AbuseIPDB » 92.180.9.249
92.180.9.249 was found in our database!
This IP was reported 6 times. Confidence of
Abuse
is 14% : ?
ISP
Orange Romania
Usage Type
Fixed Line ISP
ASN
AS8953
Domain Name
orange.ro
Country
๐ท๐ด
Romania
City
Cluj-Napoca, Cluj County
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 92.180.9.249 :
This IP address has been reported a total of
6
times from
4 distinct
sources.
92.180.9.249 was first reported on
June 12th 2026 , and the most recent report was
18 hours ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐บ๐ธ
Cherryh4ck
2026-08-31 15:55:19
(18 hours ago)
Blocked by UFW [25565/tcp] | SPT: 5352 | TTL: 50 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sef ...
show more
Blocked by UFW [25565/tcp] | SPT: 5352 | TTL: 50 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
Cherryh4ck
2026-08-29 17:40:38
(2 days ago)
Blocked by UFW [25565/tcp] | SPT: 5408 | TTL: 46 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sef ...
show more
Blocked by UFW [25565/tcp] | SPT: 5408 | TTL: 46 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
ipblock.com
2026-08-29 15:18:00
(2 days ago)
IPBlock protected site ID [3717-sec].
Robotic site crawling, undeclared spider
Bad Web Bot
Web App Attack
๐บ๐ธ
Cherryh4ck
2026-08-19 18:56:39
(1 week ago)
Blocked by UFW [25565/tcp] | SPT: 5386 | TTL: 46 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sef ...
show more
Blocked by UFW [25565/tcp] | SPT: 5386 | TTL: 46 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ฎ๐ฉ
hermawan
2026-06-12 22:12:22
(2 months ago)
[Sat Jun 13 05:12:17.714715 2026] [security2:error] [pid 378322:tid 140091803535040] [client 92.180. ...
show more
[Sat Jun 13 05:12:17.714715 2026] [security2:error] [pid 378322:tid 140091803535040] [client 92.180.9.249:5024] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.google.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.google.go.id found within REQUEST_HEADERS:Referer: https://www.google.go.id/ request_line = GET /index.php/prediksi-iklim/prediksi-dasarian/probabilistik-curah-hujan-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prediksi-iklim/prediksi-dasarian/probabilistik-curah-hujan-provinsi-jawa-timur"] [unique_id "aiyEQUcy5a3MwGruPyU8RAAAAQY"], referer https://www.google.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[378329] [mbYMxdVkBMc] [aiyEQUcy5a3MwGruPyU8RAAAAQY] keep_alive=[1] [2026-06-13 05:12:17.714720] [R:aiyEQUcy5a3MwGruPyU8RAAAA
...
show less
Email Spam
Hacking
๐ฆ๐บ
screwlooseit.com.au
2026-06-12 21:57:33
(2 months ago)
Blocked by CSF 13 firewall - Rule: WPLOGIN
RO/Romania/-
Web App Attack
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: