AbuseIPDB » 196.223.125.249
196.223.125.249 was found in our database!
This IP was reported 5 times. Confidence of
Abuse
is 30% : ?
ISP
LANDMARK UNIVERSITY OMU-ARAN
Usage Type
University/College/School
ASN
AS327942
Domain Name
lmu.edu.ng
Country
๐ณ๐ฌ
Nigeria
City
Omu-Aran, Kwara State
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 196.223.125.249 :
This IP address has been reported a total of
5
times from
4 distinct
sources.
196.223.125.249 was first reported on
June 18th 2026 , and the most recent report was
17 hours ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ซ๐ฎ
inlink.ltd
2026-06-19 16:51:13
(17 hours ago)
Known malicious PHP file or CMS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 05:39:36
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 196.223.125.249 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 196.223.125.249 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 01:39:31.263498 2026] [security2:error] [pid 15462:tid 15509] [client 196.223.125.249:60185] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||managementlaw.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "managementlaw.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajTWE9UCpXoe4SUQWqEJOgAAAQ0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-06-19 02:58:11
(1 day ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 22:27:08
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 196.223.125.249 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 196.223.125.249 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 18:27:02.179528 2026] [security2:error] [pid 11170:tid 11170] [client 196.223.125.249:57418] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||doreenkimura.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "doreenkimura.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajRwtndAd0DQD_ozhgzQFwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
factor1
2026-06-18 21:57:18
(1 day ago)
Fail2ban at atlas Reports Abuse.
Bad Web Bot
Showing 1 to
5
of 5 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: