๐ฒ๐พ
Rizzy
2026-06-21 23:07:53
(2 days ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ฒ๐พ
Rizzy
2026-06-20 22:08:20
(3 days ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 13:47:45
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 99.234.135.34 (pool-99-234-135-34.cpe.net.cable ...
show more
(mod_security) mod_security (id:240335) triggered by 99.234.135.34 (pool-99-234-135-34.cpe.net.cable.rogers.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 09:47:37.788292 2026] [security2:error] [pid 11150:tid 11150] [client 99.234.135.34:55203] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 99.234.135.34 (+1 hits since last alert)|jerielster.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "jerielster.com"] [uri "/xmlrpc.php"] [unique_id "ajFT-Zh8DlD5G15_HbLxGwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 22:06:38
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 99.234.135.34 (pool-99-234-135-34.cpe.net.cable ...
show more
(mod_security) mod_security (id:240335) triggered by 99.234.135.34 (pool-99-234-135-34.cpe.net.cable.rogers.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 18:06:33.415025 2026] [security2:error] [pid 12594:tid 12594] [client 99.234.135.34:64656] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 99.234.135.34 (+1 hits since last alert)|abcollie.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "abcollie.com"] [uri "/xmlrpc.php"] [unique_id "ajB3aRKqDmylpeimyty87AAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
masterguru
2026-06-15 01:07:01
(1 week ago)
(xmlrpc) Failed xmlrpc access from 99.234.135.34 (CA/Canada/pool-99-234-135-34.cpe.net.cable.rogers. ...
show more
(xmlrpc) Failed xmlrpc access from 99.234.135.34 (CA/Canada/pool-99-234-135-34.cpe.net.cable.rogers.com): 5 in the last 3600 secs (0-122)
show less
Hacking
๐ซ๐ท
dynamix
2026-06-15 00:05:01
(1 week ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:13:34
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 99.234.135.34 (pool-99-234-135-34.cpe.net.cable ...
show more
(mod_security) mod_security (id:240335) triggered by 99.234.135.34 (pool-99-234-135-34.cpe.net.cable.rogers.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:13:27.495175 2026] [security2:error] [pid 18758:tid 18758] [client 99.234.135.34:64114] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 99.234.135.34 (+1 hits since last alert)|madisonmedia.ai|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "madisonmedia.ai"] [uri "/xmlrpc.php"] [unique_id "ai8nhwdeA-781bD06GkBZAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-11 00:08:31
(1 week ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-06-10 22:18:16
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 99.234.135.34 (pool-99-234-135-34.cpe.net.cable ...
show more
(mod_security) mod_security (id:240335) triggered by 99.234.135.34 (pool-99-234-135-34.cpe.net.cable.rogers.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 18:18:11.329555 2026] [security2:error] [pid 656:tid 656] [client 99.234.135.34:62841] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 99.234.135.34 (+1 hits since last alert)|terfgunclub.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "terfgunclub.com"] [uri "/xmlrpc.php"] [unique_id "ainio-fUtXgkM0AAkuhCTwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-09 22:57:06
(2 weeks ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐ฒ๐พ
Rizzy
2026-06-07 19:36:53
(2 weeks ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 03:47:42
(2 weeks ago)
(mod_security) mod_security (id:240335) triggered by 99.234.135.34 (pool-99-234-135-34.cpe.net.cable ...
show more
(mod_security) mod_security (id:240335) triggered by 99.234.135.34 (pool-99-234-135-34.cpe.net.cable.rogers.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 23:47:35.706000 2026] [security2:error] [pid 24832:tid 24832] [client 99.234.135.34:60853] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 99.234.135.34 (+1 hits since last alert)|wsspy.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "wsspy.com"] [uri "/xmlrpc.php"] [unique_id "aiTp17yJE3JXTWLitaDNwAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-07 03:45:04
(2 weeks ago)
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1
Hacking
Web App Attack
๐ช๐ธ
masterguru
2026-06-06 03:11:08
(2 weeks ago)
(xmlrpc) Failed xmlrpc access from 99.234.135.34 (CA/Canada/pool-99-234-135-34.cpe.net.cable.rogers. ...
show more
(xmlrpc) Failed xmlrpc access from 99.234.135.34 (CA/Canada/pool-99-234-135-34.cpe.net.cable.rogers.com): 5 in the last 3600 secs (0-122)
show less
Hacking
Anonymous
2026-06-06 03:10:13
(2 weeks ago)
Attac
Brute-Force