๐บ๐ธ
TPI-Abuse
2026-06-14 20:36:54
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 41.59.45.153 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 41.59.45.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 16:36:51.105027 2026] [security2:error] [pid 12051:tid 12051] [client 41.59.45.153:59764] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 41.59.45.153 (+1 hits since last alert)|lumentravel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "lumentravel.com"] [uri "/xmlrpc.php"] [unique_id "ai8Q45DOY606u0zpQ6MuuQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 16:30:42
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 41.59.45.153 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 41.59.45.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 12:30:36.965338 2026] [security2:error] [pid 31808:tid 31808] [client 41.59.45.153:54305] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 41.59.45.153 (+1 hits since last alert)|soundtrax.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "soundtrax.net"] [uri "/xmlrpc.php"] [unique_id "ai7XLDlwbP8VXp1kcDQf5QAAAFs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
abdubhai
2026-06-14 14:24:42
(1 day ago)
41.59.45.153 - - [14/Jun/2026:19
...
Brute-Force
๐ง๐ช
cmbplf
2026-06-14 09:34:51
(1 day ago)
4.487 requests with url.path */xmlrpc.php
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-14 09:13:58
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 41.59.45.153 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 41.59.45.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 05:13:54.994777 2026] [security2:error] [pid 22445:tid 22445] [client 41.59.45.153:56405] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 41.59.45.153 (+1 hits since last alert)|freemanfoundationcle.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "freemanfoundationcle.org"] [uri "/xmlrpc.php"] [unique_id "ai5w0sgt1cUI8w4_Pr8QEQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 08:54:55
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 41.59.45.153 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 41.59.45.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 04:54:48.400628 2026] [security2:error] [pid 26073:tid 26073] [client 41.59.45.153:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 41.59.45.153 (+1 hits since last alert)|pixacast.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "pixacast.com"] [uri "/xmlrpc.php"] [unique_id "ai5sWA7k7u_sQowPAoADVgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
applemooz
2026-06-14 08:41:40
(1 day ago)
WordPress XMLRPC Brute Force Attacks
...
Brute-Force
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-06-14 06:56:13
(1 day ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
TZ/Tanzania/-
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 06:28:29
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 41.59.45.153 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 41.59.45.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 02:28:21.403717 2026] [security2:error] [pid 16028:tid 16028] [client 41.59.45.153:54280] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 41.59.45.153 (+1 hits since last alert)|superzilla.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "superzilla.com"] [uri "/xmlrpc.php"] [unique_id "ai5KBTrVk6PxSMFotVMrYAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
integrantservices.com
2026-06-14 05:55:20
(1 day ago)
(wordpress) Failed wordpress login from 41.59.45.153 (TZ/Tanzania/-)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-14 01:13:47
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 41.59.45.153 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 41.59.45.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 21:13:42.626751 2026] [security2:error] [pid 28848:tid 28848] [client 41.59.45.153:58339] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 41.59.45.153 (+1 hits since last alert)|tigerpathteam.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "tigerpathteam.org"] [uri "/xmlrpc.php"] [unique_id "ai4ARlDIjqAp_7d8TZ5CZwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-01-29 14:35:04
(4 months ago)
Unauthorized connection attempt on Port 23
Port Scan
Hacking
Exploited Host
Anonymous
2026-01-29 14:09:53
(4 months ago)
Drop from IP address 41.59.45.153 to tcp-port 23
Port Scan
๐ณ๐ฑ
EGP Abuse Dept
2026-01-29 10:17:07
(4 months ago)
Unauthorized connection to Telnet port 23
Port Scan
Hacking
๐ฉ๐ช
check-the-sum.fr
2025-11-19 04:20:12
(6 months ago)
Port Scanning
Port Scan