๐บ๐ธ
TPI-Abuse
2026-06-16 10:02:49
(2 days ago)
(mod_security) mod_security (id:240335) triggered by 164.100.214.88 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 164.100.214.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 06:02:44.684795 2026] [security2:error] [pid 26631:tid 26631] [client 164.100.214.88:19288] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 164.100.214.88 (+1 hits since last alert)|carolinafootprints.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "carolinafootprints.com"] [uri "/xmlrpc.php"] [unique_id "ajEfRDcZiH70xxJONePzqgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-15 08:45:28
(3 days ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
Anonymous
2026-06-15 08:41:28
(3 days ago)
Fail2Ban - Wordpress brute-force
...
Brute-Force
Web App Attack
๐ฉ๐ช
rh24
2026-06-12 09:38:16
(6 days ago)
(wordpress) Failed wordpress login from 164.100.214.88 (IN/India/-): (CF_ENABLE)
Brute-Force
๐ฆ๐บ
clapper
2026-06-12 07:15:10
(6 days ago)
(mod_security) mod_security (id:350202) triggered by 164.100.214.88 (IN/India/-): 5 in the last 600 ...
show more
(mod_security) mod_security (id:350202) triggered by 164.100.214.88 (IN/India/-): 5 in the last 600 secs; ID: rub
show less
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-11 09:24:52
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 164.100.214.88 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 164.100.214.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 05:24:47.882834 2026] [security2:error] [pid 14719:tid 14719] [client 164.100.214.88:19096] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 164.100.214.88 (+1 hits since last alert)|d-sinema.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "d-sinema.com"] [uri "/xmlrpc.php"] [unique_id "aip-33IiSrCvO5mK8H2DEQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WeekendWeb
2026-06-11 07:14:36
(1 week ago)
Wordpress Vunerability attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 06:44:26
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 164.100.214.88 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 164.100.214.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 02:44:19.657347 2026] [security2:error] [pid 24440:tid 24440] [client 164.100.214.88:15680] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 164.100.214.88 (+1 hits since last alert)|capitalswisscorp.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "capitalswisscorp.com"] [uri "/xmlrpc.php"] [unique_id "aipZQ7Gmt5Xs18ynBp6RKwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 10:11:17
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 164.100.214.88 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 164.100.214.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 06:11:09.107844 2026] [security2:error] [pid 18893:tid 18893] [client 164.100.214.88:15814] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 164.100.214.88 (+1 hits since last alert)|gemco-mfg.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "gemco-mfg.com"] [uri "/xmlrpc.php"] [unique_id "aik4PdxzW9-HEPNwzcQZTwAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-06-09 10:41:31
(1 week ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
IN/India/-
Web App Attack
๐ซ๐ท
applemooz
2026-06-04 08:58:53
(2 weeks ago)
WordPress XMLRPC Brute Force Attacks
...
Brute-Force
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-06-04 08:57:56
(2 weeks ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ฉ๐ช
rh24
2026-06-03 06:21:32
(2 weeks ago)
(wordpress) Failed wordpress login from 164.100.214.88 (IN/India/-): (CF_ENABLE)
Brute-Force
Anonymous
2026-06-02 07:20:14
(2 weeks ago)
Attac
Brute-Force
Anonymous
2026-06-01 07:39:57
(2 weeks ago)
Blocked: Reason='Vulnerability probing โ PHP scan detected (43/60 min)'; Requests=43
Port Scan