AbuseIPDB » 202.89.75.249
202.89.75.249 was found in our database!
This IP was reported 6 times. Confidence of
Abuse
is 0% : ?
ISP
HostRoyale Technologies Pvt Ltd
Usage Type
Data Center/Web Hosting/Transit
ASN
AS203020
Domain Name
hostroyale.com
Country
๐บ๐ธ
United States of America
City
Santa Clara, California
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 202.89.75.249 :
This IP address has been reported a total of
6
times from
4 distinct
sources.
202.89.75.249 was first reported on
January 10th 2026 , and the most recent report was
2 months ago .
Old Reports:
The most recent abuse report for this IP address is from
2 months ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฎ๐น
A000Z
2026-06-21 03:30:14
(2 months ago)
Fail2Ban: 202.89.75.249 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5. ...
show more
Fail2Ban: 202.89.75.249 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5.0 (Linux; Android 5.0; SM-G900P Build/LRX21T) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/47.0.8555.1133 Mobile Safari/537.36
show less
Bad Web Bot
๐ฎ๐ฉ
hermawan
2026-03-16 09:25:09
(6 months ago)
2026-03-15T21:19:39.940211+07:00 staklim-malang kernel: Ipt-PREROUCOBA:DROP IN=eth0 OUT= MAC=c4:37:7 ...
show more
2026-03-15T21:19:39.940211+07:00 staklim-malang kernel: Ipt-PREROUCOBA:DROP IN=eth0 OUT= MAC=c4:37:72:f5:bf:f3:90:e2:ba:b3:7b:52:08:00 SRC=202.89.75.249 DST=103.166.156.58 LEN=60 TOS=0x00 PREC=0x00 TTL=52 ID=10215 DF PROTO=TCP SPT=44695 DPT=443 WINDOW=43080 RES=0x00 SYN URGP=0
...
show less
Email Spam
Hacking
Anonymous
2026-02-14 21:47:37
(7 months ago)
Malicious activity detected
Hacking
Web App Attack
Anonymous
2026-01-28 17:53:03
(7 months ago)
Malicious activity detected
Hacking
Web App Attack
๐บ๐ธ
kosada.com
2026-01-25 12:04:48
(7 months ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
๐ฎ๐ฉ
hermawan
2026-01-10 02:33:14
(8 months ago)
[Sat Jan 10 09:33:13.024639 2026] [security2:error] [pid 432310:tid 139884103714496] [client 202.89. ...
show more
[Sat Jan 10 09:33:13.024639 2026] [security2:error] [pid 432310:tid 139884103714496] [client 202.89.75.249:41445] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".svg" at REQUEST_LINE. [file "/etc/modsecurity/coreruleset-4.22.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "463"] [id "440010"] [msg "BAD REQUEST Bro, 206 Partial Content"] [data " Matched Data ARGS charset: - Matched Data TX.1: found within Content-Type multipart form Matched Data: identity found within REQUEST_LINE: GET /pdfjs/web/images/toolbarButton-viewsManagerToggle.svg HTTP/2.0 request_line = GET /pdfjs/web/images/toolbarButton-viewsManagerToggle.svg HTTP/2.0 Request URI RAW = /pdfjs/web/images/toolbarButton-viewsManagerToggle.svg Request Basename = toolbarButton-viewsManagerToggle.svg"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/pdfjs/web/images/toolbarButton-viewsManagerToggle.svg"] [unique_id "aWG6aQYCciaBMFVDzHHCUgADhQM"], referer https://staklim-jatim.bmkg.go.id/pdfjs/web/viewer.c
...
show less
Hacking
Web App Attack
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: