๐บ๐ธ
TPI-Abuse
2026-07-14 16:57:15
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 160.30.39.37 (static-160-30-39-37.aeronetonline ...
show more
(mod_security) mod_security (id:240335) triggered by 160.30.39.37 (static-160-30-39-37.aeronetonline.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 14 12:57:08.929861 2026] [security2:error] [pid 30880:tid 30880] [client 160.30.39.37:63981] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 160.30.39.37 (+1 hits since last alert)|roguetechink.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "roguetechink.com"] [uri "/xmlrpc.php"] [unique_id "alZqZC8R738yuaSAstOqYQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-14 16:01:58
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 160.30.39.37 (static-160-30-39-37.aeronetonline ...
show more
(mod_security) mod_security (id:240335) triggered by 160.30.39.37 (static-160-30-39-37.aeronetonline.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 14 12:01:49.856082 2026] [security2:error] [pid 27688:tid 27688] [client 160.30.39.37:53210] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 160.30.39.37 (+1 hits since last alert)|studioyau.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "studioyau.com"] [uri "/xmlrpc.php"] [unique_id "alZdbdbBMIn2DHEq4Xyy_wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-07-11 19:00:06
(1 week ago)
(xmlrpc_405) XMLRPC-Bot 405 160.30.39.37 (IN/India/static-160-30-39-37.aeronetonline.in)
Hacking
Anonymous
2026-07-09 08:30:32
(1 week ago)
160.30.39.37 - - [09/Jul/2026:10:30:10 +0200] "POST /xmlrpc.php HTTP/1.1" 200 593 "-" "Jetpack by Wo ...
show more
160.30.39.37 - - [09/Jul/2026:10:30:10 +0200] "POST /xmlrpc.php HTTP/1.1" 200 593 "-" "Jetpack by WordPress.com (Jetpack 12.0; WordPress 6.2)"
160.30.39.37 - - [09/Jul/2026:10:30:11 +0200] "POST /xmlrpc.php HTTP/1.1" 200 403 "-" "Jetpack by WordPress.com (Jetpack 12.0; WordPress 6.2)"
160.30.39.37 - - [09/Jul/2026:10:30:20 +0200] "POST /xmlrpc.php HTTP/1.1" 200 593 "-" "Jetpack by WordPress.com"
160.30.39.37 - - [09/Jul/2026:10:30:20 +0200] "POST /xmlrpc.php HTTP/1.1" 200 403 "-" "Jetpack by WordPress.com"
160.30.39.37 - - [09/Jul/2026:10:30:31 +0200] "POST /xmlrpc.php HTTP/1.1" 200 593 "-" "Jetpack by WordPress.com"
...
show less
Brute-Force
Web App Attack
๐ฉ๐ช
grassau.com
2026-07-02 14:41:33
(2 weeks ago)
(wordpress) Failed wordpress login from 160.30.39.37 (IN/India/Telangana/Hyderabad/static-160-30-39- ...
show more
(wordpress) Failed wordpress login from 160.30.39.37 (IN/India/Telangana/Hyderabad/static-160-30-39-37.aeronetonline.in)
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-26 12:19:47
(3 weeks ago)
(mod_security) mod_security (id:240335) triggered by 160.30.39.37 (static-160-30-39-37.aeronetonline ...
show more
(mod_security) mod_security (id:240335) triggered by 160.30.39.37 (static-160-30-39-37.aeronetonline.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 08:19:41.143340 2026] [security2:error] [pid 17221:tid 17221] [client 160.30.39.37:51538] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 160.30.39.37 (+1 hits since last alert)|baselinesc.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "baselinesc.com"] [uri "/xmlrpc.php"] [unique_id "aj5uXT7XKPzzHUQp--UXggAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-06-04 12:38:17
(1 month ago)
(wordpress) Failed wordpress login from 160.30.39.37 (IN/India/static-160-30-39-37.aeronetonline.in) ...
show more
(wordpress) Failed wordpress login from 160.30.39.37 (IN/India/static-160-30-39-37.aeronetonline.in): (CF_ENABLE)
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-01 15:21:18
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 160.30.39.37 (static-160-30-39-37.aeronetonline ...
show more
(mod_security) mod_security (id:240335) triggered by 160.30.39.37 (static-160-30-39-37.aeronetonline.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 11:21:13.519912 2026] [security2:error] [pid 8717:tid 8717] [client 160.30.39.37:52206] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 160.30.39.37 (+1 hits since last alert)|guarinofurnituredesigns.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "guarinofurnituredesigns.com"] [uri "/xmlrpc.php"] [unique_id "ah2jaSxWg1evgvqpqJKhOwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WeekendWeb
2026-06-01 07:22:24
(1 month ago)
Wordpress Vunerability attack
Web App Attack
๐บ๐ธ
WeekendWeb
2026-05-30 15:03:13
(1 month ago)
Wordpress Vunerability attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-30 13:10:53
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 160.30.39.37 (static-160-30-39-37.aeronetonline ...
show more
(mod_security) mod_security (id:240335) triggered by 160.30.39.37 (static-160-30-39-37.aeronetonline.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 30 09:10:46.620058 2026] [security2:error] [pid 29099:tid 29099] [client 160.30.39.37:55670] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 160.30.39.37 (+1 hits since last alert)|36sovereignchambers.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "36sovereignchambers.com"] [uri "/xmlrpc.php"] [unique_id "ahrh1iiO4UItF1DrXVF90QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-05-28 12:54:35
(1 month ago)
Try to access /xmlrpc.php
Web App Attack
๐ซ๐ท
dynamix
2026-05-19 15:41:48
(2 months ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-13 07:31:19
(2 months ago)
(mod_security) mod_security (id:240335) triggered by 160.30.39.37 (static-160-30-39-37.aeronetonline ...
show more
(mod_security) mod_security (id:240335) triggered by 160.30.39.37 (static-160-30-39-37.aeronetonline.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 13 03:31:13.601672 2026] [security2:error] [pid 24933:tid 24933] [client 160.30.39.37:54995] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 160.30.39.37 (+1 hits since last alert)|bigheartskitchen.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "bigheartskitchen.net"] [uri "/xmlrpc.php"] [unique_id "agQowUTX_yKGCkDWPi0G_QAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
ELYAZ
2026-05-11 14:37:33
(2 months ago)
(wordpress) Failed wordpress login from 160.30.39.37 (IN/India/static-160-30-39-37.aeronetonline.in) ...
show more
(wordpress) Failed wordpress login from 160.30.39.37 (IN/India/static-160-30-39-37.aeronetonline.in): (CF_ENABLE)
show less
Brute-Force