AbuseIPDB » 13.232.254.217
13.232.254.217 was found in our database!
This IP was reported 6 times. Confidence of
Abuse
is 14% : ?
ISP
Amazon Data Services India
Usage Type
Data Center/Web Hosting/Transit
ASN
AS16509
Hostname(s)
ec2-13-232-254-217.ap-south-1.compute.amazonaws.com
Domain Name
amazon.com
Country
๐ฎ๐ณ
India
City
Mumbai, Maharashtra
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 13.232.254.217 :
This IP address has been reported a total of
6
times from
5 distinct
sources.
13.232.254.217 was first reported on
February 20th 2025 , and the most recent report was
18 hours ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ซ๐ท
samji10
2026-06-15 23:40:17
(18 hours ago)
Sprint Log Parser automatically flagged security threats: Remote Code Execution (RCE), Vulnerability ...
show more
Sprint Log Parser automatically flagged security threats: Remote Code Execution (RCE), Vulnerability Exploit, Path Traversal (LFI), SQL Injection (SQLi), Path Scanning, Auth Anomaly, Cross-Site Scripting (XSS). Specific actions detected: Suspected RCE (shell command); Suspected Path Traversal (../); Suspected SQL Injection (UNION SELECT); WordPress administrator login scan at: /wp-admin/admin-ajax.php?action=wpt_admin_update_notice_option; WordPress administrator login scan at: /wp-admin/admin-ajax.php; Suspected LFI / Path Traversal (etc passwd access); Suspected RCE (exec function call); Generic PHP config scan at: /config.php.bak; Generic PHP config scan at: /config/.config.php.swp; Generic PHP config scan at: /.config.php.swp; Generic PHP config scan at: /application/config/config.php.bak; WordPress administrator login scan at: /wp-admin/admin-ajax.php?action=wpdevart_form_ajax; Generic PHP config scan at: /general/mytable/intel_view/video_file.php?MEDIA_DIR=../../../inc/&MEDIA_...
show less
Hacking
Bad Web Bot
Brute-Force
๐ฏ๐ต
demonsword
2026-06-12 12:04:13
(4 days ago)
Detected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was ...
show more
Detected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was hijacked and held in a tarpit to slow down the scan. Probed target: adminapi.mcd.5starcompany.com.ng:443
show less
Open Proxy
Port Scan
Anonymous
2026-04-18 04:29:38
(1 month ago)
Aggressive web scan
Web App Attack
Anonymous
2026-04-14 10:44:49
(2 months ago)
Aggressive web scan
Web App Attack
๐จ๐ญ
Elysium Security
2025-02-20 16:07:28
(1 year ago)
Mass port scanning on a whole network
Port Scan
๐น๐ญ
Sawasdee
2025-02-20 11:24:34
(1 year ago)
Port Scan
...
Port Scan
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: