π¬π§
Apache
2026-06-03 20:59:47
(1 hour ago)
(mod_security) mod_security (id:240335) triggered by 86.98.29.71 (AE/United Arab Emirates/bba-86-98- ...
show more
(mod_security) mod_security (id:240335) triggered by 86.98.29.71 (AE/United Arab Emirates/bba-86-98-29-71.alshamil.net.ae): 5 in the last 300 secs
show less
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-03 18:45:20
(4 hours ago)
(mod_security) mod_security (id:240335) triggered by 86.98.29.71 (bba-86-98-29-71.alshamil.net.ae): ...
show more
(mod_security) mod_security (id:240335) triggered by 86.98.29.71 (bba-86-98-29-71.alshamil.net.ae): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 14:45:16.544074 2026] [security2:error] [pid 12377:tid 12377] [client 86.98.29.71:57567] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 86.98.29.71 (+1 hits since last alert)|stalbansparish.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "stalbansparish.org"] [uri "/xmlrpc.php"] [unique_id "aiB2PIlbT4p7j-EZvevVBgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
NotCool
2026-06-03 18:18:43
(4 hours ago)
(XMLRPC) WP XMLPRC Attack 86.98.29.71 (AE/United Arab Emirates/bba-86-98-29-71.alshamil.net.ae): 50 ...
show more
(XMLRPC) WP XMLPRC Attack 86.98.29.71 (AE/United Arab Emirates/bba-86-98-29-71.alshamil.net.ae): 50 in the last 3600 secs
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-03 16:41:19
(6 hours ago)
(mod_security) mod_security (id:240335) triggered by 86.98.29.71 (bba-86-98-29-71.alshamil.net.ae): ...
show more
(mod_security) mod_security (id:240335) triggered by 86.98.29.71 (bba-86-98-29-71.alshamil.net.ae): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 12:41:14.950201 2026] [security2:error] [pid 16247:tid 16247] [client 86.98.29.71:59953] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 86.98.29.71 (+1 hits since last alert)|celltechs.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "celltechs.net"] [uri "/xmlrpc.php"] [unique_id "aiBZKuBGsMeqW71nMR7I9gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-03 16:21:06
(6 hours ago)
(mod_security) mod_security (id:240335) triggered by 86.98.29.71 (bba-86-98-29-71.alshamil.net.ae): ...
show more
(mod_security) mod_security (id:240335) triggered by 86.98.29.71 (bba-86-98-29-71.alshamil.net.ae): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 12:20:59.779142 2026] [security2:error] [pid 18345:tid 18345] [client 86.98.29.71:55608] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 86.98.29.71 (+1 hits since last alert)|mytapt.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "mytapt.com"] [uri "/xmlrpc.php"] [unique_id "aiBUa4vPDJZN7Hm4v2Qe_gAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
tecnoacquisti.com
2026-06-03 15:59:47
(6 hours ago)
PrestaShop Security Module: Calls WordPress paths probing known vulnerabilities
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-03 14:59:38
(7 hours ago)
(mod_security) mod_security (id:240335) triggered by 86.98.29.71 (bba-86-98-29-71.alshamil.net.ae): ...
show more
(mod_security) mod_security (id:240335) triggered by 86.98.29.71 (bba-86-98-29-71.alshamil.net.ae): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 10:59:30.107200 2026] [security2:error] [pid 29943:tid 29943] [client 86.98.29.71:59857] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 86.98.29.71 (+1 hits since last alert)|jessicalevant.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "jessicalevant.com"] [uri "/xmlrpc.php"] [unique_id "aiBBUnVT5MWuMvthwB4FkAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π¦
polycoda
2026-06-03 14:47:40
(8 hours ago)
AutoBlock: π WordPress Login Brute Force (20X or 30X) (Decay-Based)
Brute-Force
Web App Attack
π©πͺ
dbmwebdesign
2026-06-03 14:45:06
(8 hours ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-03 13:46:47
(9 hours ago)
(mod_security) mod_security (id:240335) triggered by 86.98.29.71 (bba-86-98-29-71.alshamil.net.ae): ...
show more
(mod_security) mod_security (id:240335) triggered by 86.98.29.71 (bba-86-98-29-71.alshamil.net.ae): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 09:46:41.203346 2026] [security2:error] [pid 1670:tid 1670] [client 86.98.29.71:33827] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 86.98.29.71 (+1 hits since last alert)|sharonmauldin.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "sharonmauldin.com"] [uri "/xmlrpc.php"] [unique_id "aiAwQdo46FMJYdLWOty9XwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-03 11:42:57
(11 hours ago)
(mod_security) mod_security (id:240335) triggered by 86.98.29.71 (bba-86-98-29-71.alshamil.net.ae): ...
show more
(mod_security) mod_security (id:240335) triggered by 86.98.29.71 (bba-86-98-29-71.alshamil.net.ae): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 07:42:50.002953 2026] [security2:error] [pid 4314:tid 4314] [client 86.98.29.71:64549] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 86.98.29.71 (+1 hits since last alert)|morninginc.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "morninginc.com"] [uri "/xmlrpc.php"] [unique_id "aiATORiUYaSFP8b6AsZOoQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
masterguru
2026-06-03 08:18:16
(14 hours ago)
(xmlrpc) Apache: Failed xmlrpc access from 86.98.29.71 (AE/United Arab Emirates/bba-86-98-29-71.alsh ...
show more
(xmlrpc) Apache: Failed xmlrpc access from 86.98.29.71 (AE/United Arab Emirates/bba-86-98-29-71.alshamil.net.ae): 10 in the last 3600 secs (0-201)
show less
Hacking
πΊπΈ
TPI-Abuse
2026-06-03 01:15:44
(21 hours ago)
(mod_security) mod_security (id:240335) triggered by 86.98.29.71 (bba-86-98-29-71.alshamil.net.ae): ...
show more
(mod_security) mod_security (id:240335) triggered by 86.98.29.71 (bba-86-98-29-71.alshamil.net.ae): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 21:15:40.112208 2026] [security2:error] [pid 8420:tid 8420] [client 86.98.29.71:60777] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 86.98.29.71 (+1 hits since last alert)|suswastima.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "suswastima.com"] [uri "/xmlrpc.php"] [unique_id "ah-APJAO6hvRUTd5QuHp6QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack