Log in to view charts and search reports for this IP.
Log In
Top Reporter Countries (Last 60 Days)
Example preview
Report Categories (Last 60 Days)
Example preview
Reports Activity
Example preview
Account required for the enhanced features
Log inSign up
IP Abuse Reports for 54.38.53.158:
This IP address has been reported a total of
25
times from
20 distinct
sources.
54.38.53.158 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Germany
with 9
reports;
United States of America
with 5
reports;
Belgium
with 2
reports.
The most common categories in these recent reports were:
Web App Attack
18
times;
Bad Web Bot
6
times;
Hacking
6
times;
Brute-Force
5
times;
Exploited Host
4
times;
Other
3
times.
Old Reports
The most recent abuse report for this IP address is from
. It is possible that this IP is no
longer involved in abusive activities.
Fail2ban automatic report for apache-wp-scan: 54.38.53.158 - - [02/Sep/2026:04:19:29 +0200] POST /wp ...
show moreFail2ban automatic report for apache-wp-scan: 54.38.53.158 - - [02/Sep/2026:04:19:29 +0200] POST /wp-json/batch/v1 [DOMAIN_REMOVED] 404 5207 - Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36
show less
[54.38.53.158] triggered by honeypot on port [80], Timestamp [2026-09-02T05:25:59Z]METHOD=GET PATH=/ ...
show more[54.38.53.158] triggered by honeypot on port [80], Timestamp [2026-09-02T05:25:59Z]METHOD=GET PATH=/ HTTP=HTTP/1.1 UA="Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko)
show less
Fail2ban automatic report for apache-wp-scan: 54.38.53.158 - - [02/Sep/2026:04:19:29 +0200] POST /wp ...
show moreFail2ban automatic report for apache-wp-scan: 54.38.53.158 - - [02/Sep/2026:04:19:29 +0200] POST /wp-json/batch/v1 [DOMAIN_REMOVED] 404 5207 - Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36
show less
Attacks websites by trying to access known vulnerables of plugins, brute-force of backends or probin ...
show moreAttacks websites by trying to access known vulnerables of plugins, brute-force of backends or probing of administrative tools
show less