AbuseIPDB » 41.236.199.142
41.236.199.142 was found in our database!
This IP was reported 9 times. Confidence of
Abuse
is 0% : ?
ISP
TE Data
Usage Type
Fixed Line ISP
ASN
AS8452
Domain Name
tedata.net
Country
๐ช๐ฌ
Egypt
City
Cairo, Cairo
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 41.236.199.142 :
This IP address has been reported a total of
9
times from
9 distinct
sources.
41.236.199.142 was first reported on
March 30th 2026 , and the most recent report was
5 months ago .
Old Reports:
The most recent abuse report for this IP address is from
5 months ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฉ๐ช
Avocuard
2026-04-07 01:27:14
(5 months ago)
Suspicious URL access: /xmlrpc.php | User Agent: WordPress.com; https://wordpress.com
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Tripwire
2026-04-07 00:53:41
(5 months ago)
Probing for Wordpress - /xmlrpc.php
Brute-Force
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-04-06 15:36:46
(5 months ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 02:56:50
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 41.236.199.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 41.236.199.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 22:56:43.993298 2026] [security2:error] [pid 5533:tid 5533] [client 41.236.199.142:63402] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||citizensforsanity.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "citizensforsanity.com"] [uri "/wp-json/wp/v2/users"] [unique_id "adMg63qcc9Q21te-E3TCQgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-04-06 00:23:50
(5 months ago)
[MonApr0602:23:46.8143942026][security2:error][pid2910677:tid2910771][client41.236.199.142:0]ModSecu ...
show more
[MonApr0602:23:46.8143942026][security2:error][pid2910677:tid2910771][client41.236.199.142:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"112\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"cbri.ch\"][uri\"/xmlrpc.php\"][unique_id\"adL9ElyL95PJ2JVRX4xpXwAAAMU\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ท๐ด
INTEQ
2026-04-05 20:23:33
(5 months ago)
Web attack from 41.236.199.142
Web App Attack
๐ณ๐ฑ
ipoac.nl
2026-04-05 15:00:54
(5 months ago)
2026-04-05T16:00:52.869528+01:00 ipoac.nl wordpress(-)-: XML-RPC authentication failure for-from 41. ...
show more
2026-04-05T16:00:52.869528+01:00 ipoac.nl wordpress(-)-: XML-RPC authentication failure for-from 41.236.199.142
show less
Web App Attack
Anonymous
2026-03-31 08:05:40
(5 months ago)
WordPress Brute Force
Brute-Force
๐ซ๐ท
Kenshin869
2026-03-30 21:18:05
(5 months ago)
Wordpress unauthorized access attempt
Brute-Force
Showing 1 to
9
of 9 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: