Anonymous
2026-06-19 14:26:17
(1 day ago)
[ssd5.kdns.gr] httpd-login-spray-site: sites=global; logs=/var/log/httpd/access_log; samples=site_wi ...
show more
[ssd5.kdns.gr] httpd-login-spray-site: sites=global; logs=/var/log/httpd/access_log; samples=site_wide=true | distinct_ips=12 | /wp-login.php
show less
Hacking
Web App Attack
๐ฉ๐ช
SCHAPPY
2026-06-19 05:32:25
(1 day ago)
Multiple attempts to attack Wordpress XMLRPC detected: access blocked.
Web App Attack
๐ฉ๐ช
georgengelmann
2026-06-19 04:34:18
(1 day ago)
Failed login attempt for root
Brute-Force
Web App Attack
๐ซ๐ท
tecnicorioja
2026-06-17 22:00:25
(2 days ago)
wp-login attack [17/Jun/2026:07:38:52
Brute-Force
Web App Attack
๐ฌ๐ท
setupgr
2026-06-17 18:43:38
(2 days ago)
(mod_security) mod_security (id:900001) triggered by 104.207.52.173 (GB/United Kingdom/England/Londo ...
show more
(mod_security) mod_security (id:900001) triggered by 104.207.52.173 (GB/United Kingdom/England/London/-/[AS200373 DREI-K-TECH-GMBH]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Wed Jun 17 21:43:37.432734 2026] [security2:error] [pid 2210294:tid 2210427] [client 104.207.52.173:56933] ModSecurity: Access denied with code 403 (phase 1). Match of "rx ^(www\\\\.)?(pankoskal\\\\.gr|sea-sound\\\\.com)$" against "REQUEST_HEADERS:Host" required. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "75"] [id "900001"] [msg "Blocked WP Login attempt on domain: cpanagiotou.gr"] [severity "CRITICAL"] [tag "security"] [hostname "cpanagiotou.gr"] [uri "/wp-login.php"] [unique_id "ajLq2bhY-m9nTIYxKGQo-AAAAZM"], referer: https://cpanagiotou.gr/wp-login.php
show less
Port Scan
๐ฒ๐น
Malta
2026-06-17 02:17:06
(3 days ago)
104.207.52.173 - - [17/Jun/2026:04:17:06 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Macintos ...
show more
104.207.52.173 - - [17/Jun/2026:04:17:06 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_6_1) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/16.6 Safari/605.1.15"
show less
Hacking
Web App Attack
๐ซ๐ท
ELYAZ
2026-06-17 02:03:35
(3 days ago)
(y4) Failed scan -byebye- from 104.207.52.173 (GB/United Kingdom/-): (CF_ENABLE)
Hacking
Anonymous
2026-06-15 02:54:26
(5 days ago)
[ns31.kdns.gr] httpd-login-spray-site: sites=mykonoscastlehouse.com; logs=/var/log/httpd/domains/myk ...
show more
[ns31.kdns.gr] httpd-login-spray-site: sites=mykonoscastlehouse.com; logs=/var/log/httpd/domains/mykonoscastlehouse.com.log; samples=site_wide=true | distinct_ips=17 | /wp-login.php
show less
Hacking
Web App Attack
๐ซ๐ท
ELYAZ
2026-06-12 19:13:51
(1 week ago)
(y4) Failed scan -byebye- from 104.207.52.173 (GB/United Kingdom/-): (CF_ENABLE)
Hacking
๐ซ๐ท
pm33
2026-06-12 14:07:48
(1 week ago)
Wordpress login attempts
Brute-Force
๐ซ๐ท
ELYAZ
2026-06-09 18:07:56
(1 week ago)
(y4) Failed scan -byebye- from 104.207.52.173 (GB/United Kingdom/-): (CF_ENABLE)
Hacking
๐ฆ๐บ
MAGIC
2026-03-02 01:37:16
(3 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ณ๐ฑ
homeshowdomain.nl
2026-02-10 23:01:22
(4 months ago)
Auto-ban: >3000 req/min op 2026-02-10
Hacking
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2026-02-10 03:44:41
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.173 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:44:33.684939 2026] [security2:error] [pid 1163111:tid 1163129] [client 104.207.52.173:28627] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "magazineofwallstreet.com"] [uri "/new/.git/config"] [unique_id "aYqpoYIkUjRLVk9bu6EuWAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 03:12:06
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.173 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:12:03.692630 2026] [security2:error] [pid 24391:tid 24391] [client 104.207.52.173:53685] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kinkycouple4u.com"] [uri "/api/.git/config"] [unique_id "aYqiAyVBoaOgKf18lMrSPwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack