๐ฉ๐ช
4server
2026-09-19 22:07:07
(19 hours ago)
[SunSep2000:07:02.0210302026][security2:error][pid1283804:tid1283912][client45.88.13.109:0]ModSecuri ...
show more
[SunSep2000:07:02.0210302026][security2:error][pid1283804:tid1283912][client45.88.13.109:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"170\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"prstartup.ch\"][uri\"/xmlrpc.php\"][unique_id\"aq8Hhvkn4Nzj-DMkETxQrQAAANY\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-06-15 00:29:09
(3 months ago)
WordPress login attempt
Brute-Force
๐ฉ๐ช
LRob
2026-06-03 09:15:04
(3 months ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 19:34:48
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 45.88.13.109 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.88.13.109 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 15:34:43.049730 2026] [security2:error] [pid 9016:tid 9016] [client 45.88.13.109:51739] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||opere.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "opere.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah8wUz2S443fBmsl_L_Q-gAAAA0"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 15:08:31
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 45.88.13.109 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.88.13.109 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 11:08:28.513949 2026] [security2:error] [pid 16272:tid 16272] [client 45.88.13.109:45039] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sunnygolfvillas.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sunnygolfvillas.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahBxbNw6hifgbDP7P4H3qAAAAAQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-18 23:34:23
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 45.88.13.109 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.88.13.109 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 18 19:34:16.291061 2026] [security2:error] [pid 15315:tid 15431] [client 45.88.13.109:51831] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cibernetic.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cibernetic.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aguh-K_KLX3s_8o7enERXAAAAk0"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-05-03 09:59:57
(4 months ago)
Accessed trap at '/xmlrpc.php'
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 20:41:50
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 45.88.13.109 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.88.13.109 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 16:41:42.913694 2026] [security2:error] [pid 28165:tid 28165] [client 45.88.13.109:55243] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||naominixon.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "naominixon.com"] [uri "/wp-json/wp/v2/users"] [unique_id "afO-hgWRY0BJwzWkCwIexwAAAAo"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-04-29 21:54:16
(4 months ago)
Web password guessing
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-04-17 18:36:21
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 45.88.13.109 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.88.13.109 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 17 14:36:13.019434 2026] [security2:error] [pid 2851111:tid 2851130] [client 45.88.13.109:40597] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gotogps.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gotogps.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aeJ9nfnCcWn1o82ToI74qQAAAVA"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-02-11 09:41:20
(7 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ช๐ธ
10dencehispahard SL
2024-06-29 14:05:56
(2 years ago)
Unauthorized login attempts [ accesslogs]
Brute-Force
๐ช๐ธ
el-brujo
2024-06-09 21:23:00
(2 years ago)
DDoS Attack Layer 7 - REQUESTS / HTTP/2.0
DDoS Attack
๐ฎ๐ณ
Parth Maniar
2021-02-27 14:20:56
(5 years ago)
SSH bruteforce login attempts.
Brute-Force
SSH