๐ธ๐ช
vaia.cloud
2026-09-25 13:30:03
(4 hours ago)
crowdsecurity/http-wordpress-scan
Brute-Force
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-25 06:30:17
(11 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐ณ๐ฑ
Savvii
2026-09-24 19:00:42
(22 hours ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
IndigoRidge
2026-09-24 15:50:45
(1 day ago)
111.63.190.167 - - [24/Sep/2026:11:50:27 -0400] "GET /wp-content/plugins/wp-hide-backed-notices/READ ...
show more
111.63.190.167 - - [24/Sep/2026:11:50:27 -0400] "GET /wp-content/plugins/wp-hide-backed-notices/README.txt HTTP/1.1" 404 36076 "http://www.buyersinspectiongroup.com/wp-content/plugins/wp-hide-backed-notices/README.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
111.63.190.167 - - [24/Sep/2026:11:50:31 -0400] "GET /wp-content/plugins/wp-user-frontend/readme.txt HTTP/1.1" 404 36076 "http://www.buyersinspectiongroup.com/wp-content/plugins/wp-user-frontend/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
111.63.190.167 - - [24/Sep/2026:11:50:35 -0400] "GET /wp-content/plugins/image-sizes/readme.txt HTTP/1.1" 404 36076 "http://www.buyersinspectiongroup.com/wp-content/plugins/image-sizes/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
111.63.190.167 - - [24/Sep/2026:11:50:41 -04
...
show less
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-09-24 15:20:10
(1 day ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-09-24 15:18:26
(1 day ago)
111.63.190.167 - - [24/Sep/2026:17:18:16 +0200] "GET /wp-content/plugins/wp-html-mail/readme.txt HTT ...
show more
111.63.190.167 - - [24/Sep/2026:17:18:16 +0200] "GET /wp-content/plugins/wp-html-mail/readme.txt HTTP/1.1" 404 43102 "http://[site]/wp-content/plugins/wp-html-mail/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
111.63.190.167 - - [24/Sep/2026:17:18:18 +0200] "GET /wp-content/plugins/wp-postratings/readme.txt HTTP/1.1" 404 42923 "http://[site]/wp-content/plugins/wp-postratings/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
111.63.190.167 - - [24/Sep/2026:17:18:20 +0200] "GET /wp-content/plugins/wp-user-frontend/readme.txt HTTP/1.1" 404 42923 "http://[site]/wp-content/plugins/wp-user-frontend/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
111.63.190.167 - - [24/Sep/2026:17:18:22 +0200] "GET /wp-content/plugins/radio-buttons-for-taxonomies/readme.txt HTTP/1.1" 404
show less
Web App Attack
Hacking
Anonymous
2026-09-24 11:37:24
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ฉ๐ช
LRob
2026-09-24 10:28:42
(1 day ago)
This address keeps sending requests that the sites' own web application firewall refuses โ attack pa ...
show more
This address keeps sending requests that the sites' own web application firewall refuses โ attack payloads, forbidden paths โ again and again. One refusal is a mistake; a series is an attack tool at work. Blocked; please check the machine behind it. | method: GET | path: /le-groupe/nos-filiales/dg-consultants/wp-content/plugins/wp-media-library-categories/readme.txt | 2026-09-24 10:28 UTC
show less
Web App Attack
Hacking
๐บ๐ธ
IndigoRidge
2026-09-23 20:13:13
(1 day ago)
111.63.190.167 - - [23/Sep/2026:16:13:11 -0400] "GET /wp-content/plugins/rara-one-click-demo-import/ ...
show more
111.63.190.167 - - [23/Sep/2026:16:13:11 -0400] "GET /wp-content/plugins/rara-one-click-demo-import/readme.txt HTTP/1.1" 404 5744 "http://www.carolinacreative.net/wp-content/plugins/rara-one-click-demo-import/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
111.63.190.167 - - [23/Sep/2026:16:13:11 -0400] "GET /wp-content/plugins/read-more-without-refresh/readme.txt HTTP/1.1" 404 5744 "http://www.carolinacreative.net/wp-content/plugins/read-more-without-refresh/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
111.63.190.167 - - [23/Sep/2026:16:13:12 -0400] "GET /wp-content/plugins/delete-all-comments-of-website/readme.txt HTTP/1.1" 404 5744 "http://www.carolinacreative.net/wp-content/plugins/delete-all-comments-of-website/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11
...
show less
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-23 06:30:03
(2 days ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-23 05:04:49
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
Anonymous
2026-09-23 00:24:13
(2 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
IndigoRidge
2026-09-22 05:21:36
(3 days ago)
111.63.190.167 - - [22/Sep/2026:01:21:31 -0400] "GET /wp-content/plugins/feed-them-social/readme.txt ...
show more
111.63.190.167 - - [22/Sep/2026:01:21:31 -0400] "GET /wp-content/plugins/feed-them-social/readme.txt HTTP/1.1" 404 36076 "https://www.buyersinspectiongroup.com/wp-content/plugins/feed-them-social/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
111.63.190.167 - - [22/Sep/2026:01:21:32 -0400] "GET /wp-content/plugins/easy-social-icons/readme.txt HTTP/1.1" 404 36076 "https://www.buyersinspectiongroup.com/wp-content/plugins/easy-social-icons/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
111.63.190.167 - - [22/Sep/2026:01:21:33 -0400] "GET /wp-content/plugins/pdfjs-viewer-shortcode/readme.txt HTTP/1.1" 404 36076 "https://www.buyersinspectiongroup.com/wp-content/plugins/pdfjs-viewer-shortcode/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
111.63.190.167 - - [22/Sep/20
...
show less
Web App Attack
๐บ๐ธ
IndigoRidge
2026-09-22 04:56:43
(3 days ago)
111.63.190.167 - - [22/Sep/2026:00:56:30 -0400] "GET /wp-content/plugins/paypal-donations/readme.txt ...
show more
111.63.190.167 - - [22/Sep/2026:00:56:30 -0400] "GET /wp-content/plugins/paypal-donations/readme.txt HTTP/1.1" 404 34204 "https://thecarolinacollaborative.com/wp-content/plugins/paypal-donations/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
111.63.190.167 - - [22/Sep/2026:00:56:37 -0400] "GET /wp-content/plugins/throws-spam-away/readme.txt HTTP/1.1" 404 34204 "https://thecarolinacollaborative.com/wp-content/plugins/throws-spam-away/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
111.63.190.167 - - [22/Sep/2026:00:56:39 -0400] "GET /wp-content/plugins/cryout-serious-slider/readme.txt HTTP/1.1" 404 34204 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
111.63.190.167 - - [22/Sep/2026:00:56:41 -0400] "GET /wp-content/plugins/syntaxhighlighter/readme.txt HTTP/1.1" 404 34204 "
...
show less
Web App Attack
Anonymous
2026-09-21 21:04:41
(3 days ago)
IP matched detection query many 3xx errors.
Brute-Force