This IP address has been reported a total of
28
times from
15 distinct
sources.
49.156.46.119 was first reported on
, and the most recent report was
.
In the last 60 days, the only reporter location was:
Germany
with 1
report.
The only category in these recent reports was:
Web Spam
1
time.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
[Fri Jun 26 17:46:18.706369 2026] [security2:error] [pid 41296:tid 139693903554240] [client 49.156.4 ...
show more[Fri Jun 26 17:46:18.706369 2026] [security2:error] [pid 41296:tid 139693903554240] [client 49.156.46.119:21054] ModSecurity: Access denied with code 403 (phase 2). Match of "rx (?i)^[a-z0-9\\\\-._]+$" against "TX:referer-hardening-plugin_domain_name" required. [file "/etc/modsecurity/coreruleset-4.26.0/plugins/referer-hardening-plugin/plugins/referer-hardening-before.conf"] [line "221"] [id "9524170"] [msg "Invalid domain name within Referer header"] [data " google.com, https Matched Data ARGS charset: - Matched Data TX.1: google.com, https found within Content-Type multipart form Matched Data: https://google.com, https://staklim-jatim.bmkg.go.id/index.php/profil/meteorologi/list-of-all-tags/prakiraan-meteorologi found within TX:referer-hardening-plugin_domain_name: google.com, https request_line = GET /images/Klimatologi/Infografis/Infografis-Iklim/Dasarian/2023/09_September_2023/Das-I/Infografis_Dasarian_Iklim_Jawa_Timur_Update_10_September_2023-600.webp..."] [severity "CRITICAL"]
...
show less
ThreatBook Intelligence: Zombie,Dynamic IP more details on https://threatbook.io/ip/49.156.46.119
20 ...
show moreThreatBook Intelligence: Zombie,Dynamic IP more details on https://threatbook.io/ip/49.156.46.119
2025-12-11 19:57:57 /
show less
[Sun Oct 26 23:15:46.574242 2025] [security2:error] [pid 1242578:tid 140450976462528] [client 49.156 ...
show more[Sun Oct 26 23:15:46.574242 2025] [security2:error] [pid 1242578:tid 140450976462528] [client 49.156.46.119:61125] ModSecurity: Access denied with code 403 (phase 1). Match of "pm matomo.staklim-malang.info " against "SERVER_NAME" required. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "164"] [id "440235"] [msg "BAD REQUEST Bro"] [data " Matched Data ARGS charset: - Matched Data TX.1: found within Content-Type multipart form Matched Data: %3a found within SERVER_NAME: staklim-malang.info request_line = GET /index.php/profil/arsip-artikel?catid=475&id=837%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-5-11-januari-2016&start=70 HTTP/2.0 Request URI RAW = /index.php/profil/arsip-artikel?catid=475&id=837%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-5-11-januari-2016&start=70 Reque..."] [hostname "staklim-malang.info"] [uri "/index.php/profil/arsip-artikel"] [unique_id "aP5JMlbr8Fpl
...
show less