This IP address has been reported a total of
11
times from
9 distinct
sources.
43.128.5.253 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Triggered Cloudflare WAF (firewallCustom) from HK.
Action taken: BLOCK
Protocol: HTTP/2 (GET method) ...
show moreTriggered Cloudflare WAF (firewallCustom) from HK.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /sport/lazio-leviz-ne-merkato-synohet-dyshja-torreira-zielinski/334649
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
43.128.5.253 | Port: 12130 | DNS: 43.128.5.253 2026-05-08T13:52:40+08:00 Asia/Hong_Kong | Apple Iden ...
show more43.128.5.253 | Port: 12130 | DNS: 43.128.5.253 2026-05-08T13:52:40+08:00 Asia/Hong_Kong | Apple Identity Spoofing | UA: Mozilla/5.0 (iPhone; CPU iPhone OS 11_0 like Mac OS X) AppleWebKit/604.1.38 (KHTML, like Gecko) Version/26.4 Mobile/15A372 Safari/604.1 HTTP/1.1 443 GET | URL: /%e5%af%92%e5%bf%83/?ed0f99e0dd2ebfcf&1776637830 | Ref: - | Country: HK/Hong Kong/+08:00 IP City: Hong Kong iOS Mobile 9f8633139c370856-HKG/Hong Kong 1 hits/0 secs Browser 2
show less
Brute-Force
Web App Attack
Blog Spam
Web Spam
Exploited Host
Anonymous
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to ...
show moreDistributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to bypass firewall/robots.txt restrictions in printer-friendly.asp
show less
Malformed or malicious web request
43.128.5.253 - - [23/Apr/2026:17:52:27 +0200] "GET /index.php?cur ...
show moreMalformed or malicious web request
43.128.5.253 - - [23/Apr/2026:17:52:27 +0200] "GET /index.php?curid=64308 HTTP/2.0" 400 9050 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36"
show less
Hacking
Web App Attack
Showing 1 to
11
of 11 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ