๐ฉ๐ช
Vegascosmetics
2026-06-13 15:32:56
(2 hours ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after suspicious activity. Vegas Security
DDoS Attack
Hacking
Exploited Host
Anonymous
2026-06-11 13:06:44
(2 days ago)
Trying to access config files
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 12:12:43
(3 days ago)
(mod_security) mod_security (id:240335) triggered by 158.181.42.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 158.181.42.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 08:12:39.274875 2026] [security2:error] [pid 5125:tid 5125] [client 158.181.42.255:3207] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 158.181.42.255 (+1 hits since last alert)|navarrete.ws|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "navarrete.ws"] [uri "/xmlrpc.php"] [unique_id "ailUtxZU8tAmSTfOM2bUkAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
integrantservices.com
2026-06-10 11:38:31
(3 days ago)
(wordpress) Failed wordpress login from 158.181.42.255 (AZ/Azerbaijan/-)
Brute-Force
๐ฉ๐ช
rh24
2026-06-10 11:32:56
(3 days ago)
(xmlrpc_405) XMLRPC-Bot 405 158.181.42.255 (AZ/Azerbaijan/-)
Hacking
Anonymous
2026-06-10 11:06:17
(3 days ago)
Trying to access config files
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 07:55:57
(3 days ago)
(mod_security) mod_security (id:240335) triggered by 158.181.42.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 158.181.42.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 03:55:52.045329 2026] [security2:error] [pid 23877:tid 23877] [client 158.181.42.255:3553] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 158.181.42.255 (+1 hits since last alert)|calvaryadminservices.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "calvaryadminservices.com"] [uri "/xmlrpc.php"] [unique_id "aikYiKwx891NRFAlFLc-AAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WeekendWeb
2026-06-10 05:35:03
(3 days ago)
Wordpress Vunerability attack
Web App Attack
Anonymous
2026-06-10 05:10:09
(3 days ago)
[redacted] 158.181.42.255 - - [10/Jun/2026:07:09:25 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" " ...
show more
[redacted] 158.181.42.255 - - [10/Jun/2026:07:09:25 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Jetpack by WordPress.com"
[redacted] 158.181.42.255 - - [10/Jun/2026:07:09:35 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Jetpack/13.0; WordPress/6.2; http://site13155455.com"
[redacted] 158.181.42.255 - - [10/Jun/2026:07:09:46 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Jetpack by WordPress.com"
[redacted] 158.181.42.255 - - [10/Jun/2026:07:09:56 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "WordPress.com; https://wordpress.com"
[redacted] 158.181.42.255 - - [10/Jun/2026:07:10:07 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "WordPress.com; https://wordpress.com"
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 04:54:10
(3 days ago)
(mod_security) mod_security (id:240335) triggered by 158.181.42.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 158.181.42.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 00:54:05.992583 2026] [security2:error] [pid 29498:tid 29498] [client 158.181.42.255:4027] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 158.181.42.255 (+1 hits since last alert)|churchbehindthewalls.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "churchbehindthewalls.com"] [uri "/xmlrpc.php"] [unique_id "aijt7dcUf3sIa52HRjmy7gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 15:27:05
(4 days ago)
(mod_security) mod_security (id:240335) triggered by 158.181.42.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 158.181.42.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 11:26:59.019793 2026] [security2:error] [pid 19394:tid 19394] [client 158.181.42.255:1942] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 158.181.42.255 (+1 hits since last alert)|apuntesdeinversion.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "apuntesdeinversion.com"] [uri "/xmlrpc.php"] [unique_id "aigwwwVq1hmoBBS__RqZLAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-06-09 12:52:47
(4 days ago)
(wordpress) Failed wordpress login from 158.181.42.255 (AZ/Azerbaijan/-): (CF_ENABLE)
Brute-Force
๐ณ๐ฑ
soverin
2026-06-05 15:25:04
(1 week ago)
spam
Email Spam
๐จ๐ญ
backslash
2026-05-28 12:18:03
(2 weeks ago)
block ruleset 6B63410D189E6343B910F7440B8499558BEC52EB
Bad Web Bot
๐ซ๐ฎ
danskefilm.dk
2026-05-23 08:20:01
(3 weeks ago)
Mail spam, spamassassin score over 20 points
Email Spam