This IP address has been reported a total of
10
times from
5 distinct
sources.
103.172.48.148 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
United States of America
with 2
reports;
Brazil
with 1
report.
The most common categories in these recent reports were:
Brute-Force
3
times;
Bad Web Bot
2
times;
Web App Attack
2
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(mod_security) mod_security (id:225170) triggered by 103.172.48.148 (-): 1 in the last 300 secs; Por ...
show more(mod_security) mod_security (id:225170) triggered by 103.172.48.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 03:16:39.106811 2026] [security2:error] [pid 3511:tid 3511] [client 103.172.48.148:46269] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lumentravel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lumentravel.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ap-2V2L0-4XP2oQ-lbu5gQAAABE"], referer: https://lumentravel.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
Attacks websites by trying to access known vulnerables of plugins, brute-force of backends or probin ...
show moreAttacks websites by trying to access known vulnerables of plugins, brute-force of backends or probing of administrative tools
show less