๐บ๐ธ
TPI-Abuse
2026-07-01 17:36:47
(12 hours ago)
(mod_security) mod_security (id:240335) triggered by 118.179.184.149 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240335) triggered by 118.179.184.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 01 13:36:35.820700 2026] [security2:error] [pid 6394:tid 6400] [client 118.179.184.149:59395] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 118.179.184.149 (+1 hits since last alert)|rawhabitat.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "rawhabitat.com"] [uri "/xmlrpc.php"] [unique_id "akVQI5pWa3oAEy9YKjeOLQAAAQQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-07-01 17:04:15
(12 hours ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
BD/Bangladesh/-
Web App Attack
๐บ๐ธ
integrantservices.com
2026-07-01 13:08:28
(16 hours ago)
(wordpress) Failed wordpress login from 118.179.184.149 (BD/Bangladesh/-)
Brute-Force
Anonymous
2026-07-01 11:06:10
(18 hours ago)
Attac
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-01 10:39:48
(19 hours ago)
(mod_security) mod_security (id:240335) triggered by 118.179.184.149 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240335) triggered by 118.179.184.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 01 06:39:36.990703 2026] [security2:error] [pid 9384:tid 9384] [client 118.179.184.149:65370] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 118.179.184.149 (+1 hits since last alert)|learnserve.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "learnserve.net"] [uri "/xmlrpc.php"] [unique_id "akTuaERmSWvqZRe92D5RAwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-30 13:37:31
(1 day ago)
xmlrpc request blocked, no referer. Pattern match "xmlrpc.php" at REQUEST_URI. (88010-201)
Hacking
๐ซ๐ท
dynamix
2026-06-30 09:23:54
(1 day ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
Anonymous
2026-06-29 04:24:06
(3 days ago)
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1
Hacking
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-28 15:07:36
(3 days ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐ฆ๐บ
screwlooseit.com.au
2026-06-28 14:36:58
(3 days ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
BD/Bangladesh/-
Web App Attack
๐บ๐ธ
integrantservices.com
2026-06-28 14:36:24
(3 days ago)
(wordpress) Failed wordpress login from 118.179.184.149 (BD/Bangladesh/-)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-28 14:07:27
(3 days ago)
(mod_security) mod_security (id:240335) triggered by 118.179.184.149 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240335) triggered by 118.179.184.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 10:07:17.438752 2026] [security2:error] [pid 1603:tid 1603] [client 118.179.184.149:51963] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 118.179.184.149 (+1 hits since last alert)|helloauto.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "helloauto.net"] [uri "/xmlrpc.php"] [unique_id "akEqlTTU4XJr7B_nu034HQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
konseptit
2026-06-26 19:29:36
(5 days ago)
(wordpress) Failed wordpress login from 118.179.184.149 (BD/Bangladesh/-)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-26 18:43:22
(5 days ago)
(mod_security) mod_security (id:240335) triggered by 118.179.184.149 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240335) triggered by 118.179.184.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 14:43:12.183990 2026] [security2:error] [pid 25860:tid 25860] [client 118.179.184.149:58283] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 118.179.184.149 (+1 hits since last alert)|goldcountrygermanamericanclub.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "goldcountrygermanamericanclub.org"] [uri "/xmlrpc.php"] [unique_id "aj7IQN9sQQSKxushLTNfagAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
inlink.ltd
2026-06-25 09:51:18
(6 days ago)
Known malicious PHP file or CMS probe
Web App Attack