๐บ๐ธ
integrantservices.com
2026-06-23 17:02:29
(1 week ago)
(wordpress) Failed wordpress login from 168.149.21.161 (SA/Saudi Arabia/-)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-23 16:34:00
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 168.149.21.161 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 168.149.21.161 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 12:33:56.874468 2026] [security2:error] [pid 16376:tid 16376] [client 168.149.21.161:52704] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 168.149.21.161 (+1 hits since last alert)|versallis.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "versallis.com"] [uri "/xmlrpc.php"] [unique_id "ajq1dKGBB7b_K6kPSVy6EAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-23 16:05:36
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 168.149.21.161 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 168.149.21.161 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 12:05:31.257109 2026] [security2:error] [pid 15075:tid 15088] [client 168.149.21.161:55138] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 168.149.21.161 (+1 hits since last alert)|duplexgoldmine.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "duplexgoldmine.com"] [uri "/xmlrpc.php"] [unique_id "ajquy64ohyHdNrdmGUz0ygAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
masterguru
2026-06-22 17:30:01
(1 week ago)
(xmlrpc) Failed xmlrpc access from 168.149.21.161 (SA/Saudi Arabia/-): 5 in the last 3600 secs (0-12 ...
show more
(xmlrpc) Failed xmlrpc access from 168.149.21.161 (SA/Saudi Arabia/-): 5 in the last 3600 secs (0-122)
show less
Hacking
๐ฉ๐ช
abdubhai
2026-06-22 08:34:01
(1 week ago)
168.149.21.161 - - [22/Jun/2026:
...
Brute-Force
๐ช๐ธ
masterguru
2026-06-21 15:34:07
(1 week ago)
(xmlrpc) Failed xmlrpc access from 168.149.21.161 (SA/Saudi Arabia/-): 5 in the last 3600 secs (0-12 ...
show more
(xmlrpc) Failed xmlrpc access from 168.149.21.161 (SA/Saudi Arabia/-): 5 in the last 3600 secs (0-122)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-21 15:06:21
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 168.149.21.161 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 168.149.21.161 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 11:06:14.270635 2026] [security2:error] [pid 20156:tid 20156] [client 168.149.21.161:58620] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 168.149.21.161 (+1 hits since last alert)|equipoperu.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "equipoperu.org"] [uri "/xmlrpc.php"] [unique_id "ajf95g2VIgtMe0bU3i2_XAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-21 13:33:26
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 168.149.21.161 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 168.149.21.161 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 09:33:20.531817 2026] [security2:error] [pid 18993:tid 18993] [client 168.149.21.161:55215] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 168.149.21.161 (+1 hits since last alert)|ospectra.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "ospectra.com"] [uri "/xmlrpc.php"] [unique_id "ajfoIDM9HUUYFZrXw90sRAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
konseptit
2026-06-21 13:31:18
(1 week ago)
(wordpress) Failed wordpress login from 168.149.21.161 (SA/Saudi Arabia/-)
Brute-Force
๐ซ๐ท
Kenshin869
2026-06-21 13:30:07
(1 week ago)
Wordpress unauthorized access attempt
Brute-Force
๐ฉ๐ช
rh24
2026-06-21 08:46:26
(1 week ago)
(wordpress) Failed wordpress login from 168.149.21.161 (SA/Saudi Arabia/-): (CF_ENABLE)
Brute-Force
Anonymous
2026-06-20 16:05:25
(1 week ago)
Fail2ban filtered
...
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-06-20 15:26:13
(1 week ago)
Unauthorized access to webpage admin
Web App Attack