๐บ๐ธ
TPI-Abuse
2026-07-30 13:15:27
(7 hours ago)
(mod_security) mod_security (id:240335) triggered by 106.222.229.130 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240335) triggered by 106.222.229.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 09:15:19.747362 2026] [security2:error] [pid 2175010:tid 2175010] [client 106.222.229.130:24024] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 106.222.229.130 (+1 hits since last alert)|fadcometal.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "fadcometal.com"] [uri "/xmlrpc.php"] [unique_id "amtOZ8CQm4whtnEE93RebgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-30 12:12:18
(8 hours ago)
(mod_security) mod_security (id:240335) triggered by 106.222.229.130 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240335) triggered by 106.222.229.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 08:12:10.605943 2026] [security2:error] [pid 475139:tid 475139] [client 106.222.229.130:23573] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 106.222.229.130 (+1 hits since last alert)|jazziientertainment.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "jazziientertainment.com"] [uri "/xmlrpc.php"] [unique_id "ams_mtYboOf2tpbimJ5DJQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-30 11:12:16
(9 hours ago)
(mod_security) mod_security (id:240335) triggered by 106.222.229.130 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240335) triggered by 106.222.229.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 07:12:10.818770 2026] [security2:error] [pid 1065815:tid 1065815] [client 106.222.229.130:24306] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 106.222.229.130 (+1 hits since last alert)|forefrontmusic.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "forefrontmusic.com"] [uri "/xmlrpc.php"] [unique_id "amsxiqpH8G5cpMaPBU5o-QAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-30 11:09:03
(9 hours ago)
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1
Hacking
Web App Attack
๐ฉ๐ช
abdubhai
2026-07-30 10:38:02
(10 hours ago)
106.222.229.130 - - [30/Jul/2026
...
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-30 07:56:10
(12 hours ago)
(mod_security) mod_security (id:240335) triggered by 106.222.229.130 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240335) triggered by 106.222.229.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 03:56:05.490172 2026] [security2:error] [pid 1009422:tid 1009469] [client 106.222.229.130:14222] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 106.222.229.130 (+1 hits since last alert)|georgementz.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "georgementz.org"] [uri "/xmlrpc.php"] [unique_id "amsDldyPtj_9TzVFRe2TFgAAAU4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
integrantservices.com
2026-07-30 07:22:42
(13 hours ago)
(wordpress) Failed wordpress login from 106.222.229.130 (IN/India/-)
Brute-Force
๐ฉ๐ช
Marc
2026-07-30 05:19:05
(15 hours ago)
106.222.229.130 - - [30/Jul/2026:07:18:44 +0200] "POST /xmlrpc.php HTTP/1.1" 200 4670 "-" "Jetpack b ...
show more
106.222.229.130 - - [30/Jul/2026:07:18:44 +0200] "POST /xmlrpc.php HTTP/1.1" 200 4670 "-" "Jetpack by WordPress.com" 106.222.229.130 - - [30/Jul/2026:07:18:54 +0200] "POST /xmlrpc.php HTTP/1.1" 200 4670 "-" "Jetpack by WordPress.com" 106.222.229.130 - - [30/Jul/2026:07:19:04 +0200] "POST /xmlrpc.php HTTP/1.1" 200 4670 "-" "WordPress.com; https://wordpress.com"
show less
Brute-Force
Web App Attack
๐บ๐ธ
kosada.com
2026-07-27 08:55:10
(3 days ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐บ๐ธ
kosada.com
2026-07-06 09:20:21
(3 weeks ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
Anonymous
2025-12-05 18:37:51
(7 months ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
Anonymous
2025-12-04 06:38:35
(7 months ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
Anonymous
2025-08-25 10:00:39
(11 months ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host