This IP address has been reported a total of
39
times from
25 distinct
sources.
212.126.104.48 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Requests denied due to active blacklist hits (tenant=82 method=GET path=/customer/account/login/refe ...
show moreRequests denied due to active blacklist hits (tenant=82 method=GET path=/customer/account/login/referer/aHR0cHM6Ly91bW5pdHphLmNvbS9jYXRhbG9nL3Byb2R1Y3Qvdmlldy9pZC83MTE2Ny9jYXRlZ29yeS80MjUxLyNyZXZpZXctZm9ybQ~~/ ua='Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 Edg/145.0.0.0')
show less
Fail2Ban: 212.126.104.48 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5 ...
show moreFail2Ban: 212.126.104.48 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/116.0.0.0 Safari/537.36
show less
Requests denied due to active blacklist hits (tenant=82 method=GET path=/catalogsearch/result/index/ ...
show moreRequests denied due to active blacklist hits (tenant=82 method=GET path=/catalogsearch/result/index/ ua='Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/135.0.0.0 Safari/537.36')
show less
[Fri May 29 21:35:27.817281 2026] [security2:error] [pid 49836:tid 140230285850304] [client 212.126. ...
show more[Fri May 29 21:35:27.817281 2026] [security2:error] [pid 49836:tid 140230285850304] [client 212.126.104.48:55202] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:Referer: https://www.bmkg.go.id/ request_line = GET /index.php/prediksi-iklim/prediksi-dasarian/monitoring-dan-prediksi-curah-hujan HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prediksi-iklim/prediksi-dasarian/monitoring-dan-prediksi-curah-hujan"] [unique_id "ahmkL8I0GML-UM2TudGPSgABwAA"], referer https://www.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[49852] [7QR4wbW5z+4] [ahmkL8I0GML-UM2TudGPSgABwAA] keep_alive=[1] [2026-05-29 21:35:27.817287] [R:ahmkL8I0GML-UM2TudGPSgABwAA] UA:'Mozilla/5.0 (Linux;
...
show less
Email Spam
Hacking
Anonymous
Malicious crawler or aggressive scraper probe | (Magento Site) (Botnet activity attributed to: Angar ...
show moreMalicious crawler or aggressive scraper probe | (Magento Site) (Botnet activity attributed to: Angara Technologies Group / mikhail-smirnov-79830322)
show less
Requests denied due to active blacklist hits (tenant=82 method=GET path=/media/catalog/product/cache ...
show moreRequests denied due to active blacklist hits (tenant=82 method=GET path=/media/catalog/product/cache/ddebc89b6d27929fece7153308b6a3fc/1/t/1tail-0658.jpg ua='Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/48.0.9703.1043 Safari/537.36')
show less
Verified scan activity detected by local IDS/firewall correlation. SCAN: HIGHRISK_SINGLEPORT | PORTS ...
show moreVerified scan activity detected by local IDS/firewall correlation. SCAN: HIGHRISK_SINGLEPORT | PORTS=23 | HITS=2 | IPSET=ADD | FIRST=2026-05-12 19:52:10 | LAST=2026-05-12 19:52:11. Last seen 2026-05-12 19:52:11.
show less