPa-PVriUpqtmgAA0RI] keep_alive=[1] [2026-06-0
...
show less
Email Spam
Hacking
๐ต๐ฑ
sefinek.net
2026-05-15 23:28:37
(2 months ago)
Triggered Cloudflare WAF (firewallCustom) from NO.
Action: BLOCK | Protocol: HTTP/2 (GET) | Endpoint ...
show more
Triggered Cloudflare WAF (firewallCustom) from NO.
Action: BLOCK | Protocol: HTTP/2 (GET) | Endpoint: /css/navbar.css | UA: Mozilla/5.0 (Linux; Android 8.0.0; LG-H870DS Build/OPR1.170623.032) AppleWebKit/537.37 (KHTML, like Gecko) Chrome/68.0.3440.91 Mobile Safari/537.36 โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Showing 1 to
7
of 7 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: