๐บ๐ธ
TPI-Abuse
2026-06-14 16:15:06
(3 hours ago)
(mod_security) mod_security (id:240335) triggered by 95.203.0.45 (host-95-203-0-45.mobileonline.teli ...
show more
(mod_security) mod_security (id:240335) triggered by 95.203.0.45 (host-95-203-0-45.mobileonline.telia.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 12:14:59.626193 2026] [security2:error] [pid 23462:tid 23462] [client 95.203.0.45:49517] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 95.203.0.45 (+1 hits since last alert)|ardath.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "ardath.net"] [uri "/xmlrpc.php"] [unique_id "ai7Tg88RGOZc7BsyAb0jagAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
integrantservices.com
2026-06-14 14:23:36
(5 hours ago)
(PERMBLOCK) 95.203.0.45 (SE/Sweden/host-95-203-0-45.mobileonline.telia.com) has had more than 4 temp ...
show more
(PERMBLOCK) 95.203.0.45 (SE/Sweden/host-95-203-0-45.mobileonline.telia.com) has had more than 4 temp blocks
show less
Hacking
๐ซ๐ท
masterguru
2026-06-14 08:34:41
(11 hours ago)
xmlrpc request blocked, no referer. Pattern match "xmlrpc.php" at REQUEST_URI. (88010-201)
Hacking
๐ฒ๐พ
Rizzy
2026-06-14 03:06:36
(16 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 01:39:08
(18 hours ago)
(mod_security) mod_security (id:240335) triggered by 95.203.0.45 (host-95-203-0-45.mobileonline.teli ...
show more
(mod_security) mod_security (id:240335) triggered by 95.203.0.45 (host-95-203-0-45.mobileonline.telia.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 21:39:04.413668 2026] [security2:error] [pid 32111:tid 32111] [client 95.203.0.45:41484] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 95.203.0.45 (+1 hits since last alert)|thenolangroup.llc|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "thenolangroup.llc"] [uri "/xmlrpc.php"] [unique_id "ai4GOCKpq9gbsBg_yNCfiAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
integrantservices.com
2026-06-13 21:24:27
(22 hours ago)
(wordpress) Failed wordpress login from 95.203.0.45 (SE/Sweden/host-95-203-0-45.mobileonline.telia.c ...
show more
(wordpress) Failed wordpress login from 95.203.0.45 (SE/Sweden/host-95-203-0-45.mobileonline.telia.com)
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-13 19:14:58
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 95.203.0.45 (host-95-203-0-45.mobileonline.teli ...
show more
(mod_security) mod_security (id:240335) triggered by 95.203.0.45 (host-95-203-0-45.mobileonline.telia.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 15:14:53.162703 2026] [security2:error] [pid 25223:tid 25223] [client 95.203.0.45:24386] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 95.203.0.45 (+1 hits since last alert)|produktives.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "produktives.com"] [uri "/xmlrpc.php"] [unique_id "ai2sLcpwrXzBL4qQeF4NhAAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-13 16:40:04
(1 day ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐ซ๐ท
dynamix
2026-06-13 11:17:54
(1 day ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 08:53:25
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 95.203.0.45 (host-95-203-0-45.mobileonline.teli ...
show more
(mod_security) mod_security (id:240335) triggered by 95.203.0.45 (host-95-203-0-45.mobileonline.telia.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 04:53:16.608289 2026] [security2:error] [pid 19084:tid 19084] [client 95.203.0.45:64903] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 95.203.0.45 (+1 hits since last alert)|guarinofurnituredesigns.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "guarinofurnituredesigns.com"] [uri "/xmlrpc.php"] [unique_id "ai0afIFoFqmx8GW17EnoLQAAAFU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Apache
2026-06-13 01:17:48
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 95.203.0.45 (SE/Sweden/host-95-203-0-45.mobileo ...
show more
(mod_security) mod_security (id:240335) triggered by 95.203.0.45 (SE/Sweden/host-95-203-0-45.mobileonline.telia.com): 5 in the last 300 secs
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-12 18:44:53
(2 days ago)
(mod_security) mod_security (id:240335) triggered by 95.203.0.45 (host-95-203-0-45.mobileonline.teli ...
show more
(mod_security) mod_security (id:240335) triggered by 95.203.0.45 (host-95-203-0-45.mobileonline.telia.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 14:44:45.508871 2026] [security2:error] [pid 14778:tid 14778] [client 95.203.0.45:20945] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 95.203.0.45 (+1 hits since last alert)|greenlight.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "greenlight.us"] [uri "/xmlrpc.php"] [unique_id "aixTnRgoI1ew-zz2-J6hEgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
Mario Bretscher
2026-06-12 10:16:30
(2 days ago)
Jun 12 12:16:18 beat-band.ch Cerber(beat-band.ch)[1012189]: Authentication failure for beat-band fro ...
show more
Jun 12 12:16:18 beat-band.ch Cerber(beat-band.ch)[1012189]: Authentication failure for beat-band from 95.203.0.45
Jun 12 12:16:29 beat-band.ch Cerber(beat-band.ch)[1012219]: Authentication failure for beat-band from 95.203.0.45
...
show less
Web Spam
๐บ๐ธ
TPI-Abuse
2026-06-12 08:44:35
(2 days ago)
(mod_security) mod_security (id:240335) triggered by 95.203.0.45 (host-95-203-0-45.mobileonline.teli ...
show more
(mod_security) mod_security (id:240335) triggered by 95.203.0.45 (host-95-203-0-45.mobileonline.telia.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 04:44:28.577387 2026] [security2:error] [pid 8592:tid 8632] [client 95.203.0.45:60165] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 95.203.0.45 (+1 hits since last alert)|michaelrandon.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "michaelrandon.com"] [uri "/xmlrpc.php"] [unique_id "aivG7PyPJw3gRleJsjqKZwAAAwo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-12 06:32:40
(2 days ago)
Attac
Brute-Force