๐บ๐ธ
kosada.com
2026-08-25 17:08:29
(17 hours ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐ฆ๐บ
screwlooseit.com.au
2026-08-21 18:23:51
(4 days ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
BR/Brazil/-
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-08-21 14:52:03
(4 days ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 12:06:27
(4 days ago)
(mod_security) mod_security (id:240335) triggered by 45.5.193.247 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 45.5.193.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 08:06:22.306137 2026] [security2:error] [pid 12062:tid 12062] [client 45.5.193.247:62733] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.5.193.247 (+1 hits since last alert)|smoothiessoupssalads.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "smoothiessoupssalads.com"] [uri "/xmlrpc.php"] [unique_id "aog_PkL0zh_WvC1-nXqMnAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-08-20 16:40:37
(5 days ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 13:09:30
(5 days ago)
(mod_security) mod_security (id:240335) triggered by 45.5.193.247 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 45.5.193.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 09:09:23.493901 2026] [security2:error] [pid 5195:tid 5320] [client 45.5.193.247:58412] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.5.193.247 (+1 hits since last alert)|hearthandhomestudio.art|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "hearthandhomestudio.art"] [uri "/xmlrpc.php"] [unique_id "aob8gwPDLpp7REg-QHw75QAAAgs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 18:56:26
(6 days ago)
(mod_security) mod_security (id:240335) triggered by 45.5.193.247 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 45.5.193.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 14:56:20.486262 2026] [security2:error] [pid 6885:tid 6885] [client 45.5.193.247:56278] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.5.193.247 (+1 hits since last alert)|415test.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "415test.com"] [uri "/xmlrpc.php"] [unique_id "aoX8VFjE0-klkPBkp14_8QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
YF
2026-08-19 16:00:40
(6 days ago)
xmlrpc.php Potential DDoS or brute force
DDoS Attack
Brute-Force
๐ฒ๐พ
Rizzy
2026-08-18 22:23:05
(1 week ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 22:38:02
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 45.5.193.247 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 45.5.193.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 18:37:58.568119 2026] [security2:error] [pid 19577:tid 19577] [client 45.5.193.247:53707] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.5.193.247 (+1 hits since last alert)|partnershipsbydesign.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "partnershipsbydesign.net"] [uri "/xmlrpc.php"] [unique_id "aoONRvJ0g54OSk7Kxmmz3AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-08-17 18:30:31
(1 week ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 17:02:05
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 45.5.193.247 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 45.5.193.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 13:01:58.228036 2026] [security2:error] [pid 8472:tid 8479] [client 45.5.193.247:61542] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.5.193.247 (+1 hits since last alert)|hotelpuertadelsolcr.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "hotelpuertadelsolcr.com"] [uri "/xmlrpc.php"] [unique_id "aoM-hr-7L4gttRmrA8TCHQAAAEQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-17 16:59:22
(1 week ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-08-17 16:28:45
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 45.5.193.247 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 45.5.193.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 12:28:40.536906 2026] [security2:error] [pid 21957:tid 21957] [client 45.5.193.247:51534] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.5.193.247 (+1 hits since last alert)|mindroothealth.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "mindroothealth.com"] [uri "/xmlrpc.php"] [unique_id "aoM2uDHqmX8Q2y00dySgxgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
IndigoRidge
2026-08-16 12:33:50
(1 week ago)
45.5.193.247 - - [16/Aug/2026:08:31:00 -0400] "POST /xmlrpc.php HTTP/1.0" 200 5092 "-" "WordPress.co ...
show more
45.5.193.247 - - [16/Aug/2026:08:31:00 -0400] "POST /xmlrpc.php HTTP/1.0" 200 5092 "-" "WordPress.com; https://wordpress.com"
45.5.193.247 - - [16/Aug/2026:08:31:42 -0400] "POST /xmlrpc.php HTTP/1.0" 200 5092 "-" "WordPress.com; https://wordpress.com"
45.5.193.247 - - [16/Aug/2026:08:32:24 -0400] "POST /xmlrpc.php HTTP/1.0" 200 5092 "-" "WordPress.com; https://wordpress.com"
45.5.193.247 - - [16/Aug/2026:08:33:17 -0400] "POST /xmlrpc.php HTTP/1.0" 200 5092 "-" "WordPress.com; https://wordpress.com"
45.5.193.247 - - [16/Aug/2026:08:33:49 -0400] "POST /xmlrpc.php HTTP/1.0" 200 5092 "-" "WordPress.com; https://wordpress.com"
...
show less
Web App Attack