๐บ๐ธ
BlueStem123
2026-06-14 00:00:18
(8 hours ago)
Automated scanner targeting WordPress installations. Source produced sustained scanning activity exc ...
show more
Automated scanner targeting WordPress installations. Source produced sustained scanning activity exceeding 100 requests within a 60-minute window.
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-06-12 22:49:23
(1 day ago)
(xmlrpc_405) XMLRPC-Bot 405 45.41.106.217 (MM/Myanmar/-)
Hacking
๐ฆ๐บ
screwlooseit.com.au
2026-06-12 16:39:55
(1 day ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
CA/Canada/-
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-12 05:57:22
(2 days ago)
(mod_security) mod_security (id:240335) triggered by 45.41.106.217 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 45.41.106.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 01:57:07.707029 2026] [security2:error] [pid 11744:tid 11744] [client 45.41.106.217:16514] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.41.106.217 (+1 hits since last alert)|illumoonatedtarot.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "illumoonatedtarot.com"] [uri "/xmlrpc.php"] [unique_id "aiufs39Lt9A-TNi35HQDMwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-12 01:18:32
(2 days ago)
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-12 00:45:29
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 45.41.106.217 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.41.106.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 20:45:19.812155 2026] [security2:error] [pid 9754:tid 9754] [client 45.41.106.217:20289] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jazziiafoundation.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jazziiafoundation.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aitWn4CHstHXTrjj6nGaUQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 23:37:44
(2 days ago)
(mod_security) mod_security (id:240335) triggered by 45.41.106.217 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 45.41.106.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 19:37:31.872116 2026] [security2:error] [pid 18270:tid 18270] [client 45.41.106.217:23910] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.41.106.217 (+1 hits since last alert)|coyotebytes.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "coyotebytes.net"] [uri "/xmlrpc.php"] [unique_id "aitGu0lW187oG2M--Ra16AAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-11 22:03:13
(2 days ago)
Attac
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-11 20:53:23
(2 days ago)
(mod_security) mod_security (id:240335) triggered by 45.41.106.217 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 45.41.106.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 16:53:09.181044 2026] [security2:error] [pid 28193:tid 28193] [client 45.41.106.217:16931] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.41.106.217 (+1 hits since last alert)|semisysteme.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "semisysteme.com"] [uri "/xmlrpc.php"] [unique_id "aisgNWJ2ua4iJl__YOIbagAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-06-11 14:00:27
(2 days ago)
(xmlrpc_405) XMLRPC-Bot 405 45.41.106.217 (MM/Myanmar/-)
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-11 08:16:07
(3 days ago)
(mod_security) mod_security (id:240335) triggered by 45.41.106.217 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 45.41.106.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 04:15:52.088706 2026] [security2:error] [pid 4747:tid 4747] [client 45.41.106.217:3836] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.41.106.217 (+1 hits since last alert)|guldunyayayinlari.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "guldunyayayinlari.com"] [uri "/xmlrpc.php"] [unique_id "aipuuGQz4W50ONbgIMC57wAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-06-11 06:58:53
(3 days ago)
IM360 WAF: Rate limit exceeded for XMLRPC DoS
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 01:26:26
(3 days ago)
(mod_security) mod_security (id:240335) triggered by 45.41.106.217 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 45.41.106.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 21:26:11.963557 2026] [security2:error] [pid 16171:tid 16193] [client 45.41.106.217:13638] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.41.106.217 (+1 hits since last alert)|michaelrandon.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "michaelrandon.com"] [uri "/xmlrpc.php"] [unique_id "aioOs6nf3L5Lg35wUTLrngAAANM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-11 00:52:27
(3 days ago)
xmlrpc request blocked, no referer. Pattern match "xmlrpc.php" at REQUEST_URI. (88010-201)
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-10 23:23:52
(3 days ago)
(mod_security) mod_security (id:240335) triggered by 45.41.106.217 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 45.41.106.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 19:23:38.195377 2026] [security2:error] [pid 15031:tid 15031] [client 45.41.106.217:2169] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.41.106.217 (+1 hits since last alert)|guarinofurnituredesigns.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "guarinofurnituredesigns.com"] [uri "/xmlrpc.php"] [unique_id "ainx-uxa9POTVWxZ_ZCaBQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack