๐บ๐ธ
TPI-Abuse
2026-05-12 13:47:10
(3 months ago)
(mod_security) mod_security (id:240335) triggered by 81.26.204.86 (ip-81-26-204-86.digicom-al.net): ...
show more
(mod_security) mod_security (id:240335) triggered by 81.26.204.86 (ip-81-26-204-86.digicom-al.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 12 09:47:06.610861 2026] [security2:error] [pid 4237:tid 4237] [client 81.26.204.86:33387] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 81.26.204.86 (+1 hits since last alert)|indiahouseportland.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "indiahouseportland.com"] [uri "/xmlrpc.php"] [unique_id "agMvWpHl8il8xe4ck8xmgAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-11 20:57:18
(3 months ago)
Web App Attack, Hacking
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-11 15:28:15
(3 months ago)
(mod_security) mod_security (id:240335) triggered by 81.26.204.86 (ip-81-26-204-86.digicom-al.net): ...
show more
(mod_security) mod_security (id:240335) triggered by 81.26.204.86 (ip-81-26-204-86.digicom-al.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 11 11:28:07.541456 2026] [security2:error] [pid 3987:tid 3987] [client 81.26.204.86:34315] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 81.26.204.86 (+1 hits since last alert)|nessmonsters.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "nessmonsters.com"] [uri "/xmlrpc.php"] [unique_id "agH1h_isr254mIapqbAe6wAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-10 16:45:30
(3 months ago)
(mod_security) mod_security (id:240335) triggered by 81.26.204.86 (ip-81-26-204-86.digicom-al.net): ...
show more
(mod_security) mod_security (id:240335) triggered by 81.26.204.86 (ip-81-26-204-86.digicom-al.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 10 12:45:25.048981 2026] [security2:error] [pid 26220:tid 26220] [client 81.26.204.86:34929] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 81.26.204.86 (+1 hits since last alert)|thinkingepic.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "thinkingepic.com"] [uri "/xmlrpc.php"] [unique_id "agC2JdAzEeiJPoxRxA6p8gAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
poundawebsiteltd
2026-05-08 21:07:22
(3 months ago)
WP Exploit attempt. Evidence: [REDACTED_DOMAIN]:443 81.26.204.86 - - [08/May/2026:22:07:20 +0100] PO ...
show more
WP Exploit attempt. Evidence: [REDACTED_DOMAIN]:443 81.26.204.86 - - [08/May/2026:22:07:20 +0100] POST /xmlrpc.php HTTP/1.1 503 21368 - Jetpack by [REDACTED_DOMAIN]
show less
Web App Attack
๐จ๐ฆ
Paulo Henrique dos Santos Nichio
2026-05-08 20:44:24
(3 months ago)
(ls_brute) LiteSpeed Brute Force Attack 81.26.204.86 (AL/Albania/ip-81-26-204-86.digicom-al.net): 3 ...
show more
(ls_brute) LiteSpeed Brute Force Attack 81.26.204.86 (AL/Albania/ip-81-26-204-86.digicom-al.net): 3 in the last 600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 2026-05-08 17:43:56.400948 [WARN] [787653] [T0] [81.26.204.86:33808-5#APVH_www.colicartonagem.com.br:443] Brute force detected for IP [81.26.204.86], throttle.
2026-05-08 17:44:06.400138 [WARN] [787653] [T0] [81.26.204.86:33808-6#APVH_www.colicartonagem.com.br:443] Brute force detected for IP [81.26.204.86], throttle.
2026-05-08 17:44:17.400453 [WARN] [787653] [T0] [81.26.204.86:33808-7#APVH_www.colicartonagem.com.br:443] Brute force detected for IP [81.26.204.86], throttle.
show less
Port Scan
๐ฉ๐ช
Mario Silber
2026-05-06 20:02:55
(3 months ago)
(wordpress) Failed wordpress login from 81.26.204.86 (AL/Albania/ip-81-26-204-86.digicom-al.net)
Brute-Force
๐ฉ๐ช
konseptit
2026-05-06 19:01:12
(3 months ago)
(wordpress) Failed wordpress login from 81.26.204.86 (AL/Albania/ip-81-26-204-86.digicom-al.net)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-05-06 16:16:43
(3 months ago)
(mod_security) mod_security (id:240335) triggered by 81.26.204.86 (ip-81-26-204-86.digicom-al.net): ...
show more
(mod_security) mod_security (id:240335) triggered by 81.26.204.86 (ip-81-26-204-86.digicom-al.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 06 12:16:39.843413 2026] [security2:error] [pid 22122:tid 22122] [client 81.26.204.86:33568] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 81.26.204.86 (+1 hits since last alert)|zost.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "zost.net"] [uri "/xmlrpc.php"] [unique_id "aftpZ-Y4bgAnQo8-WJkGEAAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-02 14:17:06
(3 months ago)
(mod_security) mod_security (id:240335) triggered by 81.26.204.86 (ip-81-26-204-86.digicom-al.net): ...
show more
(mod_security) mod_security (id:240335) triggered by 81.26.204.86 (ip-81-26-204-86.digicom-al.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 02 10:17:01.636736 2026] [security2:error] [pid 28777:tid 28777] [client 81.26.204.86:34022] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 81.26.204.86 (+1 hits since last alert)|lusineweb.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "lusineweb.com"] [uri "/xmlrpc.php"] [unique_id "afYHXT2WbseYSqM6tg-E4gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack