๐ฉ๐ช
dbmwebdesign
2026-09-16 10:40:16
(2 days ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
๐ฉ๐ช
akasolutions.de
2026-09-15 09:59:14
(3 days ago)
(wordpress) Failed wordpress login from 143.44.145.223 (PH/Philippines/143.44.145.223-rev.convergeic ...
show more
(wordpress) Failed wordpress login from 143.44.145.223 (PH/Philippines/143.44.145.223-rev.convergeict.com)
show less
Brute-Force
Anonymous
2026-09-15 09:59:07
(3 days ago)
[redacted] 143.44.145.223 - - [15/Sep/2026:11:58:23 +0200] "POST /xmlrpc.php HTTP/1.1" 403 239 "-" " ...
show more
[redacted] 143.44.145.223 - - [15/Sep/2026:11:58:23 +0200] "POST /xmlrpc.php HTTP/1.1" 403 239 "-" "WordPress.com; https://wordpress.com"
[redacted] 143.44.145.223 - - [15/Sep/2026:11:58:34 +0200] "POST /xmlrpc.php HTTP/1.1" 403 239 "-" "Jetpack by WordPress.com (Jetpack 12.0; WordPress 6.1)"
[redacted] 143.44.145.223 - - [15/Sep/2026:11:58:45 +0200] "POST /xmlrpc.php HTTP/1.1" 403 239 "-" "Jetpack/12.1; WordPress/6.2; http://site88216723.com"
[redacted] 143.44.145.223 - - [15/Sep/2026:11:58:56 +0200] "POST /xmlrpc.php HTTP/1.1" 403 239 "-" "WordPress.com; https://wordpress.com"
[redacted] 143.44.145.223 - - [15/Sep/2026:11:59:06 +0200] "POST /xmlrpc.php HTTP/1.1" 403 239 "-" "WordPress.com; https://wordpress.com"
...
show less
Hacking
Web App Attack
๐บ๐ธ
kosada.com
2026-08-01 10:05:31
(1 month ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐จ๐ฆ
Dunham Support
2026-07-05 02:12:57
(2 months ago)
(wordpress) Failed wordpress login from 143.44.145.223 (PH/Philippines/143.44.145.223-rev.convergeic ...
show more
(wordpress) Failed wordpress login from 143.44.145.223 (PH/Philippines/143.44.145.223-rev.convergeict.com)
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-04 05:47:12
(2 months ago)
(mod_security) mod_security (id:240335) triggered by 143.44.145.223 (143.44.145.223-rev.convergeict. ...
show more
(mod_security) mod_security (id:240335) triggered by 143.44.145.223 (143.44.145.223-rev.convergeict.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 04 01:47:08.698857 2026] [security2:error] [pid 1341:tid 1341] [client 143.44.145.223:52380] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 143.44.145.223 (+1 hits since last alert)|localpetsitters.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "localpetsitters.com"] [uri "/xmlrpc.php"] [unique_id "akieXGDFkK-T5BvIk5qDeAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-07-03 06:33:11
(2 months ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ซ๐ฎ
YF
2026-07-01 06:00:47
(2 months ago)
xmlrpc.php Potential DDoS or brute force
DDoS Attack
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-29 06:40:26
(2 months ago)
(mod_security) mod_security (id:240335) triggered by 143.44.145.223 (143.44.145.223-rev.convergeict. ...
show more
(mod_security) mod_security (id:240335) triggered by 143.44.145.223 (143.44.145.223-rev.convergeict.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 29 02:40:18.732294 2026] [security2:error] [pid 15127:tid 15127] [client 143.44.145.223:25326] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 143.44.145.223 (+1 hits since last alert)|celebritybikinigossip.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "celebritybikinigossip.com"] [uri "/xmlrpc.php"] [unique_id "akITUjwiHm_Vnjl4EKoeUAAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-27 05:16:40
(2 months ago)
Attac
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-27 05:03:25
(2 months ago)
(mod_security) mod_security (id:240335) triggered by 143.44.145.223 (143.44.145.223-rev.convergeict. ...
show more
(mod_security) mod_security (id:240335) triggered by 143.44.145.223 (143.44.145.223-rev.convergeict.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 27 01:03:17.952506 2026] [security2:error] [pid 5433:tid 5433] [client 143.44.145.223:4794] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 143.44.145.223 (+1 hits since last alert)|roguetechhub.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "roguetechhub.com"] [uri "/xmlrpc.php"] [unique_id "aj9ZleYawnBddZdJmsJFPAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-27 04:58:41
(2 months ago)
xmlrpc request blocked, no referer. Pattern match "xmlrpc.php" at REQUEST_URI. (88010-201)
Hacking
๐ซ๐ท
dynamix
2026-06-10 06:36:19
(3 months ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 05:07:34
(3 months ago)
(mod_security) mod_security (id:240335) triggered by 143.44.145.223 (143.44.145.223-rev.convergeict. ...
show more
(mod_security) mod_security (id:240335) triggered by 143.44.145.223 (143.44.145.223-rev.convergeict.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 01:07:26.692979 2026] [security2:error] [pid 5972:tid 5972] [client 143.44.145.223:29767] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 143.44.145.223 (+1 hits since last alert)|garantaconsulting.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "garantaconsulting.com"] [uri "/xmlrpc.php"] [unique_id "aijxDr2KOAsEYoPMCUmkcwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 08:13:23
(3 months ago)
(mod_security) mod_security (id:240335) triggered by 143.44.145.223 (143.44.145.223-rev.convergeict. ...
show more
(mod_security) mod_security (id:240335) triggered by 143.44.145.223 (143.44.145.223-rev.convergeict.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:13:19.796035 2026] [security2:error] [pid 32449:tid 32449] [client 143.44.145.223:29089] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 143.44.145.223 (+1 hits since last alert)|centrodentalsindolor.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "centrodentalsindolor.com"] [uri "/xmlrpc.php"] [unique_id "aifLH9yI9XDRWFxAs5eFAgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack