🇫🇷
dynamix
2026-06-27 15:16:22
(4 weeks ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
Anonymous
2026-06-27 13:14:30
(4 weeks ago)
Bad Web Bot
Web App Attack
🇦🇺
rubixstudios
2026-06-26 14:12:04
(4 weeks ago)
Excessive HTTP requests consistent with automated attack behaviour detected by Imunify360
DDoS Attack
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-06-26 12:44:08
(4 weeks ago)
(mod_security) mod_security (id:240335) triggered by 179.52.234.111 (111.234.52.179.d.dyn.claro.net. ...
show more
(mod_security) mod_security (id:240335) triggered by 179.52.234.111 (111.234.52.179.d.dyn.claro.net.do): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 08:44:01.117022 2026] [security2:error] [pid 18313:tid 18402] [client 179.52.234.111:64524] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 179.52.234.111 (+1 hits since last alert)|duplexgoldmine.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "duplexgoldmine.com"] [uri "/xmlrpc.php"] [unique_id "aj50ETuWpCZnsrQrGns1pwAAAQE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-25 20:16:55
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 179.52.234.111 (111.234.52.179.d.dyn.claro.net. ...
show more
(mod_security) mod_security (id:240335) triggered by 179.52.234.111 (111.234.52.179.d.dyn.claro.net.do): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 16:16:47.840401 2026] [security2:error] [pid 26760:tid 26760] [client 179.52.234.111:57734] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 179.52.234.111 (+1 hits since last alert)|arsenalfordemocracy.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "arsenalfordemocracy.com"] [uri "/xmlrpc.php"] [unique_id "aj2MrzLJ32OhlFtrsy0f3AAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-06-25 14:45:48
(1 month ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-06-24 19:37:10
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 179.52.234.111 (111.234.52.179.d.dyn.claro.net. ...
show more
(mod_security) mod_security (id:240335) triggered by 179.52.234.111 (111.234.52.179.d.dyn.claro.net.do): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 15:37:06.281863 2026] [security2:error] [pid 24079:tid 24079] [client 179.52.234.111:52243] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 179.52.234.111 (+1 hits since last alert)|guarinofurnituredesigns.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "guarinofurnituredesigns.com"] [uri "/xmlrpc.php"] [unique_id "ajwx4j50BOh4NZtf54NJFgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-24 16:46:35
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 179.52.234.111 (111.234.52.179.d.dyn.claro.net. ...
show more
(mod_security) mod_security (id:240335) triggered by 179.52.234.111 (111.234.52.179.d.dyn.claro.net.do): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 12:46:27.969809 2026] [security2:error] [pid 21864:tid 21864] [client 179.52.234.111:13994] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 179.52.234.111 (+1 hits since last alert)|reallifelearninghub.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "reallifelearninghub.com"] [uri "/xmlrpc.php"] [unique_id "ajwJ4-CYuYyx6oakC2eJcgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Kenshin869
2026-06-23 20:36:27
(1 month ago)
Wordpress unauthorized access attempt
Brute-Force
🇺🇸
WeekendWeb
2026-06-23 19:04:00
(1 month ago)
Wordpress Vunerability attack
Web App Attack
🇺🇸
TPI-Abuse
2026-06-22 19:05:35
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 179.52.234.111 (111.234.52.179.d.dyn.claro.net. ...
show more
(mod_security) mod_security (id:240335) triggered by 179.52.234.111 (111.234.52.179.d.dyn.claro.net.do): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 22 15:05:31.229490 2026] [security2:error] [pid 17963:tid 17963] [client 179.52.234.111:58669] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 179.52.234.111 (+1 hits since last alert)|vintageamptubes.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "vintageamptubes.com"] [uri "/xmlrpc.php"] [unique_id "ajmHe3QvM-_AFpFxmXs7ygAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-22 18:33:29
(1 month ago)
(wordpress) Failed wordpress login from 179.52.234.111 (DO/Dominican Republic/Nacional/Santo Domingo ...
show more
(wordpress) Failed wordpress login from 179.52.234.111 (DO/Dominican Republic/Nacional/Santo Domingo/111.234.52.179.d.dyn.claro.net.do/[redacted])
show less
Brute-Force