πΊπΈ
TPI-Abuse
2026-07-19 17:24:03
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 178.113.142.171 (178.113.142.171.wireless.dyn.d ...
show more
(mod_security) mod_security (id:240335) triggered by 178.113.142.171 (178.113.142.171.wireless.dyn.drei.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 13:23:58.039789 2026] [security2:error] [pid 1981285:tid 1981285] [client 178.113.142.171:55553] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 178.113.142.171 (+1 hits since last alert)|georgesmarina.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "georgesmarina.com"] [uri "/xmlrpc.php"] [unique_id "al0ILqdaP6rNAHNoiWIBIAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
lostswordfish.com
2026-07-19 16:24:03
(1 day ago)
Wordfence waf block on illinoisvoices
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-19 16:06:11
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 178.113.142.171 (178.113.142.171.wireless.dyn.d ...
show more
(mod_security) mod_security (id:240335) triggered by 178.113.142.171 (178.113.142.171.wireless.dyn.drei.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 12:06:04.128994 2026] [security2:error] [pid 22552:tid 22557] [client 178.113.142.171:55739] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 178.113.142.171 (+1 hits since last alert)|munatseng.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "munatseng.org"] [uri "/xmlrpc.php"] [unique_id "alz17KVCrGyDjHAONiLiYQAAAUM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
ghostwarriors
2026-07-19 14:50:32
(1 day ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-19 14:38:06
(1 day ago)
Fail2Ban: WordPress XML-RPC brute-force attack detected.
Bad Web Bot
Web App Attack
π©πͺ
rh24
2026-07-19 14:36:40
(1 day ago)
(xmlrpc_405) XMLRPC-Bot 405 178.113.142.171 (AT/Austria/178.113.142.171.wireless.dyn.drei.com)
Hacking
πΊπΈ
TPI-Abuse
2026-07-19 11:00:55
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 178.113.142.171 (178.113.142.171.wireless.dyn.d ...
show more
(mod_security) mod_security (id:240335) triggered by 178.113.142.171 (178.113.142.171.wireless.dyn.drei.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 07:00:50.034507 2026] [security2:error] [pid 11356:tid 11356] [client 178.113.142.171:60027] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 178.113.142.171 (+1 hits since last alert)|yanlidesign.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "yanlidesign.com"] [uri "/xmlrpc.php"] [unique_id "alyuYiwO5RucnWtG1M-fEAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
applemooz
2026-07-19 09:34:11
(1 day ago)
WordPress XMLRPC Brute Force Attacks
...
Brute-Force
Web App Attack
π©πͺ
akasolutions.de
2026-07-19 08:28:22
(1 day ago)
(wordpress) Failed wordpress login from 178.113.142.171 (AT/Austria/178.113.142.171.wireless.dyn.dre ...
show more
(wordpress) Failed wordpress login from 178.113.142.171 (AT/Austria/178.113.142.171.wireless.dyn.drei.com)
show less
Brute-Force
πΊπΈ
TPI-Abuse
2026-07-19 08:11:53
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 178.113.142.171 (178.113.142.171.wireless.dyn.d ...
show more
(mod_security) mod_security (id:240335) triggered by 178.113.142.171 (178.113.142.171.wireless.dyn.drei.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 04:11:49.959277 2026] [security2:error] [pid 3409936:tid 3409936] [client 178.113.142.171:65215] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 178.113.142.171 (+1 hits since last alert)|thewhispertwins.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "thewhispertwins.com"] [uri "/xmlrpc.php"] [unique_id "alyGxX8cPwZCkYFcEj8CeAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
integrantservices.com
2026-07-19 07:37:47
(1 day ago)
(wordpress) Failed wordpress login from 178.113.142.171 (AT/Austria/178.113.142.171.wireless.dyn.dre ...
show more
(wordpress) Failed wordpress login from 178.113.142.171 (AT/Austria/178.113.142.171.wireless.dyn.drei.com)
show less
Brute-Force