AbuseIPDB » 144.31.169.53
144.31.169.53 was found in our database!
This IP was reported 6 times. Confidence of
Abuse
is 15% : ?
ISP
VPSPay - vpspay.cloud
Usage Type
Data Center/Web Hosting/Transit
ASN
AS201988
Domain Name
vpspay.cloud
Country
๐ซ๐ฎ
Finland
City
Helsinki, Uusimaa
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 144.31.169.53 :
This IP address has been reported a total of
6
times from
6 distinct
sources.
144.31.169.53 was first reported on
January 21st 2026 , and the most recent report was
1 month ago .
Old Reports:
The most recent abuse report for this IP address is from
1 month ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐จ๐ฆ
Timur Catakli
2026-05-17 19:17:51
(1 month ago)
CrowdSec: crowdsecurity/http-backdoors-attempts
144.31.169.53 - - [16/May/2026:23:39:26 +0000] "GET ...
show more
CrowdSec: crowdsecurity/http-backdoors-attempts
144.31.169.53 - - [16/May/2026:23:39:26 +0000] "GET /login.action HTTP/1.1" 401 27168 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv)"
28 alerts in 31s | Action: ban 4h
show less
Web App Attack
๐ธ๐ฐ
tradinganarchy
2026-05-17 19:08:47
(1 month ago)
Fail2Ban (postfix-sasl): Ban 144.31.169.53 after 18 failures
postfix/smtpd[13700]: warning: 144.31.1 ...
show more
Fail2Ban (postfix-sasl): Ban 144.31.169.53 after 18 failures
postfix/smtpd[13700]: warning: 144.31.169.53: SASL LOGIN authentication failed: authentication failure
postfix/smtpd[38793]: lost connection after AUTH from unknown[144.31.169.53]
14/May/2026:10:30:59 +0000
show less
Brute-Force
๐บ๐ธ
darkabril
2026-05-17 00:59:09
(1 month ago)
ModSecurity: Access denied with code 403 (phase 2). [id "933210"] [msg "PHP Injection Attack: Variab ...
show more
ModSecurity: Access denied with code 403 (phase 2). [id "933210"] [msg "PHP Injection Attack: Variable Function Call Found"] [severity "CRITICAL"] [tag "OWASP_CRS/4.0"] [hostname "waf.cdn-edge.net"] [uri "/pma/"] [unique_id "67cc913244a0958c"]
144.31.169.53 - - [16/May/2026:11:36:26 +0000] "GET /pma/ HTTP/1.1" 403 860 "-" "python-requests/2.31.0"
show less
Hacking
Web App Attack
๐ท๐ด
Victor Hernandez
2026-05-16 22:14:34
(1 month ago)
Port scan detected from this IP targeting multiple hosts on our network.
Port Scan
๐บ๐ธ
mind5t0rm
2026-01-21 21:01:35
(4 months ago)
(WPLOGIN) WP Login Attack 144.31.169.53 (FI/Finland/-): 3 in the last 3600 secs; Ports: *; Direction ...
show more
(WPLOGIN) WP Login Attack 144.31.169.53 (FI/Finland/-): 3 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: 144.31.169.53 - - [22/Jan/2026:04:01:21 +0700] "GET /wp-login.php HTTP/1.1" 200 2482 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36"
144.31.169.53 - - [22/Jan/2026:04:01:27 +0700] "POST /wp-login.php HTTP/1.1" 200 2612 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36"
144.31.169.53 - - [22/Jan/2026:04:01:30 +0700] "POST /wp-login.php HTTP/1.1" 200 2612 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36"
show less
Port Scan
๐ฌ๐ท
Staging
2026-01-21 20:31:00
(4 months ago)
nah!
Bad Web Bot
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: