A strange thing here is we have to "deny" source 10.0.0.5 in the ACL so that it is excluded from "policy-map CoPP". It will be matched by the "class-default" which is implemented implicitly at the end of the policy-map. This default class will match all the traffic and allows them by default.