🇺🇸
kosada.com
2026-08-25 15:31:46
(1 week ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
🇺🇸
TPI-Abuse
2026-08-12 10:41:24
(3 weeks ago)
(mod_security) mod_security (id:240335) triggered by 103.194.93.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 103.194.93.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 06:41:19.215824 2026] [security2:error] [pid 420414:tid 420414] [client 103.194.93.13:1193] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 103.194.93.13 (+1 hits since last alert)|geriterry.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "geriterry.com"] [uri "/xmlrpc.php"] [unique_id "anxNz-NN3mERuAiBGK63IgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-06 06:53:27
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 103.194.93.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 103.194.93.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 06 02:53:23.289442 2026] [security2:error] [pid 510493:tid 510605] [client 103.194.93.13:64486] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 103.194.93.13 (+1 hits since last alert)|sandiegosamsolo.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "sandiegosamsolo.com"] [uri "/xmlrpc.php"] [unique_id "anQvYypOHrMRx1-h2D6FawAAAdU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-29 07:00:00
(1 month ago)
Apache probe; attempts=22; exact paths: /xmlrpc.php
Web App Attack
🇺🇸
TPI-Abuse
2026-07-26 16:41:32
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 103.194.93.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 103.194.93.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 12:41:25.528678 2026] [security2:error] [pid 333908:tid 333972] [client 103.194.93.13:16999] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 103.194.93.13 (+1 hits since last alert)|travelusa.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "travelusa.us"] [uri "/xmlrpc.php"] [unique_id "amY4tfhQOLye1kFTz3LkCAAAAQ8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-26 15:58:44
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 103.194.93.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 103.194.93.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 11:58:38.644033 2026] [security2:error] [pid 683520:tid 683520] [client 103.194.93.13:15650] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 103.194.93.13 (+1 hits since last alert)|pathpa.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "pathpa.org"] [uri "/xmlrpc.php"] [unique_id "amYurpMk5oG-wgZ9MxVKGgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
integrantservices.com
2026-07-26 15:45:04
(1 month ago)
(wordpress) Failed wordpress login from 103.194.93.13 (PK/Pakistan/-)
Brute-Force
🇳🇱
exxos
2025-08-01 02:38:23
(1 year ago)
HTTP1.x attacks
DDoS Attack
🇳🇱
exxos
2025-07-31 01:46:50
(1 year ago)
HTTP1.x attacks
DDoS Attack
🇳🇱
exxos
2025-07-30 02:12:55
(1 year ago)
HTTP1.x attacks
DDoS Attack
🇳🇱
exxos
2025-07-27 21:17:29
(1 year ago)
HTTP1.x attacks
DDoS Attack
🇳🇱
exxos
2025-07-24 17:07:31
(1 year ago)
HTTP1.x attacks
DDoS Attack
🇩🇪
32bitbradley
2021-01-11 06:01:09
(5 years ago)
Connection to SSH Honeypot - Detected by HoneypotDB
SSH