AbuseIPDB » 85.239.59.231
85.239.59.231 was found in our database!
This IP was reported 8 times. Confidence of
Abuse
is 0% : ?
ISP
JSC TIMEWEB
Usage Type
Data Center/Web Hosting/Transit
ASN
AS9123
Domain Name
timeweb.com
Country
๐ท๐บ
Russian Federation
City
Moscow, Moscow
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 85.239.59.231 :
This IP address has been reported a total of
8
times from
3 distinct
sources.
85.239.59.231 was first reported on
April 12th 2024 , and the most recent report was
9 months ago .
Old Reports:
The most recent abuse report for this IP address is from
9 months ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐บ๐ธ
TPI-Abuse
2025-09-06 22:05:00
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 85.239.59.231 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 85.239.59.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 06 18:04:53.977710 2025] [security2:error] [pid 8083:tid 8083] [client 85.239.59.231:22685] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Golden-Technologies/pics/Golden Technologies 2009 Marketing CD/Power Chairs/Compass HD/Thumbs.db"] [unique_id "aLywBWvpIJ5UtBV9EUVzEQAAAAU"], referer: https://vitalitywebb.com/backstore/Golden-Technologies/pics/Golden%20Technologies%202009%20Marketing%20CD/Power%20Chairs/Compass%20HD/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
lp
2025-08-27 21:25:12
(9 months ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 85.239.59.231
2025-08-27T22:58:58+02: ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 85.239.59.231
2025-08-27T22:58:58+02:00 vpn Access-Reject 'shemeka' station: 85.239.59.231 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐จ๐ญ
backslash
2025-06-19 13:25:06
(11 months ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-05-06 04:50:39
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 85.239.59.231 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 85.239.59.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 06 00:50:32.880012 2025] [security2:error] [pid 586994:tid 586994] [client 85.239.59.231:41519] [client 85.239.59.231] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Baldwin/Thumbs.db"] [unique_id "aBmVGGbVIIIyR5tNel7sLwAAACw"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Baldwin/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
lp
2025-01-22 04:21:44
(1 year ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 85.239.59.231
2025-01-22T04:26:02+01: ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 85.239.59.231
2025-01-22T04:26:02+01:00 vpn Access-Reject 'xplas00' station: 85.239.59.231 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐จ๐ญ
backslash
2024-05-18 05:23:42
(2 years ago)
honeypot detection
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-04-14 12:06:49
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 85.239.59.231 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 85.239.59.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 14 08:06:46.006653 2024] [security2:error] [pid 15682] [client 85.239.59.231:19871] [client 85.239.59.231] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Ashton II Recliner/Ashton II Recliner/Havana Brown/Thumbs.db"] [unique_id "ZhvG1ioz6zzKkMwEML5flQAAAAQ"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Ashton%20II%20Recliner/Ashton%20II%20Recliner/Havana%20Brown/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2024-04-12 13:27:26
(2 years ago)
honeypot
Bad Web Bot
Showing 1 to
8
of 8 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: