๐บ๐ธ
integrantservices.com
2026-06-07 14:33:48
(47 minutes ago)
(wordpress) Failed wordpress login from 92.241.36.106 (JO/Jordan/-)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-07 12:33:52
(2 hours ago)
(mod_security) mod_security (id:240335) triggered by 92.241.36.106 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 92.241.36.106 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 08:33:46.133988 2026] [security2:error] [pid 9724:tid 9724] [client 92.241.36.106:26304] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 92.241.36.106 (+1 hits since last alert)|josephshv.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "josephshv.com"] [uri "/xmlrpc.php"] [unique_id "aiVlKmJCPlhpeJaPpMe6BAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-06-07 08:55:57
(6 hours ago)
(xmlrpc_405) XMLRPC-Bot 405 92.241.36.106 (JO/Jordan/-)
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-07 07:25:47
(7 hours ago)
(mod_security) mod_security (id:240335) triggered by 92.241.36.106 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 92.241.36.106 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 03:25:40.785055 2026] [security2:error] [pid 19473:tid 19473] [client 92.241.36.106:34634] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 92.241.36.106 (+1 hits since last alert)|enriquejezik.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "enriquejezik.com"] [uri "/xmlrpc.php"] [unique_id "aiUc9FV9pt3qafM-h61COwAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-06-07 05:21:25
(9 hours ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
JO/Hashemite Kingdom of Jordan/-
Web App Attack
๐ฒ๐พ
Rizzy
2026-06-03 12:22:10
(4 days ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-03 11:52:06
(4 days ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
Anonymous
2026-06-03 05:12:47
(4 days ago)
Attac
Brute-Force
๐ฌ๐ง
noise.agency
2026-06-02 12:51:30
(5 days ago)
(wordpress) Failed wordpress login from 92.241.36.106 (JO/Jordan/-)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-02 09:49:42
(5 days ago)
(mod_security) mod_security (id:240335) triggered by 92.241.36.106 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 92.241.36.106 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 05:49:34.840349 2026] [security2:error] [pid 7797:tid 7797] [client 92.241.36.106:26295] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 92.241.36.106 (+1 hits since last alert)|metcomarine.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "metcomarine.com"] [uri "/xmlrpc.php"] [unique_id "ah6nLvkHc0iWX0lt2Qtt4wAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-02 09:47:00
(5 days ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 09:18:49
(5 days ago)
(mod_security) mod_security (id:240335) triggered by 92.241.36.106 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 92.241.36.106 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 05:18:44.018875 2026] [security2:error] [pid 31866:tid 31866] [client 92.241.36.106:22787] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 92.241.36.106 (+1 hits since last alert)|eta-mct.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "eta-mct.com"] [uri "/xmlrpc.php"] [unique_id "ah6f9G7BnW2K1njOzBMv2QAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 06:26:26
(5 days ago)
(mod_security) mod_security (id:240335) triggered by 92.241.36.106 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 92.241.36.106 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 02:26:23.595249 2026] [security2:error] [pid 19591:tid 19591] [client 92.241.36.106:21373] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 92.241.36.106 (+1 hits since last alert)|williamfitzsimmons.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "williamfitzsimmons.com"] [uri "/xmlrpc.php"] [unique_id "ah53jxUGt7RCLHhuKawepAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐พ
SecOpsSL
2026-06-01 14:02:02
(6 days ago)
92.241.36.106 - - [01/Jun/2026:11:02:01 -0300] "POST /xmlrpc.php HTTP/1.1" 403 277 "-" "Jetpack by W ...
show more
92.241.36.106 - - [01/Jun/2026:11:02:01 -0300] "POST /xmlrpc.php HTTP/1.1" 403 277 "-" "Jetpack by WordPress.com"
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-01 13:04:34
(6 days ago)
(mod_security) mod_security (id:240335) triggered by 92.241.36.106 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 92.241.36.106 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 09:04:30.152057 2026] [security2:error] [pid 14469:tid 14489] [client 92.241.36.106:21537] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 92.241.36.106 (+1 hits since last alert)|emehache.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "emehache.com"] [uri "/xmlrpc.php"] [unique_id "ah2DXk3I8EZXV9mmob64_wAAARI"]
show less
Brute-Force
Bad Web Bot
Web App Attack