Anonymous
2026-09-01 05:23:12
(3 days ago)
denied traffic to a honeypot network. destination port 8914.
Port Scan
Hacking
🇺🇸
kosada.com
2026-08-25 10:13:45
(1 week ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
🇺🇸
kosada.com
2026-08-02 12:07:23
(1 month ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
🇩🇪
pltcldvlpr
2026-07-11 09:55:39
(1 month ago)
Bogus Useragent: 193.188.113.132 - - [11/Jul/2026:11:55:38 +0200] "GET /skala/ HTTP/1.1" 444 0 "-" " ...
show more
Bogus Useragent: 193.188.113.132 - - [11/Jul/2026:11:55:38 +0200] "GET /skala/ HTTP/1.1" 444 0 "-" "Opera/8.25.(Windows 98; Win 9x 4.90; ak-GH) Presto/2.9.160 Version/10.00" asn=5416 org="BEYON B.S.C." country=BH
...
show less
Bad Web Bot
🇺🇸
TPI-Abuse
2026-07-04 18:45:32
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 193.188.113.132 (dynamic.ip.193.188.113.132.bat ...
show more
(mod_security) mod_security (id:240335) triggered by 193.188.113.132 (dynamic.ip.193.188.113.132.batelco.com.bh): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 04 14:45:27.089269 2026] [security2:error] [pid 2842:tid 2842] [client 193.188.113.132:28838] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 193.188.113.132 (+1 hits since last alert)|doreenkimura.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "doreenkimura.com"] [uri "/xmlrpc.php"] [unique_id "aklUx280j1594bb0L4heFgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
screwlooseit.com.au
2026-07-04 15:37:05
(1 month ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
BH/Bahrain/dynamic.ip.193.188.113.132.batelco.com.bh
Web App Attack
🇺🇸
integrantservices.com
2026-07-04 12:01:59
(2 months ago)
(wordpress) Failed wordpress login from 193.188.113.132 (BH/Bahrain/dynamic.ip.193.188.113.132.batel ...
show more
(wordpress) Failed wordpress login from 193.188.113.132 (BH/Bahrain/dynamic.ip.193.188.113.132.batelco.com.bh)
show less
Brute-Force
🇺🇸
TPI-Abuse
2026-07-04 11:02:27
(2 months ago)
(mod_security) mod_security (id:240335) triggered by 193.188.113.132 (dynamic.ip.193.188.113.132.bat ...
show more
(mod_security) mod_security (id:240335) triggered by 193.188.113.132 (dynamic.ip.193.188.113.132.batelco.com.bh): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 04 07:02:19.736815 2026] [security2:error] [pid 6883:tid 6883] [client 193.188.113.132:29045] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 193.188.113.132 (+1 hits since last alert)|rentkase.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "rentkase.com"] [uri "/xmlrpc.php"] [unique_id "akjoO1TOnF5ejgMV3wic5wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
kosada.com
2026-07-03 17:53:39
(2 months ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
🇸🇮
extremevital
2026-06-19 14:35:09
(2 months ago)
...
Bad Web Bot
Anonymous
2026-05-29 08:39:17
(3 months ago)
Attac
Brute-Force
🇺🇸
TPI-Abuse
2026-05-29 08:09:03
(3 months ago)
(mod_security) mod_security (id:240335) triggered by 193.188.113.132 (dynamic.ip.193.188.113.132.bat ...
show more
(mod_security) mod_security (id:240335) triggered by 193.188.113.132 (dynamic.ip.193.188.113.132.batelco.com.bh): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 29 04:08:55.729194 2026] [security2:error] [pid 6354:tid 6354] [client 193.188.113.132:54171] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 193.188.113.132 (+1 hits since last alert)|illumoonatedtarot.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "illumoonatedtarot.com"] [uri "/xmlrpc.php"] [unique_id "ahlJl-2dbCQ3sspRxyzq6AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
ALPHANET
2026-05-09 23:50:51
(3 months ago)
Botnet or web spider not respecting robots.txt
DDoS Attack
Exploited Host
Anonymous
2026-01-27 17:32:15
(7 months ago)
scanning http requests from known botnet
Web App Attack
🇩🇪
SMARTNET
2025-11-26 02:37:10
(9 months ago)
Aisuru(Mirai variant) DDoS
DDoS Attack