πΊπΈ
TPI-Abuse
2026-07-15 11:53:04
(6 days ago)
(mod_security) mod_security (id:240335) triggered by 193.188.113.94 (dynamic.ip.193.188.113.94.batel ...
show more
(mod_security) mod_security (id:240335) triggered by 193.188.113.94 (dynamic.ip.193.188.113.94.batelco.com.bh): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 15 07:53:00.374653 2026] [security2:error] [pid 24490:tid 24490] [client 193.188.113.94:15461] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 193.188.113.94 (+1 hits since last alert)|d-sinema.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "d-sinema.com"] [uri "/xmlrpc.php"] [unique_id "ald0nJoqQSV0_KL12g1jzwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-15 11:50:49
(6 days ago)
[redacted] 193.188.113.94 - - [15/Jul/2026:13:50:04 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" " ...
show more
[redacted] 193.188.113.94 - - [15/Jul/2026:13:50:04 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Jetpack by WordPress.com (Jetpack 12.1; WordPress 6.3)"
[redacted] 193.188.113.94 - - [15/Jul/2026:13:50:14 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Jetpack by WordPress.com"
[redacted] 193.188.113.94 - - [15/Jul/2026:13:50:25 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Jetpack by WordPress.com"
[redacted] 193.188.113.94 - - [15/Jul/2026:13:50:35 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Jetpack by WordPress.com"
[redacted] 193.188.113.94 - - [15/Jul/2026:13:50:46 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "WordPress.com; https://wordpress.com"
...
show less
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-15 08:51:32
(6 days ago)
(mod_security) mod_security (id:240335) triggered by 193.188.113.94 (dynamic.ip.193.188.113.94.batel ...
show more
(mod_security) mod_security (id:240335) triggered by 193.188.113.94 (dynamic.ip.193.188.113.94.batelco.com.bh): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 15 04:51:27.086395 2026] [security2:error] [pid 32471:tid 32471] [client 193.188.113.94:16142] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 193.188.113.94 (+1 hits since last alert)|michaelthompson.biz|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "michaelthompson.biz"] [uri "/xmlrpc.php"] [unique_id "aldKD0_CEOLicRIPNmGbEwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-15 08:17:05
(6 days ago)
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-15 07:17:29
(6 days ago)
(mod_security) mod_security (id:240335) triggered by 193.188.113.94 (dynamic.ip.193.188.113.94.batel ...
show more
(mod_security) mod_security (id:240335) triggered by 193.188.113.94 (dynamic.ip.193.188.113.94.batelco.com.bh): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 15 03:17:24.807905 2026] [security2:error] [pid 27324:tid 27386] [client 193.188.113.94:15184] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 193.188.113.94 (+1 hits since last alert)|datuinc.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "datuinc.com"] [uri "/xmlrpc.php"] [unique_id "alc0BGpO7lm_AUqPmBm95AAAAQI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
rh24
2026-07-15 06:45:02
(6 days ago)
(wordpress) Failed wordpress login from 193.188.113.94 (BH/Bahrain/dynamic.ip.193.188.113.94.batelco ...
show more
(wordpress) Failed wordpress login from 193.188.113.94 (BH/Bahrain/dynamic.ip.193.188.113.94.batelco.com.bh): (CF_ENABLE)
show less
Brute-Force
πΊπΈ
integrantservices.com
2026-07-15 06:44:25
(6 days ago)
(wordpress) Failed wordpress login from 193.188.113.94 (BH/Bahrain/dynamic.ip.193.188.113.94.batelco ...
show more
(wordpress) Failed wordpress login from 193.188.113.94 (BH/Bahrain/dynamic.ip.193.188.113.94.batelco.com.bh)
show less
Brute-Force
πΊπΈ
TPI-Abuse
2026-07-15 06:16:20
(6 days ago)
(mod_security) mod_security (id:240335) triggered by 193.188.113.94 (dynamic.ip.193.188.113.94.batel ...
show more
(mod_security) mod_security (id:240335) triggered by 193.188.113.94 (dynamic.ip.193.188.113.94.batelco.com.bh): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 15 02:16:14.475967 2026] [security2:error] [pid 11978:tid 12059] [client 193.188.113.94:16000] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 193.188.113.94 (+1 hits since last alert)|ianajewellery.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "ianajewellery.com"] [uri "/xmlrpc.php"] [unique_id "alclrpGsbTkSBRSEJCzOxwAAAYc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
kosada.com
2026-07-07 11:00:46
(2 weeks ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
πΊπΈ
kosada.com
2026-06-25 22:12:41
(3 weeks ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
π©πͺ
Vegascosmetics
2026-06-12 07:31:11
(1 month ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after obfuscated redirect. Vegas Security
DDoS Attack
Hacking
Exploited Host
π©πͺ
SMARTNET
2026-05-27 06:03:53
(1 month ago)
Aisuru(Mirai variant) DDoS | Incident ID: 1c72ea9a-d634-4668-a8aa-89a786da95ec
DDoS Attack
π³π±
maxxsense
2026-02-28 11:05:18
(4 months ago)
193.188.113.94 (BH/Bahrain/dynamic.ip.193.188.113.94.batelco.com.bh), 12 distributed imapd attacks o ...
show more
193.188.113.94 (BH/Bahrain/dynamic.ip.193.188.113.94.batelco.com.bh), 12 distributed imapd attacks on account [redacted]
show less
Brute-Force
πΈπ¬
mypatricks
2026-02-24 23:51:18
(4 months ago)
193.188.113.94 | Port: 10451 | DNS: dynamic.ip.193.188.113.94.batelco.com.bh 2026-02-25T07:51:17+08: ...
show more
193.188.113.94 | Port: 10451 | DNS: dynamic.ip.193.188.113.94.batelco.com.bh 2026-02-25T07:51:17+08:00 Asia/Bahrain | Suspicious Spoofing Activity | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:121.0) Gecko/20100101 Firefox/121.0 HTTP/1.1 443 GET | URL: /account/signin/?02d11728a258076a0dec064eb904c18a=1771912783 | Ref: - | Country: BH/Bahrain/+03:00 IP City: Manama macOS 9d32deaaad157b9d-BAH/Manama, Bahrain 1 hits/0 secs Robots 2
show less
Brute-Force
Web App Attack
Blog Spam
Web Spam
Exploited Host
πΊπΈ
gui-ying233
2026-01-30 02:33:42
(5 months ago)
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Sa ...
show more
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
show less
Bad Web Bot