๐บ๐ธ
kosada.com
2026-07-06 14:48:40
(2 weeks ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐ฉ๐ช
Vegascosmetics
2026-07-04 10:30:51
(2 weeks ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after suspicious activity. Vegas Security
DDoS Attack
Hacking
Exploited Host
Anonymous
2026-06-24 19:18:09
(3 weeks ago)
Attac
Brute-Force
Anonymous
2026-06-24 19:16:32
(3 weeks ago)
195.140.224.250 - - [24/Jun/2026:21:15:49 +0200] "POST /xmlrpc.php HTTP/1.1" 200 767 "-" "WordPress. ...
show more
195.140.224.250 - - [24/Jun/2026:21:15:49 +0200] "POST /xmlrpc.php HTTP/1.1" 200 767 "-" "WordPress.com; https://wordpress.com"
195.140.224.250 - - [24/Jun/2026:21:15:59 +0200] "POST /xmlrpc.php HTTP/1.1" 200 767 "-" "Jetpack by WordPress.com (Jetpack 12.1; WordPress 6.1)"
195.140.224.250 - - [24/Jun/2026:21:16:10 +0200] "POST /xmlrpc.php HTTP/1.1" 200 767 "-" "Jetpack/12.0; WordPress/6.4; http://site34172140.com"
195.140.224.250 - - [24/Jun/2026:21:16:21 +0200] "POST /xmlrpc.php HTTP/1.1" 200 767 "-" "Jetpack/13.0; WordPress/6.3; http://site52107228.com"
195.140.224.250 - - [24/Jun/2026:21:16:32 +0200] "POST /xmlrpc.php HTTP/1.1" 200 767 "-" "Jetpack by WordPress.com"
...
show less
Brute-Force
Web App Attack
Anonymous
2026-06-24 18:50:29
(3 weeks ago)
[ssd5.kdns.gr] httpd-xmlrpc-post: sites=kostaspriftis.gr; logs=/var/log/httpd/domains/kostaspriftis. ...
show more
[ssd5.kdns.gr] httpd-xmlrpc-post: sites=kostaspriftis.gr; logs=/var/log/httpd/domains/kostaspriftis.gr.log; samples=/xmlrpc.php
show less
Brute-Force
Web App Attack
๐ฉ๐ช
Tha_14
2026-06-24 12:25:38
(3 weeks ago)
Limit on login attempts is reached
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-23 19:38:35
(3 weeks ago)
(mod_security) mod_security (id:240335) triggered by 195.140.224.250 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240335) triggered by 195.140.224.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 15:38:27.395420 2026] [security2:error] [pid 10458:tid 10458] [client 195.140.224.250:50025] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 195.140.224.250 (+1 hits since last alert)|dogarttoday.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "dogarttoday.com"] [uri "/xmlrpc.php"] [unique_id "ajrgs1l3hOvpNddaDY_Y5QAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-23 18:29:10
(3 weeks ago)
(mod_security) mod_security (id:240335) triggered by 195.140.224.250 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240335) triggered by 195.140.224.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 14:29:04.682224 2026] [security2:error] [pid 27386:tid 27386] [client 195.140.224.250:37408] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 195.140.224.250 (+1 hits since last alert)|futuresgrowhere.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "futuresgrowhere.com"] [uri "/xmlrpc.php"] [unique_id "ajrQcH2ZG65wZyOO-L4TKgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
ConsulHosting
2026-06-22 19:41:11
(4 weeks ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
Anonymous
2026-06-22 18:25:48
(4 weeks ago)
(wordpress) Failed wordpress login from 195.140.224.250 (UA/Ukraine/Kharkiv Oblast/Kharkiv/-/[redact ...
show more
(wordpress) Failed wordpress login from 195.140.224.250 (UA/Ukraine/Kharkiv Oblast/Kharkiv/-/[redacted])
show less
Brute-Force
๐ซ๐ท
dynamix
2026-06-21 18:43:05
(4 weeks ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐บ๐ธ
WeekendWeb
2026-06-21 09:38:40
(1 month ago)
Wordpress Vunerability attack
Web App Attack
๐ฉ๐ช
Sรฉfora Srl
2026-06-21 09:03:42
(1 month ago)
Failed attempt detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-21 08:43:27
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 195.140.224.250 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240335) triggered by 195.140.224.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 04:43:19.663827 2026] [security2:error] [pid 30138:tid 30138] [client 195.140.224.250:49999] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 195.140.224.250 (+1 hits since last alert)|greatchristianadventure.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "greatchristianadventure.com"] [uri "/xmlrpc.php"] [unique_id "ajekJ4H-VK89ekjDbCgL3AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-19 13:37:08
(3 months ago)
(mod_security) mod_security (id:240335) triggered by 195.140.224.250 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240335) triggered by 195.140.224.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 19 09:37:01.558124 2026] [security2:error] [pid 3244638:tid 3244638] [client 195.140.224.250:47447] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 195.140.224.250 (+1 hits since last alert)|tigerpathteam.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "tigerpathteam.org"] [uri "/xmlrpc.php"] [unique_id "aeTafdiCIraBJU_oqH0WhQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack