🇺🇸
lostswordfish.com
2026-08-27 06:20:04
(2 days ago)
Wordfence waf block on fairregistry
Web App Attack
🇫🇷
masterguru
2026-08-27 06:09:03
(2 days ago)
(modsec_5040) ModSec 5040: API Basic Auth blocked from 116.118.68.44 (VN/Vietnam/-): 1 in the last 3 ...
show more
(modsec_5040) ModSec 5040: API Basic Auth blocked from 116.118.68.44 (VN/Vietnam/-): 1 in the last 3600 secs (0-195)
show less
Hacking
🇩🇪
london2038.com
2026-08-27 06:01:04
(2 days ago)
Attacking WordPress
116.118.68.44 - - [27/Aug/2026:08:01:01 +0200] "POST /wp-login.php HTTP/2.0" 503 ...
show more
Attacking WordPress
116.118.68.44 - - [27/Aug/2026:08:01:01 +0200] "POST /wp-login.php HTTP/2.0" 503 19289 "https://<REDACTED>/wp-login.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
show less
Brute-Force
Web App Attack
🇮🇹
sssrit
2026-08-26 23:11:40
(2 days ago)
116.118.68.44 - - [27/Aug/2026:01:11:39 +0200] "POST /wp-login.php HTTP/2.0" 401 4726 "-" "Mozilla/5 ...
show more
116.118.68.44 - - [27/Aug/2026:01:11:39 +0200] "POST /wp-login.php HTTP/2.0" 401 4726 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
...
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-08-26 09:01:52
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 116.118.68.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 116.118.68.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 05:01:48.891566 2026] [security2:error] [pid 3721634:tid 3722136] [client 116.118.68.44:35322] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||property-management-companies-chicago.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "property-management-companies-chicago.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ao6rfFg18Sa8safm3opw1AAAAkQ"], referer: https://property-management-companies-chicago.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇲🇽
octageeks.com
2026-08-26 04:20:37
(3 days ago)
Wordpress malicious attack:[octaflood]
Web App Attack
🇳🇱
ipoac.nl
2026-08-25 20:06:05
(3 days ago)
2026-08-25T22:06:03.833773+02:00 ipoac.nl wordpress(-)-: Authentication failure for-from 116.118.68. ...
show more
2026-08-25T22:06:03.833773+02:00 ipoac.nl wordpress(-)-: Authentication failure for-from 116.118.68.44
show less
Web App Attack
🇲🇽
octageeks.com
2026-08-23 04:07:26
(6 days ago)
Wordpress malicious attack:[octaflood]
Web App Attack
🇺🇸
TPI-Abuse
2026-08-20 14:56:38
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 116.118.68.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 116.118.68.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 10:56:32.236360 2026] [security2:error] [pid 28277:tid 28277] [client 116.118.68.44:60358] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lumentravel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lumentravel.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aocVoCZqURA2pOaAnGDOPQAAAC4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-20 14:24:28
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 116.118.68.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 116.118.68.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 10:24:23.719410 2026] [security2:error] [pid 12449:tid 12477] [client 116.118.68.44:39058] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.fastestcopyright.aafm.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.fastestcopyright.aafm.us"] [uri "/wp-json/wp/v2/users"] [unique_id "aocOFzjwJE9ONkHEPGde7QAAARQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-20 13:40:33
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 116.118.68.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 116.118.68.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 09:40:24.189671 2026] [security2:error] [pid 4727:tid 4727] [client 116.118.68.44:35060] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fatcavestudios.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fatcavestudios.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aocDyJBvl-vPFnXmmq-yAQAAAJU"]
show less
Brute-Force
Bad Web Bot
Web App Attack