๐บ๐ธ
TPI-Abuse
2026-06-15 13:08:46
(13 hours ago)
(mod_security) mod_security (id:240335) triggered by 74.244.129.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 74.244.129.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 09:08:40.504438 2026] [security2:error] [pid 12883:tid 12883] [client 74.244.129.4:52518] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 74.244.129.4 (+1 hits since last alert)|agworldmissions.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "agworldmissions.org"] [uri "/xmlrpc.php"] [unique_id "ai_5WBAPofspQOJafvx7zwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
YF
2026-06-15 11:01:16
(15 hours ago)
xmlrpc.php Potential DDoS or brute force
DDoS Attack
Brute-Force
๐ฉ๐ช
ger-stg-sifi1
2026-06-15 04:33:46
(22 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ช๐ธ
masterguru
2026-06-14 12:52:51
(1 day ago)
(xmlrpc) Failed xmlrpc access from 74.244.129.4 (ZM/Zambia/-): 5 in the last 3600 secs (0-122)
Hacking
๐ฉ๐ช
konseptit
2026-06-14 12:51:48
(1 day ago)
(wordpress) Failed wordpress login from 74.244.129.4 (ZM/Zambia/-)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-14 10:29:26
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 74.244.129.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 74.244.129.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 06:29:21.805876 2026] [security2:error] [pid 826:tid 826] [client 74.244.129.4:38027] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 74.244.129.4 (+1 hits since last alert)|rotentendales.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "rotentendales.com"] [uri "/xmlrpc.php"] [unique_id "ai6CgQZxBCGknQfF1NiA0gAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-14 09:57:21
(1 day ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐ฉ๐ช
BlueWire Hosting
2026-06-14 08:13:24
(1 day ago)
Probing websites for vulnerabilities
Web App Attack
Anonymous
2026-06-14 08:13:10
(1 day ago)
[redacted] 74.244.129.4 - - [14/Jun/2026:10:12:29 +0200] "POST /xmlrpc.php HTTP/1.1" 405 415 "-" "Je ...
show more
[redacted] 74.244.129.4 - - [14/Jun/2026:10:12:29 +0200] "POST /xmlrpc.php HTTP/1.1" 405 415 "-" "Jetpack/13.0; WordPress/6.4; http://site43152508.com"
[redacted] 74.244.129.4 - - [14/Jun/2026:10:12:37 +0200] "POST /xmlrpc.php HTTP/1.1" 405 415 "-" "Jetpack by WordPress.com"
[redacted] 74.244.129.4 - - [14/Jun/2026:10:12:48 +0200] "POST /xmlrpc.php HTTP/1.1" 405 415 "-" "Jetpack by WordPress.com"
[redacted] 74.244.129.4 - - [14/Jun/2026:10:12:58 +0200] "POST /xmlrpc.php HTTP/1.1" 405 415 "-" "Jetpack/13.0; WordPress/6.3; http://site38126130.com"
[redacted] 74.244.129.4 - - [14/Jun/2026:10:13:09 +0200] "POST /xmlrpc.php HTTP/1.1" 405 415 "-" "WordPress.com; https://wordpress.com"
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 07:16:08
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 74.244.129.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 74.244.129.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 03:16:00.133114 2026] [security2:error] [pid 16843:tid 16843] [client 74.244.129.4:3875] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 74.244.129.4 (+1 hits since last alert)|abilityimprinting.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "abilityimprinting.com"] [uri "/xmlrpc.php"] [unique_id "ai5VMBVRetgHDbcbUwLIZgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
applemooz
2026-06-14 06:56:46
(1 day ago)
WordPress XMLRPC Brute Force Attacks
...
Brute-Force
Web App Attack
Anonymous
2026-06-14 04:15:07
(1 day ago)
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 11:32:50
(2 days ago)
(mod_security) mod_security (id:240335) triggered by 74.244.129.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 74.244.129.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 07:32:43.867111 2026] [security2:error] [pid 17417:tid 17417] [client 74.244.129.4:48768] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 74.244.129.4 (+1 hits since last alert)|airtechconsulting.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "airtechconsulting.com"] [uri "/xmlrpc.php"] [unique_id "ai0_25N6x-Ggy8zzARAZ9wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-13 09:58:19
(2 days ago)
xmlrpc request blocked, no referer. Pattern match "xmlrpc.php" at REQUEST_URI. (88010-201)
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-13 06:55:58
(2 days ago)
(mod_security) mod_security (id:240335) triggered by 74.244.129.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 74.244.129.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 02:55:53.975430 2026] [security2:error] [pid 2806:tid 2806] [client 74.244.129.4:59245] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 74.244.129.4 (+1 hits since last alert)|barkatthemoonpetsitting.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "barkatthemoonpetsitting.com"] [uri "/xmlrpc.php"] [unique_id "aiz--YjXQayujaMgie4JdwAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack