This IP address has been reported a total of
195
times from
67 distinct
sources.
5.253.205.214 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 5.253.205.214 (BE/Belgium/-): 1 in t ...
show moreLF_MODSEC: (mod_security) mod_security (id:949110) triggered by 5.253.205.214 (BE/Belgium/-): 1 in the last 3600 secs
show less
Automated report: Unauthorized vulnerability scanning detected on 2026-08-19. 3080 requests from thi ...
show moreAutomated report: Unauthorized vulnerability scanning detected on 2026-08-19. 3080 requests from this IP.
show less
(mod_security) mod_security (id:210730) triggered by 5.253.205.214 (-): 1 in the last 300 secs; Port ...
show more(mod_security) mod_security (id:210730) triggered by 5.253.205.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 13 19:40:04.374003 2026] [security2:error] [pid 16162:tid 16162] [client 5.253.205.214:55824] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cruisingforsex.com|F|2"] [data ".bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cruisingforsex.com"] [uri "/dbase.bak"] [unique_id "an5V1BTiUz26_ULGDGnk_QAAAAQ"], referer: https://cruisingforsex.com/dbase.bak
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
Attribution: mikhail-smirnov-79830323 (LinkedIn/profile ID) employed by Angara Technologies Group (E ...
show moreAttribution: mikhail-smirnov-79830323 (LinkedIn/profile ID) employed by Angara Technologies Group (Explicitly identified himself as enemy a week before attack began) | Aggressive search filter manipulation / web scraper probe on port 443 | URI: Heavy query parameter abuse: /brands/plantronics.html?___SID=ffdedd00aad9929bd96fb2460c984fe0U&dir=desc&limit=12&order=bestsellers | UA: Mozilla/5.0 (Linux; Android 6.0; Nexus 5 Build/MRA58N) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/65.0.3325.181 Mobile Safari/537.36 | (Magento Site)
show less
(wordpress) Apache: Failed WordPress login from 5.253.205.214 (BE/Belgium/-): 10 in the last 3600 se ...
show more(wordpress) Apache: Failed WordPress login from 5.253.205.214 (BE/Belgium/-): 10 in the last 3600 secs (0-193)
show less
Blocked by UFW on dVPS [60000/tcp]
Source Port: 53528
TTL: 53
Packet Length: 60
TOS: 0x00
Analyzed ...
show moreBlocked by UFW on dVPS [60000/tcp]
Source Port: 53528
TTL: 53
Packet Length: 60
TOS: 0x00
Analyzed by https://ip.wiredalter.com
show less