AbuseIPDB » 72.63.20.49
72.63.20.49 was found in our database!
This IP was reported 3 times. Confidence of
Abuse
is 4% : ?
ISP
UAB code200
Usage Type
Data Center/Web Hosting/Transit
ASN
AS30058
Domain Name
code200.global
Country
๐บ๐ธ
United States of America
City
Ashburn, Virginia
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 72.63.20.49 :
This IP address has been reported a total of
3
times from
1 distinct
source.
72.63.20.49 was first reported on
June 4th 2026 , and the most recent report was
1 day ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฎ๐ฉ
hermawan
2026-06-10 07:21:32
(1 day ago)
[Wed Jun 10 14:21:30.845279 2026] [security2:error] [pid 313830:tid 140281690154688] [client 72.63.2 ...
show more
[Wed Jun 10 14:21:30.845279 2026] [security2:error] [pid 313830:tid 140281690154688] [client 72.63.20.49:31526] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.yandex.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.yandex.go.id found within REQUEST_HEADERS:Referer: https://www.yandex.go.id/ request_line = GET /index.php/profil/meteorologi/geofisika/555558585-poster-antisipasi-gempa HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/geofisika/555558585-poster-antisipasi-gempa"] [unique_id "aikQevjIpB6rxo_t1ck5sAABggg"], referer https://www.yandex.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[313856] [7+SwF+FXHgQ] [aikQevjIpB6rxo_t1ck5sAABggg] keep_alive=[1] [2026-06-10 14:21:30.845284] [R:aikQevjIpB6rxo_t1ck5sAABggg] UA:'Mozilla/5.0 (Linux; Andr
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2026-06-05 16:08:45
(6 days ago)
[Fri Jun 05 23:08:43.976266 2026] [security2:error] [pid 1114718:tid 140021414135488] [client 72.63. ...
show more
[Fri Jun 05 23:08:43.976266 2026] [security2:error] [pid 1114718:tid 140021414135488] [client 72.63.20.49:13856] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bing.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bing.go.id found within REQUEST_HEADERS:Referer: https://www.bing.go.id/ request_line = GET /images/gempa/webp/20260605225956.mmi.jpg.webp HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/gempa/webp/20260605225956.mmi.jpg.webp"] [unique_id "aiL0i9mh3WpftzdIB7QFAgAAhBU"], referer https://www.bing.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[1114755] [lTDz34MvBX0] [aiL0i9mh3WpftzdIB7QFAgAAhBU] keep_alive=[1] [2026-06-05 23:08:43.976279] [R:aiL0i9mh3WpftzdIB7QFAgAAhBU] UA:'Mozilla/5.0 (Linux; Android 14; Pixel 6 Pro) AppleWebKit/537.36 (KHTML, like Gecko)
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2026-06-04 04:24:15
(1 week ago)
[Thu Jun 04 11:24:09.770839 2026] [security2:error] [pid 199892:tid 140067361208000] [client 72.63.2 ...
show more
[Thu Jun 04 11:24:09.770839 2026] [security2:error] [pid 199892:tid 140067361208000] [client 72.63.20.49:14464] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.yandex.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.yandex.go.id found within REQUEST_HEADERS:Referer: https://www.yandex.go.id/ request_line = GET /index-v100.js HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index-v100.js"] [unique_id "aiD96delAUBRJfUwAnsg6wAACQw"], referer https://www.yandex.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[199929] [Apli6qXUyxc] [aiD96delAUBRJfUwAnsg6wAACQw] keep_alive=[1] [2026-06-04 11:24:09.770842] [R:aiD96delAUBRJfUwAnsg6wAACQw] UA:'Mozilla/5.0 (Linux; Android 8.0.0; SM-J330G) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36 EdgA/114.0.1823.74'
...
show less
Email Spam
Hacking
Showing 1 to
3
of 3 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: