Anonymous
2026-06-16 12:46:02
(1 week ago)
Malicious activity detected
Hacking
Web App Attack
๐ฉ๐ช
LRob.fr
2026-06-16 08:30:14
(1 week ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-06-16 03:16:57
(1 week ago)
Blocked by CSF 13 firewall - Rule: WPLOGIN
CA/Canada/-
Web App Attack
๐ต๐ฑ
tomkolp
2026-06-15 12:00:04
(1 week ago)
CSF/LFD block: WPLOGIN - WP Login Attack 104.234.32.137 (US/United States/-): 5 in the last 3600 sec ...
show more
CSF/LFD block: WPLOGIN - WP Login Attack 104.234.32.137 (US/United States/-): 5 in the last 3600 secs
show less
Brute-Force
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-06-15 05:23:37
(1 week ago)
[Mon Jun 15 15:23:36.678035 2026] [security2:error] [pid 77481] [client 104.234.32.137:43383] [clien ...
show more
[Mon Jun 15 15:23:36.678035 2026] [security2:error] [pid 77481] [client 104.234.32.137:43383] [client 104.234.32.137] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "paulshipley.id.au"] [uri "/admin"] [unique_id "ai-MWDSgKaTlA2H6hsgYagAAAAk"], referer: https://paulshipley.id.au/wp-admin/
...
show less
Web App Attack
๐ซ๐ท
dynamix
2026-06-15 05:08:43
(1 week ago)
WordPress wp-login.php Brute Force Attack
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-06-06 11:05:25
(2 weeks ago)
Login Too Frequent (7)
Brute-Force
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-06-05 12:25:57
(2 weeks ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-bf-wordpress_bf
Web App Attack
Brute-Force
๐ฉ๐ช
R.G.
2026-06-05 01:32:39
(2 weeks ago)
(WPLOGINorWHATEVER) Get lost please 104.234.32.137 (US/United States/-): 7 in the last 600 secs; Por ...
show more
(WPLOGINorWHATEVER) Get lost please 104.234.32.137 (US/United States/-): 7 in the last 600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
mnsf
2026-06-04 00:05:16
(3 weeks ago)
Login Too Frequent (6)
Brute-Force
Web App Attack
๐ฉ๐ช
Marc
2026-06-03 19:50:20
(3 weeks ago)
104.234.32.137 - - [03/Jun/2026:21:50:15 +0200] "GET /wp-login.php?redirect_to=https%3A%2F%2Flostpla ...
show more
104.234.32.137 - - [03/Jun/2026:21:50:15 +0200] "GET /wp-login.php?redirect_to=https%3A%2F%2Flostplace.art%2Fwp-admin%2Fprofile.php&reauth=1 HTTP/1.1" 200 5480 "https://lostplace.art/wp-login.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_6_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/121.0.6167.85 Safari/537.36" 104.234.32.137 - - [03/Jun/2026:21:50:16 +0200] "POST /wp-login.php HTTP/1.1" 200 4482 "https://lostplace.art/wp-login.php" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.6099.130 Safari/537.36" 104.234.32.137 - - [03/Jun/2026:21:50:16 +0200] "GET /wp-login.php?redirect_to=https%3A%2F%2Flostplace.art%2Fwp-admin%2Findex.php&reauth=1 HTTP/1.1" 200 5479 "https://lostplace.art/wp-login.php" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.6099.130 Safari/537.36" 104.234.32.137 - - [03/Jun/2026:21:50:18 +0200] "POST /wp-login.php HTTP/1.1" 200 4482 "https://lostplace.art/wp-login.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_
show less
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-06-02 23:05:42
(3 weeks ago)
Login Too Frequent (6)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-06-01 21:05:47
(3 weeks ago)
Login Too Frequent (7)
Brute-Force
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-06-01 06:05:38
(3 weeks ago)
Blocked by CSF 13 firewall - Rule: WPLOGIN
CA/Canada/-
Web App Attack
๐บ๐ธ
Victor Lรณpez
2026-06-01 03:30:17
(3 weeks ago)
empresarioexpress.com 104.234.32.137 - - [31/May/2026:22:29:59 -0500] "POST /wp-login.php HTTP/1.1" ...
show more
empresarioexpress.com 104.234.32.137 - - [31/May/2026:22:29:59 -0500] "POST /wp-login.php HTTP/1.1" 200 1981 "https://empresarioexpress.com/wp-login.php" "Mozilla/5.0 (Windows NT 11.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/118.0.5993.88 Safari/537.36"
empresarioexpress.com 104.234.32.137 - - [31/May/2026:22:30:03 -0500] "POST /wp-login.php HTTP/1.1" 200 2044 "https://empresarioexpress.com/wp-login.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15) Gecko/20100101 Firefox/120.0.1"
empresarioexpress.com 104.234.32.137 - - [31/May/2026:22:30:17 -0500] "POST /wp-login.php HTTP/1.1" 200 2039 "https://empresarioexpress.com/wp-login.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15) Gecko/20100101 Firefox/118.0.2"
...
show less
Hacking
Web App Attack