This IP address has been reported a total of
103
times from
36 distinct
sources.
180.153.197.227 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Spain
with 11
reports;
United States of America
with 5
reports;
Australia
with 4
reports.
The most common categories in these recent reports were:
Brute-Force
12
times;
Bad Web Bot
9
times;
Web App Attack
7
times;
Hacking
6
times;
Port Scan
5
times;
Other
9
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
HTTP application-layer DoS / botnet traffic from 180.153.197.227: repeated high-cost dynamic page an ...
show moreHTTP application-layer DoS / botnet traffic from 180.153.197.227: repeated high-cost dynamic page and feed requests (profile/tag views, forums, tracker, RSS) at abusive rates via completed TCP/HTTPS. Likely compromised end-user host.
show less
This address requests our sites over plain http, is answered with a redirect to https, and never fol ...
show moreThis address requests our sites over plain http, is answered with a redirect to https, and never follows it โ over and over. A browser follows redirects; a scanner enumerating hosts does not. It reads nothing it asks for and only loads the server; blocked. Please check what runs on this address. | method: GET | path: /robots.txt | 2026-09-21 23:05 UTC
show less
Enumerating paths that do not exist (scanning) | method: GET | path: /ip | ua: Mozilla/5.0 (Macintos ...
show moreEnumerating paths that do not exist (scanning) | method: GET | path: /ip | ua: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 | 2026-09-10 19:56 UTC
show less
HTTP application-layer DoS / botnet traffic from 180.153.197.227: repeated high-cost dynamic page an ...
show moreHTTP application-layer DoS / botnet traffic from 180.153.197.227: repeated high-cost dynamic page and feed requests (profile/tag views, forums, tracker, RSS) at abusive rates via completed TCP/HTTPS. Likely compromised end-user host.
show less
HTTP application-layer DoS / botnet traffic from 180.153.197.227: repeated high-cost dynamic page an ...
show moreHTTP application-layer DoS / botnet traffic from 180.153.197.227: repeated high-cost dynamic page and feed requests (profile/tag views, forums, tracker, RSS) at abusive rates via completed TCP/HTTPS. Likely compromised end-user host.
show less
Web vulnerability scanning / probing from 180.153.197.227: automated requests for CMS admin paths, l ...
show moreWeb vulnerability scanning / probing from 180.153.197.227: automated requests for CMS admin paths, login endpoints, xmlrpc, and common scanner fingerprints over HTTPS. 1 hits; paths: /ip.
show less