๐บ๐ธ
TPI-Abuse
2026-06-11 07:38:48
(1 hour ago)
(mod_security) mod_security (id:240335) triggered by 106.51.80.78 (106.51.80.78.actcorp.in): 1 in th ...
show more
(mod_security) mod_security (id:240335) triggered by 106.51.80.78 (106.51.80.78.actcorp.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 03:38:41.786714 2026] [security2:error] [pid 26733:tid 26733] [client 106.51.80.78:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 106.51.80.78 (+1 hits since last alert)|cloudex.click|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "cloudex.click"] [uri "/xmlrpc.php"] [unique_id "aipmAQIwUYLzjsxYalDsIAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 07:09:03
(1 hour ago)
(mod_security) mod_security (id:240335) triggered by 106.51.80.78 (106.51.80.78.actcorp.in): 1 in th ...
show more
(mod_security) mod_security (id:240335) triggered by 106.51.80.78 (106.51.80.78.actcorp.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 03:08:56.620484 2026] [security2:error] [pid 27050:tid 27079] [client 106.51.80.78:58163] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 106.51.80.78 (+1 hits since last alert)|vinylnotespodcast.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "vinylnotespodcast.com"] [uri "/xmlrpc.php"] [unique_id "aipfCPiig3wHNNWILQrArgAAAFE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 05:39:27
(3 hours ago)
(mod_security) mod_security (id:240335) triggered by 106.51.80.78 (106.51.80.78.actcorp.in): 1 in th ...
show more
(mod_security) mod_security (id:240335) triggered by 106.51.80.78 (106.51.80.78.actcorp.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 01:39:22.271719 2026] [security2:error] [pid 1615:tid 1615] [client 106.51.80.78:61912] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 106.51.80.78 (+1 hits since last alert)|honigcpa.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "honigcpa.com"] [uri "/xmlrpc.php"] [unique_id "aipKCpKSpgD08qLdb-h4wAAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 13:20:22
(19 hours ago)
(mod_security) mod_security (id:240335) triggered by 106.51.80.78 (106.51.80.78.actcorp.in): 1 in th ...
show more
(mod_security) mod_security (id:240335) triggered by 106.51.80.78 (106.51.80.78.actcorp.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 09:20:18.278869 2026] [security2:error] [pid 16582:tid 16582] [client 106.51.80.78:61564] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 106.51.80.78 (+1 hits since last alert)|pattenden.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "pattenden.com"] [uri "/xmlrpc.php"] [unique_id "ailkkn8G-l08LZzUJ5SkMwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-09 09:18:43
(1 day ago)
Attac
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-08 13:19:27
(2 days ago)
(mod_security) mod_security (id:240335) triggered by 106.51.80.78 (106.51.80.78.actcorp.in): 1 in th ...
show more
(mod_security) mod_security (id:240335) triggered by 106.51.80.78 (106.51.80.78.actcorp.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 09:19:19.659251 2026] [security2:error] [pid 15132:tid 15132] [client 106.51.80.78:51311] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 106.51.80.78 (+1 hits since last alert)|newhopepetgrooming.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "newhopepetgrooming.com"] [uri "/xmlrpc.php"] [unique_id "aibBV3lfzFE-OKqIcm7NJgAAAE8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-08 13:16:03
(2 days ago)
Fail2ban filtered
...
Web App Attack
๐ฎ๐น
Progetto1
2026-06-08 11:10:03
(2 days ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-06-05 10:03:31
(5 days ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
IN/India/106.51.80.78.actcorp.in
Web App Attack
Anonymous
2026-06-05 06:09:03
(6 days ago)
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 12:48:23
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 106.51.80.78 (106.51.80.78.actcorp.in): 1 in th ...
show more
(mod_security) mod_security (id:240335) triggered by 106.51.80.78 (106.51.80.78.actcorp.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 08:48:19.467790 2026] [security2:error] [pid 21454:tid 21454] [client 106.51.80.78:62695] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 106.51.80.78 (+1 hits since last alert)|redlitephotos.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "redlitephotos.com"] [uri "/xmlrpc.php"] [unique_id "aiAik5gDPCG65N5l2JT3TQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WeekendWeb
2026-06-03 09:40:51
(1 week ago)
Wordpress Vunerability attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 06:07:45
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 106.51.80.78 (106.51.80.78.actcorp.in): 1 in th ...
show more
(mod_security) mod_security (id:240335) triggered by 106.51.80.78 (106.51.80.78.actcorp.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 02:07:40.769781 2026] [security2:error] [pid 29994:tid 29994] [client 106.51.80.78:53614] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 106.51.80.78 (+1 hits since last alert)|stoneybluff.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "stoneybluff.com"] [uri "/xmlrpc.php"] [unique_id "ah_ErB8q30tldRaSR7GSSgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-03 05:36:40
(1 week ago)
Attac
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-01 11:49:33
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 106.51.80.78 (106.51.80.78.actcorp.in): 1 in th ...
show more
(mod_security) mod_security (id:240335) triggered by 106.51.80.78 (106.51.80.78.actcorp.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 07:49:24.952041 2026] [security2:error] [pid 5334:tid 5334] [client 106.51.80.78:62095] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 106.51.80.78 (+1 hits since last alert)|nightknightalarms.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "nightknightalarms.com"] [uri "/xmlrpc.php"] [unique_id "ah1xxMfhVBw8EauCohLfJgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack