This IP address has been reported a total of
12
times from
9 distinct
sources.
182.253.53.65 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
Large-scale coordinated botnet (1M+ IPs). Ordered by Alexander Pen'kov (alexander-pen-kov-7b41aa6a/S ...
show moreLarge-scale coordinated botnet (1M+ IPs). Ordered by Alexander Pen'kov (alexander-pen-kov-7b41aa6a/Shursky); Attacker: Mikhail Smirnov (mikhail-smirnov-79830323/Aidan) employed by Angara Technologies Group | Attack Signature Blocked: /wishlist/index/add/product/13615/form_key/qBY8GZxJRxPYAhvs/ | UA: Opera/9.24.(Windows NT 5.01; az-AZ) Presto/2.9.170 Version/10.00 | (Magento Site)
show less
Banned by Multi Agent ยท node โฆ391q ยท reason=SSH banner invalid / banner exchange invalid format ยท at ...
show moreBanned by Multi Agent ยท node โฆ391q ยท reason=SSH banner invalid / banner exchange invalid format ยท attempts=1 ยท SSH banner invalid / banner exchange invalid format
show less
Brute-Force
SSH
Anonymous
denied traffic to a honeypot network. destination port 23.
[Askari] | country=ID | Behavior: HTTP/1.1 over TLS, Targeting specific pages, Concurrent page load ...
show more[Askari] | country=ID | Behavior: HTTP/1.1 over TLS, Targeting specific pages, Concurrent page load during attack
show less
[Sun Oct 12 15:50:57.338806 2025] [security2:error] [pid 106153:tid 139931216234176] [client 182.253 ...
show more[Sun Oct 12 15:50:57.338806 2025] [security2:error] [pid 106153:tid 139931216234176] [client 182.253.53.65:11157] ModSecurity: Access denied with code 403 (phase 1). Match of "pm matomo.staklim-malang.info " against "SERVER_NAME" required. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "164"] [id "440235"] [msg "BAD REQUEST Bro"] [data " Matched Data ARGS charset: - Matched Data TX.1: found within Content-Type multipart form Matched Data: %3a found within SERVER_NAME: staklim-malang.info request_line = GET /index.php/profil/arsip-artikel?catid=495&id=1287%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-28-desember-2016-3-januari-2017&start=20 HTTP/2.0 Request URI RAW = /index.php/profil/arsip-artikel?catid=495&id=1287%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-28-desember-2016..."] [hostname "staklim-malang.info"] [uri "/index.php/profil/arsip-artikel"] [unique_id "aOtr8XNLWXJ2V
...
show less
Hacking
Web App Attack
Showing 1 to
12
of 12 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ