Anonymous
2026-05-18 18:37:10
(3 months ago)
Attac
Brute-Force
๐ณ๐ฑ
wlt-blocker
2026-05-17 22:19:00
(3 months ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-17 15:26:51
(3 months ago)
(mod_security) mod_security (id:240335) triggered by 131.100.147.65 (65.147.100.131.dynamic.vibefibr ...
show more
(mod_security) mod_security (id:240335) triggered by 131.100.147.65 (65.147.100.131.dynamic.vibefibra.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 17 11:26:48.891071 2026] [security2:error] [pid 8017:tid 8017] [client 131.100.147.65:44058] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 131.100.147.65 (+1 hits since last alert)|calvarycavaliers.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "calvarycavaliers.org"] [uri "/xmlrpc.php"] [unique_id "agneODTQJNoiw_HUyJDwBAAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-05-17 14:53:25
(3 months ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-17 05:25:06
(3 months ago)
(mod_security) mod_security (id:240335) triggered by 131.100.147.65 (65.147.100.131.dynamic.vibefibr ...
show more
(mod_security) mod_security (id:240335) triggered by 131.100.147.65 (65.147.100.131.dynamic.vibefibra.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 17 01:24:55.877943 2026] [security2:error] [pid 31341:tid 31341] [client 131.100.147.65:42851] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 131.100.147.65 (+1 hits since last alert)|leolion.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "leolion.net"] [uri "/xmlrpc.php"] [unique_id "aglRJ2Hg2T9JNftxCu-a3AAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-17 04:50:36
(3 months ago)
Attac
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-05-16 17:02:57
(3 months ago)
(mod_security) mod_security (id:240335) triggered by 131.100.147.65 (65.147.100.131.dynamic.vibefibr ...
show more
(mod_security) mod_security (id:240335) triggered by 131.100.147.65 (65.147.100.131.dynamic.vibefibra.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 16 13:02:50.583901 2026] [security2:error] [pid 7250:tid 7250] [client 131.100.147.65:45293] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 131.100.147.65 (+1 hits since last alert)|holgerfeld.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "holgerfeld.com"] [uri "/xmlrpc.php"] [unique_id "agijOkLEE1hAhoYDF0NyQAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-05-16 00:43:36
(3 months ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-05-15 21:42:40
(3 months ago)
(mod_security) mod_security (id:240335) triggered by 131.100.147.65 (65.147.100.131.dynamic.vibefibr ...
show more
(mod_security) mod_security (id:240335) triggered by 131.100.147.65 (65.147.100.131.dynamic.vibefibra.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 17:42:34.410627 2026] [security2:error] [pid 15213:tid 15213] [client 131.100.147.65:45352] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 131.100.147.65 (+1 hits since last alert)|mayiasteadman.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "mayiasteadman.com"] [uri "/xmlrpc.php"] [unique_id "ageTSgWvHEPNgGudOgDjPQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-05-14 23:46:39
(3 months ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
BR/Brazil/65.147.100.131.dynamic.vibefibra.com.br
Web App Attack
Anonymous
2026-05-14 23:17:15
(3 months ago)
Attac
Brute-Force
Anonymous
2026-05-14 23:16:42
(3 months ago)
(wordpress) Failed wordpress login from 131.100.147.65 (BR/Brazil/65.147.100.131.dynamic.vibefibra.c ...
show more
(wordpress) Failed wordpress login from 131.100.147.65 (BR/Brazil/65.147.100.131.dynamic.vibefibra.com.br): (CF_ENABLE)
show less
Brute-Force
๐บ๐ธ
WeekendWeb
2026-05-14 21:02:14
(3 months ago)
Wordpress Vunerability attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-14 20:05:35
(3 months ago)
(mod_security) mod_security (id:240335) triggered by 131.100.147.65 (65.147.100.131.dynamic.vibefibr ...
show more
(mod_security) mod_security (id:240335) triggered by 131.100.147.65 (65.147.100.131.dynamic.vibefibra.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 14 16:05:30.969773 2026] [security2:error] [pid 17993:tid 17993] [client 131.100.147.65:43644] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 131.100.147.65 (+1 hits since last alert)|abilityengraving.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "abilityengraving.com"] [uri "/xmlrpc.php"] [unique_id "agYrCgmmtnEMB91Osul6IAAAAC8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-14 19:34:53
(3 months ago)
(mod_security) mod_security (id:240335) triggered by 131.100.147.65 (65.147.100.131.dynamic.vibefibr ...
show more
(mod_security) mod_security (id:240335) triggered by 131.100.147.65 (65.147.100.131.dynamic.vibefibra.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 14 15:34:49.078568 2026] [security2:error] [pid 1899:tid 1923] [client 131.100.147.65:41780] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 131.100.147.65 (+1 hits since last alert)|inal.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "inal.org"] [uri "/xmlrpc.php"] [unique_id "agYj2cQG2pO1IpqZfTLViAAAAVU"]
show less
Brute-Force
Bad Web Bot
Web App Attack