๐ฉ๐ช
rh24
2026-06-24 23:31:24
(2 days ago)
(wordpress) Failed wordpress login from 165.16.184.3 (-): (CF_ENABLE)
Brute-Force
๐ซ๐ท
applemooz
2026-06-24 23:30:29
(2 days ago)
WordPress XMLRPC Brute Force Attacks
...
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-24 21:09:07
(2 days ago)
(mod_security) mod_security (id:240335) triggered by 165.16.184.3 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 165.16.184.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 17:08:59.458885 2026] [security2:error] [pid 13325:tid 13325] [client 165.16.184.3:26490] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 165.16.184.3 (+1 hits since last alert)|laecovillage.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "laecovillage.org"] [uri "/xmlrpc.php"] [unique_id "ajxHaxRA3FAmp6K5XYrhXgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-24 20:21:09
(2 days ago)
165.16.184.3 - - [25/Jun/2026:04:21:08 +0800] "POST /xmlrpc.php HTTP/1.1" 200 403 "-" "Jetpack/12.1; ...
show more
165.16.184.3 - - [25/Jun/2026:04:21:08 +0800] "POST /xmlrpc.php HTTP/1.1" 200 403 "-" "Jetpack/12.1; WordPress/6.1; http://site28895465.com"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-24 16:41:38
(2 days ago)
(mod_security) mod_security (id:240335) triggered by 165.16.184.3 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 165.16.184.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 12:41:33.617046 2026] [security2:error] [pid 30220:tid 30220] [client 165.16.184.3:26372] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 165.16.184.3 (+1 hits since last alert)|bfpsamoa.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "bfpsamoa.com"] [uri "/xmlrpc.php"] [unique_id "ajwIvVXw3mpwLUcvYZanPQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-24 00:23:28
(3 days ago)
(mod_security) mod_security (id:240335) triggered by 165.16.184.3 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 165.16.184.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 20:23:24.185801 2026] [security2:error] [pid 2582:tid 2582] [client 165.16.184.3:26843] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 165.16.184.3 (+1 hits since last alert)|papapizza.pizza|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "papapizza.pizza"] [uri "/xmlrpc.php"] [unique_id "ajsjfE2yLY2MVBWnh7FmvAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-31 18:12:15
(3 weeks ago)
Attac
Brute-Force
Anonymous
2026-05-21 22:22:43
(1 month ago)
Attac
Brute-Force
๐ฎ๐น
Progetto1
2026-05-19 09:45:05
(1 month ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
integrantservices.com
2026-05-18 20:33:59
(1 month ago)
(wordpress) Failed wordpress login from 165.16.184.3 (-)
Brute-Force
Anonymous
2026-05-18 20:05:10
(1 month ago)
Attac
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-05-09 16:49:14
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 165.16.184.3 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 165.16.184.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 12:49:08.950631 2026] [security2:error] [pid 964:tid 972] [client 165.16.184.3:26724] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 165.16.184.3 (+1 hits since last alert)|kemalinal.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "kemalinal.com"] [uri "/xmlrpc.php"] [unique_id "af9lhCbzGiZipv4IS7m8VQAAAYM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
konseptit
2026-05-09 16:40:14
(1 month ago)
(wordpress) Failed wordpress login from 165.16.184.3 (ZA/South Africa/-)
Brute-Force
๐ฉ๐ช
dbmwebdesign
2026-04-26 17:15:18
(2 months ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-04-26 09:15:05
(2 months ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack