๐น๐ท
rtbh.com.tr
2025-10-06 20:09:12
(11 months ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
๐น๐ท
rtbh.com.tr
2025-10-06 00:09:11
(11 months ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
๐น๐ท
rtbh.com.tr
2025-10-05 20:09:11
(11 months ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
๐บ๐ธ
octageeks.com
2025-10-05 04:08:18
(11 months ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐ฉ๐ช
SpaceHost-Server
2025-10-04 22:26:02
(11 months ago)
Brute-Force
Web App Attack
Anonymous
2025-10-04 20:18:58
(11 months ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
๐ซ๐ท
COMAITE
2025-10-04 20:14:18
(11 months ago)
Multiple web server 400 error codes from same source ip 128.199.255.94.
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-04 20:09:45
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 128.199.255.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 128.199.255.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 04 16:09:41.156824 2025] [security2:error] [pid 21886:tid 21902] [client 128.199.255.94:55213] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||browbrew.metalartgate.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "browbrew.metalartgate.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aOF_BaTpHo2i4dZ2sGLyvQAAAUw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-04 19:38:08
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 128.199.255.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 128.199.255.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 04 15:38:02.920405 2025] [security2:error] [pid 19551:tid 19551] [client 128.199.255.94:54873] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||art.mavikalem.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "art.mavikalem.org"] [uri "/wp-json/wp/v2/users/"] [unique_id "aOF3mtkQH_XUADc7KY5mbQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-04 19:15:54
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 128.199.255.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 128.199.255.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 04 15:15:48.292151 2025] [security2:error] [pid 22268:tid 22268] [client 128.199.255.94:62260] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||braintechsoftwaresolutions.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "braintechsoftwaresolutions.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aOFyZN91ZvvRY_if0upLtAAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2025-10-04 19:12:32
(11 months ago)
Web vulnerability probing: /website/wp-includes/wlwmanifest.xml
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-04 18:57:22
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 128.199.255.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 128.199.255.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 04 14:57:18.442122 2025] [security2:error] [pid 16624:tid 16624] [client 128.199.255.94:57559] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||armorcorp.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "armorcorp.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aOFuDj_2mngq1IUTcyzx5gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
TechnoSolutions CL
2025-10-04 18:56:36
(11 months ago)
128.199.255.94 - - [04/Oct/2025:18:56:35 +0000] "GET //wp-includes/wlwmanifest.xml HTTP/1.1" 405 552 ...
show more
128.199.255.94 - - [04/Oct/2025:18:56:35 +0000] "GET //wp-includes/wlwmanifest.xml HTTP/1.1" 405 552 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
128.199.255.94 - - [04/Oct/2025:18:56:36 +0000] "GET //blog/wp-includes/wlwmanifest.xml HTTP/1.1" 403 66 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
...
show less
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ps-center
2025-10-04 18:29:02
(11 months ago)
SS5: Web Attack GET //wp-includes/wlwmanifest.xml
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-04 17:48:04
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 128.199.255.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 128.199.255.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 04 13:47:58.418913 2025] [security2:error] [pid 19144:tid 19144] [client 128.199.255.94:55541] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.boaredraven.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.boaredraven.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aOFdzgx8fGtRth0_tYyEnQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack