🇫🇷
Kenshin869
2026-04-15 17:59:43
(1 month ago)
Wordpress unauthorized access attempt
Brute-Force
Anonymous
2026-04-13 22:12:13
(1 month ago)
(wordpress) Failed wordpress login from 93.182.105.78 (TR/Türkiye/93-182-105-78.netonline.net)
Brute-Force
Anonymous
2026-04-13 21:17:35
(1 month ago)
93.182.105.78 - - [13/Apr/2026:21:17:34 +0000] "POST /xmlrpc.php HTTP/1.1" 404 34513 "-" "Jetpack by ...
show more
93.182.105.78 - - [13/Apr/2026:21:17:34 +0000] "POST /xmlrpc.php HTTP/1.1" 404 34513 "-" "Jetpack by WordPress.com"
...
show less
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-04-13 20:53:36
(1 month ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-04-13 20:32:56
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 93.182.105.78 (93-182-105-78.netonline.net): 1 ...
show more
(mod_security) mod_security (id:240335) triggered by 93.182.105.78 (93-182-105-78.netonline.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 13 16:32:49.413670 2026] [security2:error] [pid 961941:tid 961941] [client 93.182.105.78:13315] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 93.182.105.78 (+1 hits since last alert)|cmcnow.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "cmcnow.com"] [uri "/xmlrpc.php"] [unique_id "ad1S8aawi5gSG5kiwfiFjAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
grassau.com
2026-04-13 19:36:43
(1 month ago)
(wordpress) Failed wordpress login from 93.182.105.78 (TR/Türkiye/Mersin/Mersin/93-182-105-78.netonl ...
show more
(wordpress) Failed wordpress login from 93.182.105.78 (TR/Türkiye/Mersin/Mersin/93-182-105-78.netonline.net)
show less
Brute-Force
Anonymous
2026-04-13 18:48:57
(1 month ago)
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-04-13 18:31:26
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 93.182.105.78 (93-182-105-78.netonline.net): 1 ...
show more
(mod_security) mod_security (id:240335) triggered by 93.182.105.78 (93-182-105-78.netonline.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 13 14:31:23.077023 2026] [security2:error] [pid 2977726:tid 2977726] [client 93.182.105.78:14502] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 93.182.105.78 (+1 hits since last alert)|calogerolawfirm.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "calogerolawfirm.com"] [uri "/xmlrpc.php"] [unique_id "ad02ewZcXl2k0cMzMMktAgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-13 17:12:47
(1 month ago)
(wordpress) Failed wordpress login from 93.182.105.78 (TR/Türkiye/93-182-105-78.netonline.net)
Brute-Force
🇺🇸
TPI-Abuse
2026-04-13 16:41:49
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 93.182.105.78 (93-182-105-78.netonline.net): 1 ...
show more
(mod_security) mod_security (id:240335) triggered by 93.182.105.78 (93-182-105-78.netonline.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 13 12:41:45.745359 2026] [security2:error] [pid 85014:tid 85014] [client 93.182.105.78:14529] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 93.182.105.78 (+1 hits since last alert)|doublenaughtspycar.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "doublenaughtspycar.com"] [uri "/xmlrpc.php"] [unique_id "ad0cyWTkpScGBL4cboidBwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
rh24
2026-04-13 11:57:34
(1 month ago)
(wordpress) Failed wordpress login from 93.182.105.78 (TR/Türkiye/93-182-105-78.netonline.net): (CF ...
show more
(wordpress) Failed wordpress login from 93.182.105.78 (TR/Türkiye/93-182-105-78.netonline.net): (CF_ENABLE)
show less
Brute-Force
🇦🇺
screwlooseit.com.au
2026-04-13 05:55:10
(1 month ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
TR/Turkey/93-182-105-78.netonline.net
Web App Attack
🇭🇷
bubausluge
2026-04-12 20:37:37
(1 month ago)
Detected by Aegis SOC: Web Admin Probe | MITRE: T1190 | Fails: 42 | Period: 2026-04-12T16:51:05 to 2 ...
show more
Detected by Aegis SOC: Web Admin Probe | MITRE: T1190 | Fails: 42 | Period: 2026-04-12T16:51:05 to 2026-04-12T17:03:44
show less
Brute-Force
🇸🇪
konseptit
2026-04-12 18:52:17
(1 month ago)
(wordpress) Failed wordpress login from 93.182.105.78 (TR/Türkiye/93-182-105-78.netonline.net)
Brute-Force
🇺🇸
TPI-Abuse
2026-04-12 16:49:29
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 93.182.105.78 (93-182-105-78.netonline.net): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 93.182.105.78 (93-182-105-78.netonline.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 12 12:49:22.941380 2026] [security2:error] [pid 3111571:tid 3111571] [client 93.182.105.78:13410] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lgbtqhistoryinaustin.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lgbtqhistoryinaustin.org"] [uri "/wp-json/wp/v2/users"] [unique_id "advNErMzI3R1zifwZpOJuwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack