๐บ๐ธ
TPI-Abuse
2026-06-16 04:49:01
(4 days ago)
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 00:48:56.945287 2026] [security2:error] [pid 3740:tid 3740] [client 195.174.57.135:47751] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 195.174.57.135 (+1 hits since last alert)|navarrete.ws|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "navarrete.ws"] [uri "/xmlrpc.php"] [unique_id "ajDVuMs6OAHoXVXv6x8kNAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-16 03:43:52
(4 days ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐บ๐ธ
TAY
2026-06-16 01:40:48
(4 days ago)
195.174.57.135 - - [16/Jun/2026:09:40:26 +0800] "POST /xmlrpc.php HTTP/1.1" 200 5887 "-" "Jetpack by ...
show more
195.174.57.135 - - [16/Jun/2026:09:40:26 +0800] "POST /xmlrpc.php HTTP/1.1" 200 5887 "-" "Jetpack by WordPress.com"
195.174.57.135 - - [16/Jun/2026:09:40:36 +0800] "POST /xmlrpc.php HTTP/1.1" 200 5887 "-" "Jetpack/12.0; WordPress/6.2; http://site21612596.com"
195.174.57.135 - - [16/Jun/2026:09:40:47 +0800] "POST /xmlrpc.php HTTP/1.1" 200 5887 "-" "Jetpack/12.0; WordPress/6.2; http://site84689951.com"
...
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-15 23:40:13
(4 days ago)
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 19:40:07.222023 2026] [security2:error] [pid 22434:tid 22434] [client 195.174.57.135:47608] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 195.174.57.135 (+1 hits since last alert)|vanmeer.info|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "vanmeer.info"] [uri "/xmlrpc.php"] [unique_id "ajCNVwXCuMB6RiGhsB-VGgAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 19:55:00
(4 days ago)
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 15:54:53.903090 2026] [security2:error] [pid 20839:tid 20839] [client 195.174.57.135:45968] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 195.174.57.135 (+1 hits since last alert)|versallis.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "versallis.com"] [uri "/xmlrpc.php"] [unique_id "ajBYjZKIAv3IRlRzEyO6gAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 06:51:06
(5 days ago)
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 02:50:59.761651 2026] [security2:error] [pid 13042:tid 13042] [client 195.174.57.135:45316] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 195.174.57.135 (+1 hits since last alert)|artigelisim.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "artigelisim.com"] [uri "/xmlrpc.php"] [unique_id "ai-g031UHR6SG13ZyVWzwgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
grassau.com
2026-06-15 06:02:17
(5 days ago)
(wordpress) Failed wordpress login from 195.174.57.135 (TR/Tรผrkiye/Ankara/Ankara/-)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-15 05:32:41
(5 days ago)
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 01:32:36.559535 2026] [security2:error] [pid 19593:tid 19593] [client 195.174.57.135:47939] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 195.174.57.135 (+1 hits since last alert)|mayiasteadman.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "mayiasteadman.com"] [uri "/xmlrpc.php"] [unique_id "ai-OdLvRiOKW9ViU8Q-OIgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:57:12
(5 days ago)
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:57:06.587621 2026] [security2:error] [pid 16905:tid 16905] [client 195.174.57.135:48530] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 195.174.57.135 (+1 hits since last alert)|weird.eco|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "weird.eco"] [uri "/xmlrpc.php"] [unique_id "ai9b8pNWS5BS0d-56bamtAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 00:55:51
(5 days ago)
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 20:55:45.588350 2026] [security2:error] [pid 9549:tid 9549] [client 195.174.57.135:48980] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 195.174.57.135 (+1 hits since last alert)|rodandreelpiercam.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "rodandreelpiercam.com"] [uri "/xmlrpc.php"] [unique_id "ai9NkQXzOtUTONM0bq8LxAAAAHM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 23:54:53
(5 days ago)
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:54:47.427588 2026] [security2:error] [pid 1246:tid 1273] [client 195.174.57.135:49033] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 195.174.57.135 (+1 hits since last alert)|wnsi.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "wnsi.org"] [uri "/xmlrpc.php"] [unique_id "ai8_R0LT99gf00EIHr32xgAAAFc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 15:00:49
(6 days ago)
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 195.174.57.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 11:00:39.862496 2026] [security2:error] [pid 21072:tid 21072] [client 195.174.57.135:48122] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 195.174.57.135 (+1 hits since last alert)|karenbernsteinlaw.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "karenbernsteinlaw.com"] [uri "/xmlrpc.php"] [unique_id "ai7CF9hKfUMIt8DIQGhwEAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-06-14 12:45:41
(6 days ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ฉ๐ช
abdubhai
2026-06-14 10:42:58
(6 days ago)
195.174.57.135 - - [14/Jun/2026:
...
Brute-Force
๐ซ๐ท
dynamix
2026-06-14 10:10:51
(6 days ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack