πΊπΈ
TPI-Abuse
2026-06-27 11:41:02
(16 hours ago)
(mod_security) mod_security (id:240335) triggered by 141.98.141.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 141.98.141.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 27 07:40:55.155431 2026] [security2:error] [pid 27546:tid 27546] [client 141.98.141.44:24840] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 141.98.141.44 (+1 hits since last alert)|eye7graphics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "eye7graphics.com"] [uri "/xmlrpc.php"] [unique_id "aj-2xyaDrlgcDQ1TLzAmNAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
rh24
2026-06-27 11:37:15
(16 hours ago)
(wordpress) Failed wordpress login from 141.98.141.44 (AL/Albania/-): (CF_ENABLE)
Brute-Force
πΊπΈ
TPI-Abuse
2026-06-27 06:50:40
(20 hours ago)
(mod_security) mod_security (id:240335) triggered by 141.98.141.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 141.98.141.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 27 02:50:36.588742 2026] [security2:error] [pid 9480:tid 9480] [client 141.98.141.44:13758] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 141.98.141.44 (+1 hits since last alert)|ismaelcavazos.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "ismaelcavazos.com"] [uri "/xmlrpc.php"] [unique_id "aj9yvAf-vTtCUKoTHa1wMgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-27 04:14:15
(23 hours ago)
(mod_security) mod_security (id:240335) triggered by 141.98.141.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 141.98.141.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 27 00:14:08.800378 2026] [security2:error] [pid 13268:tid 13268] [client 141.98.141.44:15445] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 141.98.141.44 (+1 hits since last alert)|hollyndlaw.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "hollyndlaw.com"] [uri "/xmlrpc.php"] [unique_id "aj9OEDfbunnrbNAjjmilpAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TAY
2026-06-27 02:51:45
(1 day ago)
141.98.141.44 - - [27/Jun/2026:10:51:01 +0800] "POST /xmlrpc.php HTTP/1.1" 200 5979 "-" "Jetpack/13. ...
show more
141.98.141.44 - - [27/Jun/2026:10:51:01 +0800] "POST /xmlrpc.php HTTP/1.1" 200 5979 "-" "Jetpack/13.0; WordPress/6.3; http://site86335325.com"
141.98.141.44 - - [27/Jun/2026:10:51:22 +0800] "POST /xmlrpc.php HTTP/1.1" 200 5979 "-" "WordPress.com; https://wordpress.com"
141.98.141.44 - - [27/Jun/2026:10:51:45 +0800] "POST /xmlrpc.php HTTP/1.1" 200 5979 "-" "Jetpack/13.0; WordPress/6.4; http://site36726616.com"
...
show less
Brute-Force
πΊπΈ
TPI-Abuse
2026-06-26 23:50:23
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 141.98.141.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 141.98.141.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 19:50:18.394414 2026] [security2:error] [pid 10648:tid 10670] [client 141.98.141.44:45952] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 141.98.141.44 (+1 hits since last alert)|chelseyrae.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "chelseyrae.com"] [uri "/xmlrpc.php"] [unique_id "aj8QOrghAbQdX-OMROvcRQAAANQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-26 23:20:17
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 141.98.141.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 141.98.141.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 19:20:10.899561 2026] [security2:error] [pid 31874:tid 31874] [client 141.98.141.44:36657] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 141.98.141.44 (+1 hits since last alert)|michelehoop.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "michelehoop.com"] [uri "/xmlrpc.php"] [unique_id "aj8JKoJh9Cs9jZKl90PaQQAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
dynamix
2026-06-26 21:15:14
(1 day ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
π¨π
backslash
2026-06-13 12:51:03
(2 weeks ago)
block ruleset 6B63410D189E6343B910F7440B8499558BEC52EB
Bad Web Bot
π©πͺ
Vegascosmetics
2026-06-09 23:31:06
(2 weeks ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after obfuscated redirect. Vegas Security
DDoS Attack
Hacking
Exploited Host
Anonymous
2026-05-16 04:45:58
(1 month ago)
Attack Signature Blocked: /wishlist/index/add/product/13345/form_key/XkPsO4ZdV9b7IiD9/img/graphic.jp ...
show more
Attack Signature Blocked: /wishlist/index/add/product/13345/form_key/XkPsO4ZdV9b7IiD9/img/graphic.jpg (Magento Site) (Botnet activity attributed to: Angara Technologies Group / mikhail-smirnov-79830322)
show less
Web App Attack
Bad Web Bot
πΊπΈ
gui-ying233
2026-01-17 06:31:54
(5 months ago)
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/537.36 (KHTML, like Gecko) Brave Chrome/ ...
show more
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/537.36 (KHTML, like Gecko) Brave Chrome/81.0.4044.113 Safari/537.36
show less
Bad Web Bot
Anonymous
2025-11-18 15:03:35
(7 months ago)
scanning http requests from known botnet
Web App Attack
Anonymous
2025-09-21 12:01:58
(9 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.09.21 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.09.21 is noted in report timestamp
show less
Hacking
Brute-Force
π¬π§
quarba
2024-05-05 16:39:43
(2 years ago)
Brute force SMTP login attempted
Brute-Force