๐บ๐ธ
TPI-Abuse
2026-08-24 13:25:41
(20 minutes ago)
(mod_security) mod_security (id:240335) triggered by 122.168.0.212 (abts-mp-dynamic-212.0.168.122.ai ...
show more
(mod_security) mod_security (id:240335) triggered by 122.168.0.212 (abts-mp-dynamic-212.0.168.122.airtelbroadband.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 09:25:33.585775 2026] [security2:error] [pid 17388:tid 17388] [client 122.168.0.212:20466] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 122.168.0.212 (+1 hits since last alert)|internetnameregistration.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "internetnameregistration.com"] [uri "/xmlrpc.php"] [unique_id "aoxGTfU0mjE1FWceGHPIvQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-08-24 13:23:31
(23 minutes ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 09:29:28
(4 hours ago)
(mod_security) mod_security (id:240335) triggered by 122.168.0.212 (abts-mp-dynamic-212.0.168.122.ai ...
show more
(mod_security) mod_security (id:240335) triggered by 122.168.0.212 (abts-mp-dynamic-212.0.168.122.airtelbroadband.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 05:29:21.747950 2026] [security2:error] [pid 22459:tid 22459] [client 122.168.0.212:24094] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 122.168.0.212 (+1 hits since last alert)|d-sinema.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "d-sinema.com"] [uri "/xmlrpc.php"] [unique_id "aowO8VrfIbON2szb8Q8xrgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-24 08:56:05
(4 hours ago)
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1
Hacking
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-08-24 08:56:01
(4 hours ago)
Probing websites for vulnerabilities
Web App Attack
Anonymous
2026-08-24 07:06:06
(6 hours ago)
Trying to access config files
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 06:54:45
(6 hours ago)
(mod_security) mod_security (id:240335) triggered by 122.168.0.212 (abts-mp-dynamic-212.0.168.122.ai ...
show more
(mod_security) mod_security (id:240335) triggered by 122.168.0.212 (abts-mp-dynamic-212.0.168.122.airtelbroadband.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 02:54:39.133811 2026] [security2:error] [pid 1544:tid 1544] [client 122.168.0.212:12489] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 122.168.0.212 (+1 hits since last alert)|eileensharaga.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "eileensharaga.com"] [uri "/xmlrpc.php"] [unique_id "aovqr30fLCwAThf74lerxgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
konseptit
2026-08-24 05:52:00
(7 hours ago)
(wordpress) Failed wordpress login from 122.168.0.212 (IN/India/abts-mp-dynamic-212.0.168.122.airtel ...
show more
(wordpress) Failed wordpress login from 122.168.0.212 (IN/India/abts-mp-dynamic-212.0.168.122.airtelbroadband.in)
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-24 05:33:25
(8 hours ago)
(mod_security) mod_security (id:240335) triggered by 122.168.0.212 (abts-mp-dynamic-212.0.168.122.ai ...
show more
(mod_security) mod_security (id:240335) triggered by 122.168.0.212 (abts-mp-dynamic-212.0.168.122.airtelbroadband.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 01:33:16.447135 2026] [security2:error] [pid 15570:tid 15570] [client 122.168.0.212:1777] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 122.168.0.212 (+1 hits since last alert)|rohanbyles.com.au|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "rohanbyles.com.au"] [uri "/xmlrpc.php"] [unique_id "aovXnDrYtjEzNsMXGQARqAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Tilellit.PRO
2026-07-17 03:29:50
(1 month ago)
WooCommerce YITH AJAX Filder product_cat filter flood attempt with taxonomies
DDoS Attack
Bad Web Bot