AbuseIPDB » 181.214.153.80
181.214.153.80 was found in our database!
This IP was reported 11 times. Confidence of
Abuse
is 0% : ?
ISP
Internet Utilities Europe and Asia Limited
Usage Type
Fixed Line ISP
ASN
AS174
Domain Name
netutils.io
Country
๐จ๐ฆ
Canada
City
Vancouver, British Columbia
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 181.214.153.80 :
This IP address has been reported a total of
11
times from
9 distinct
sources.
181.214.153.80 was first reported on
April 21st 2023 , and the most recent report was
5 months ago .
Old Reports:
The most recent abuse report for this IP address is from
5 months ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฏ๐ต
mkaraki
2025-12-18 06:35:23
(5 months ago)
1766039710 # Service_probe # SIGNATURE_SEND # source_ip:181.214.153.80 # dst_port:139
...
Port Scan
๐ซ๐ท
Kimax
2025-11-14 07:30:01
(6 months ago)
RdpGuard detected brute-force attempt on RDP
Brute-Force
๐บ๐ธ
xmission.com
2025-08-12 01:19:00
(10 months ago)
Blocked by UFW (TCP on 51413)
Source port: 52920
TTL: 57
Packet length: 60
TOS: 0x08
This report (f ...
show more
Blocked by UFW (TCP on 51413)
Source port: 52920
TTL: 57
Packet length: 60
TOS: 0x08
This report (for 181.214.153.80) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ฉ๐ช
marzzzello
2025-06-26 23:35:59
(11 months ago)
Ports: 5x 21867
Port Scan
Anonymous
2025-05-24 07:15:54
(1 year ago)
Ports: 143,993; Direction: 0; Trigger: LF_DISTATTACK
Brute-Force
SSH
๐ฉ๐ช
marzzzello
2025-04-03 12:16:31
(1 year ago)
Ports: 15x 10002
Port Scan
Anonymous
2025-01-30 17:02:55
(1 year ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-07-31 11:37:29
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 181.214.153.80 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 181.214.153.80 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 31 07:37:21.825049 2024] [security2:error] [pid 12417:tid 12417] [client 181.214.153.80:40109] [client 181.214.153.80] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||agrisea.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "agrisea.net"] [uri "/blog/wp-json/wp/v2/users/"] [unique_id "Zqoh8WUdryN8ic8F3sUVFAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2024-06-24 14:55:16
(1 year ago)
10 attempts against mh_ha-misc-ban on bush
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-04-11 14:38:49
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 181.214.153.80 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 181.214.153.80 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 11 10:38:45.318244 2024] [security2:error] [pid 15821] [client 181.214.153.80:50133] [client 181.214.153.80] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||randomgroovemusic.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "randomgroovemusic.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Zhf19YbWsqihW_7--3x0aAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
MPL
2023-04-21 20:25:51
(3 years ago)
tcp/50911 (10 or more attempts)
Port Scan
Showing 1 to
11
of 11 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: