π¦πΊ
clapper
2026-07-13 08:56:00
(1 week ago)
(mod_security) mod_security (id:350202) triggered by 38.226.206.197 (BR/Brazil/-): 5 in the last 600 ...
show more
(mod_security) mod_security (id:350202) triggered by 38.226.206.197 (BR/Brazil/-): 5 in the last 600 secs; ID: rub
show less
Brute-Force
Bad Web Bot
π©πͺ
konseptit
2026-07-13 01:45:35
(1 week ago)
(wordpress) Failed wordpress login from 38.226.206.197 (BR/Brazil/-)
Brute-Force
πΊπΈ
TPI-Abuse
2026-07-12 23:03:23
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 38.226.206.197 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 38.226.206.197 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 12 19:03:19.033721 2026] [security2:error] [pid 27285:tid 27285] [client 38.226.206.197:50307] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 38.226.206.197 (+1 hits since last alert)|thepercussionworks.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "thepercussionworks.com"] [uri "/xmlrpc.php"] [unique_id "alQdN6kJ9zl9Cmzgx6qmygAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
dynamix
2026-07-12 20:37:34
(1 week ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-12 16:23:37
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 38.226.206.197 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 38.226.206.197 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 12 12:23:33.125535 2026] [security2:error] [pid 16916:tid 16916] [client 38.226.206.197:50372] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 38.226.206.197 (+1 hits since last alert)|lakependoreillemobility.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "lakependoreillemobility.com"] [uri "/xmlrpc.php"] [unique_id "alO_hQFcXP9Bn4mbYr89FwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-12 13:47:34
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 38.226.206.197 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 38.226.206.197 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 12 09:47:30.344613 2026] [security2:error] [pid 29888:tid 29888] [client 38.226.206.197:50538] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 38.226.206.197 (+1 hits since last alert)|shelbysmoak.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "shelbysmoak.com"] [uri "/xmlrpc.php"] [unique_id "alOa8hsXAE17SYV9HpehlgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
dynamix
2026-07-12 12:45:19
(1 week ago)
Multiple WAF Violations
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-12 05:56:15
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 38.226.206.197 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 38.226.206.197 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 12 01:56:11.201946 2026] [security2:error] [pid 27559:tid 27559] [client 38.226.206.197:48146] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 38.226.206.197 (+1 hits since last alert)|apexandroids.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "apexandroids.com"] [uri "/xmlrpc.php"] [unique_id "alMse4nW3JhYustnrEnaogAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
matt
2026-03-02 21:57:51
(4 months ago)
DDOS attack with query parameters attempting to overload WordPress site.
DDoS Attack
π―π΅
VXG-NET
2025-10-03 18:39:52
(9 months ago)
port=80, indicator_type=insecure-credentials
Brute-Force
Anonymous
2025-09-07 05:04:30
(10 months ago)
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.09.07 is noted in report tim ...
show more
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.09.07 is noted in report timestamp
show less
Hacking
Brute-Force
π³π±
exxos
2025-08-30 07:03:01
(10 months ago)
Attacks with Bad user agents
Hacking