๐ซ๐ท
dynamix
2026-06-14 07:43:39
(1 week ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-14 02:36:35
(1 week ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-06-14 02:07:13
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 112.202.122.46 (112.202.122.46.pldt.net): 1 in ...
show more
(mod_security) mod_security (id:240335) triggered by 112.202.122.46 (112.202.122.46.pldt.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 22:07:08.250178 2026] [security2:error] [pid 30011:tid 30011] [client 112.202.122.46:61152] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 112.202.122.46 (+1 hits since last alert)|major33.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "major33.com"] [uri "/xmlrpc.php"] [unique_id "ai4MzPUCcZILTUHE63_dYwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-12 13:50:10
(1 week ago)
Attac
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-11 07:03:26
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 112.202.122.46 (112.202.122.46.pldt.net): 1 in ...
show more
(mod_security) mod_security (id:240335) triggered by 112.202.122.46 (112.202.122.46.pldt.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 03:03:17.035551 2026] [security2:error] [pid 6150:tid 6150] [client 112.202.122.46:60667] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 112.202.122.46 (+1 hits since last alert)|fattoria-rendena.it|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "fattoria-rendena.it"] [uri "/xmlrpc.php"] [unique_id "aipdtfScxx2k7sWLw76OyAAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
konseptit
2026-06-10 13:00:21
(1 week ago)
(wordpress) Failed wordpress login from 112.202.122.46 (PH/Philippines/112.202.122.46.pldt.net)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-09 13:26:09
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 112.202.122.46 (112.202.122.46.pldt.net): 1 in ...
show more
(mod_security) mod_security (id:240335) triggered by 112.202.122.46 (112.202.122.46.pldt.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 09:26:02.464556 2026] [security2:error] [pid 16770:tid 16770] [client 112.202.122.46:61870] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 112.202.122.46 (+1 hits since last alert)|freemanfoundationcle.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "freemanfoundationcle.org"] [uri "/xmlrpc.php"] [unique_id "aigUatYvgu1J52ET-FQnYAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
noise.agency
2026-06-09 12:53:30
(1 week ago)
(wordpress) Failed wordpress login from 112.202.122.46 (PH/Philippines/112.202.122.46.pldt.net)
Brute-Force
Anonymous
2026-06-09 06:50:14
(1 week ago)
Attac
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-07 12:33:51
(2 weeks ago)
(mod_security) mod_security (id:240335) triggered by 112.202.122.46 (112.202.122.46.pldt.net): 1 in ...
show more
(mod_security) mod_security (id:240335) triggered by 112.202.122.46 (112.202.122.46.pldt.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 08:33:45.436313 2026] [security2:error] [pid 21358:tid 21358] [client 112.202.122.46:58569] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 112.202.122.46 (+1 hits since last alert)|vanmeer.info|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "vanmeer.info"] [uri "/xmlrpc.php"] [unique_id "aiVlKYLd_q1voRx2njIJewAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 13:33:25
(2 weeks ago)
(mod_security) mod_security (id:240335) triggered by 112.202.122.46 (112.202.122.46.pldt.net): 1 in ...
show more
(mod_security) mod_security (id:240335) triggered by 112.202.122.46 (112.202.122.46.pldt.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 09:33:18.066539 2026] [security2:error] [pid 21166:tid 21166] [client 112.202.122.46:61645] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 112.202.122.46 (+1 hits since last alert)|mariarozella.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "mariarozella.com"] [uri "/xmlrpc.php"] [unique_id "aiLQHsiLYUaDI9M-M5MaxgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-05 10:59:26
(2 weeks ago)
xmlrpc request blocked, no referer. Pattern match "xmlrpc.php" at REQUEST_URI. (88010-201)
Hacking
๐ซ๐ท
dynamix
2026-06-05 03:26:50
(2 weeks ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 12:27:56
(2 weeks ago)
(mod_security) mod_security (id:240335) triggered by 112.202.122.46 (112.202.122.46.pldt.net): 1 in ...
show more
(mod_security) mod_security (id:240335) triggered by 112.202.122.46 (112.202.122.46.pldt.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 08:27:48.451350 2026] [security2:error] [pid 5776:tid 5791] [client 112.202.122.46:58956] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 112.202.122.46 (+1 hits since last alert)|worldecom.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "worldecom.org"] [uri "/xmlrpc.php"] [unique_id "aiAdxJRpKzXRLca-Agl45gAAAEo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 08:33:34
(2 weeks ago)
(mod_security) mod_security (id:240335) triggered by 112.202.122.46 (112.202.122.46.pldt.net): 1 in ...
show more
(mod_security) mod_security (id:240335) triggered by 112.202.122.46 (112.202.122.46.pldt.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 04:33:28.624866 2026] [security2:error] [pid 703:tid 703] [client 112.202.122.46:60703] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 112.202.122.46 (+1 hits since last alert)|eye7graphics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "eye7graphics.com"] [uri "/xmlrpc.php"] [unique_id "ah_m2BzT1vHEOW-tDUfrzwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack