๐ณ๐ฑ
Site.eu
2026-07-20 08:48:54
(19 hours ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-07-20 08:32:09
(19 hours ago)
(mod_security) mod_security (id:240335) triggered by 45.134.212.71 (unn-45-134-212-71.datapacket.com ...
show more
(mod_security) mod_security (id:240335) triggered by 45.134.212.71 (unn-45-134-212-71.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 04:32:02.647661 2026] [security2:error] [pid 10906:tid 10943] [client 45.134.212.71:61094] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.134.212.71 (+1 hits since last alert)|vinylnotespodcast.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "vinylnotespodcast.com"] [uri "/xmlrpc.php"] [unique_id "al3dAmOTd4QuGSATsmQUeQAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-07-20 07:05:04
(21 hours ago)
Fail2Ban - [NGINX]WordPress Logins Sniffings on nginx-wordpress-sniffer ... [wa01,wa02]
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 06:37:35
(21 hours ago)
(mod_security) mod_security (id:240335) triggered by 45.134.212.71 (unn-45-134-212-71.datapacket.com ...
show more
(mod_security) mod_security (id:240335) triggered by 45.134.212.71 (unn-45-134-212-71.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 02:37:31.981720 2026] [security2:error] [pid 30518:tid 30518] [client 45.134.212.71:57500] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.134.212.71 (+1 hits since last alert)|joevallone.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "joevallone.com"] [uri "/xmlrpc.php"] [unique_id "al3CK2zwuvbTadRlpb2VIgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WeekendWeb
2026-07-20 05:34:33
(22 hours ago)
Wordpress Vunerability attack
Web App Attack
๐ซ๐ท
matthieul.dev
2026-07-20 05:10:18
(23 hours ago)
Blocked by os-abuseipdb; 5 hits, proto=tcp,udp, ports=51414
Port Scan
Brute-Force
๐ฉ๐ช
Marc
2026-07-19 23:46:54
(1 day ago)
45.134.212.71 - - [20/Jul/2026:01:46:32 +0200] "POST /xmlrpc.php HTTP/1.1" 403 4841 "-" "WordPress.c ...
show more
45.134.212.71 - - [20/Jul/2026:01:46:32 +0200] "POST /xmlrpc.php HTTP/1.1" 403 4841 "-" "WordPress.com; https://wordpress.com" 45.134.212.71 - - [20/Jul/2026:01:46:43 +0200] "POST /xmlrpc.php HTTP/1.1" 403 4841 "-" "Jetpack by WordPress.com (Jetpack 12.0; WordPress 6.2)" 45.134.212.71 - - [20/Jul/2026:01:46:54 +0200] "POST /xmlrpc.php HTTP/1.1" 403 4840 "-" "WordPress.com; https://wordpress.com"
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 20:45:37
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 45.134.212.71 (unn-45-134-212-71.datapacket.com ...
show more
(mod_security) mod_security (id:240335) triggered by 45.134.212.71 (unn-45-134-212-71.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 16:45:33.491271 2026] [security2:error] [pid 18141:tid 18141] [client 45.134.212.71:57582] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.134.212.71 (+1 hits since last alert)|ixd.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "ixd.net"] [uri "/xmlrpc.php"] [unique_id "al03bcY9OFY4eOQOXfMhLAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 19:41:26
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 45.134.212.71 (unn-45-134-212-71.datapacket.com ...
show more
(mod_security) mod_security (id:240335) triggered by 45.134.212.71 (unn-45-134-212-71.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 15:41:18.613152 2026] [security2:error] [pid 2023722:tid 2023722] [client 45.134.212.71:49766] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.134.212.71 (+1 hits since last alert)|lakependoreillemobility.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "lakependoreillemobility.com"] [uri "/xmlrpc.php"] [unique_id "al0oXqbRK-nmtNlj5srgugAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 19:13:12
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 45.134.212.71 (unn-45-134-212-71.datapacket.com ...
show more
(mod_security) mod_security (id:240335) triggered by 45.134.212.71 (unn-45-134-212-71.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 15:13:06.150681 2026] [security2:error] [pid 546:tid 546] [client 45.134.212.71:57944] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.134.212.71 (+1 hits since last alert)|jillbauman.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "jillbauman.com"] [uri "/xmlrpc.php"] [unique_id "al0hwmr8q3enPzY0Zo3LNQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 16:28:11
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 45.134.212.71 (unn-45-134-212-71.datapacket.com ...
show more
(mod_security) mod_security (id:240335) triggered by 45.134.212.71 (unn-45-134-212-71.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 12:28:06.539563 2026] [security2:error] [pid 3483839:tid 3483839] [client 45.134.212.71:57114] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.134.212.71 (+1 hits since last alert)|aifactoid.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "aifactoid.com"] [uri "/xmlrpc.php"] [unique_id "alz7FnGD8ubsQplmTz7YFwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-07-19 11:50:04
(1 day ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 10:50:35
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 45.134.212.71 (unn-45-134-212-71.datapacket.com ...
show more
(mod_security) mod_security (id:240335) triggered by 45.134.212.71 (unn-45-134-212-71.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 06:50:31.318272 2026] [security2:error] [pid 7587:tid 7587] [client 45.134.212.71:58551] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.134.212.71 (+1 hits since last alert)|mayiasteadman.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "mayiasteadman.com"] [uri "/xmlrpc.php"] [unique_id "alyr96OUiWcUIY2RAr92hwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-07-19 08:48:42
(1 day ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 07:45:43
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 45.134.212.71 (unn-45-134-212-71.datapacket.com ...
show more
(mod_security) mod_security (id:240335) triggered by 45.134.212.71 (unn-45-134-212-71.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 03:45:36.806327 2026] [security2:error] [pid 3189899:tid 3189899] [client 45.134.212.71:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.134.212.71 (+1 hits since last alert)|avaliantlife.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "avaliantlife.com"] [uri "/xmlrpc.php"] [unique_id "alyAoIBedY-O6kmMGn_3tgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack