๐บ๐ธ
dtorrer
2026-06-03 17:11:53
(7 hours ago)
Brute-force general attack.
Brute-Force
๐จ๐ฆ
KIsmay
2026-06-03 16:59:30
(7 hours ago)
Jun 3 08:44:04 www4 WPAudit[489905]: 132.148.72.88 imaginesalmon.com "Mozilla/5.0 (X11; Ubuntu; Lin ...
show more
Jun 3 08:44:04 www4 WPAudit[489905]: 132.148.72.88 imaginesalmon.com "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:133.0) Gecko/20100101 Firefox/133.0" imagine:IMAGINE FAIL
Jun 3 09:53:44 www4 WPAudit[485270]: 132.148.72.88 servicesfyi.ca "Mozilla/5.0 (X11; Fedora; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36" ncs-admin:ncs-admin12 FAIL
Jun 3 10:51:18 www4 WPAudit[500898]: 132.148.72.88 hvrhaulers.com "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36" sbd-admin:Sbd-admin123 FAIL
Jun 3 11:44:04 www4 WPAudit[504860]: 132.148.72.88 www.bestnelson.org "Mozilla/5.0 (X11; Fedora; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36" katietabor-developer:katietabor-developer2 FAIL
Jun 3 12:59:30 www4 WPAudit[510994]: 132.148.72.88 amandasrestaurant.ca "Mozilla/5.0 (X11; Ubuntu; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.3
...
show less
Brute-Force
Web App Attack
๐ฉ๐ช
spam.must.die
2026-06-03 16:11:45
(8 hours ago)
IP triggered category <category>
Web App Attack
๐ฌ๐ง
spamverify.com
2026-06-03 16:08:28
(8 hours ago)
Honeypot Hit: xmlrpc.php
Web Spam
Blog Spam
Bad Web Bot
Web App Attack
Anonymous
2026-06-03 16:03:56
(8 hours ago)
132.148.72.88 - - [03/Jun/2026:17:51:04 +0200] "POST /wp-login.php HTTP/1.1" 200 2889 "https://fento ...
show more
132.148.72.88 - - [03/Jun/2026:17:51:04 +0200] "POST /wp-login.php HTTP/1.1" 200 2889 "https://fentonelabourconsult.com/wp-login.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
132.148.72.88 - - [03/Jun/2026:17:53:35 +0200] "POST /wp-login.php HTTP/1.1" 200 3502 "https://jorasom.org/wp-login.php" "Mozilla/5.0 (X11; Linux x86_64; rv:133.0) Gecko/20100101 Firefox/133.0"
132.148.72.88 - - [03/Jun/2026:17:53:38 +0200] "POST /wp-login.php HTTP/1.1" 200 2995 "https://jorasom.org/wp-login.php" "Mozilla/5.0 (X11; Linux x86_64; rv:133.0) Gecko/20100101 Firefox/133.0"
132.148.72.88 - - [03/Jun/2026:18:03:53 +0200] "POST /xmlrpc.php HTTP/1.1" 200 439 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
132.148.72.88 - - [03/Jun/2026:18:03:55 +0200] "POST /xmlrpc.php HTTP/1.1" 200 225 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64) AppleWebKit/537.36 (KHTML, like
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 15:08:15
(9 hours ago)
(mod_security) mod_security (id:225170) triggered by 132.148.72.88 (88.72.148.132.host.secureserver. ...
show more
(mod_security) mod_security (id:225170) triggered by 132.148.72.88 (88.72.148.132.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 11:08:11.079220 2026] [security2:error] [pid 7657:tid 7657] [client 132.148.72.88:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mail.pixacast.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mail.pixacast.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aiBDW98J6xn-7oWCjMPS3wAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Ghost Rider
2026-06-03 14:49:24
(9 hours ago)
RdpGuard detected brute-force attempt on RDP
Brute-Force
Anonymous
2026-06-03 14:20:42
(9 hours ago)
Web attack blocked by Wordfence on kunstkringhenrijonas.nl (2 hits). Reported by CRMON.
Web App Attack
๐ฉ๐ช
todix
2026-06-03 14:00:27
(10 hours ago)
Wordpress brute force or spam attempt from 132.148.72.88
Brute-Force
๐ฉ๐ช
Hazzard
2026-06-03 13:54:21
(10 hours ago)
(wordpress) Failed wordpress login from 132.148.72.88 (US/United States/-/-/88.72.148.132.host.secur ...
show more
(wordpress) Failed wordpress login from 132.148.72.88 (US/United States/-/-/88.72.148.132.host.secureserver.net/[redacted]): (CF_ENABLE)
show less
Brute-Force
๐บ๐ธ
wordpresshosting.solutions
2026-06-03 13:53:48
(10 hours ago)
WordPress login/xmlrpc abuse or user enumeration detected. Evidence: 132.148.72.88 - - [03/Jun/2026: ...
show more
WordPress login/xmlrpc abuse or user enumeration detected. Evidence: 132.148.72.88 - - [03/Jun/2026:13:53:46 +0000] "GET /wp-login.php HTTP/1.1" 200 6665 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:133.0) Gecko/20100101 Firefox/133.0"
132.148.72.88 - - [03/Jun/2026:13:53:47 +0000] "POST /wp-login.php HTTP/1.1" 503 23807 "https://[DOMAIN]/wp-login.php" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:133.0) Gecko/20100101 Firefox/133.0"
show less
Brute-Force
Web App Attack
๐ซ๐ท
Yepngo
2026-06-03 13:38:21
(10 hours ago)
132.148.72.88 - - [03/Jun/2026:15:38:21 +0200] "POST /xmlrpc.php HTTP/2.0" 200 408 "-" "Mozilla/5.0 ...
show more
132.148.72.88 - - [03/Jun/2026:15:38:21 +0200] "POST /xmlrpc.php HTTP/2.0" 200 408 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:133.0) Gecko/20100101 Firefox/133.0"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 13:36:03
(10 hours ago)
(mod_security) mod_security (id:225170) triggered by 132.148.72.88 (88.72.148.132.host.secureserver. ...
show more
(mod_security) mod_security (id:225170) triggered by 132.148.72.88 (88.72.148.132.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 09:35:58.923579 2026] [security2:error] [pid 21015:tid 21015] [client 132.148.72.88:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rodrigoaldecoa.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rodrigoaldecoa.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aiAtvqo-t7GTRRGxopHRmQAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
factor1
2026-06-03 13:10:01
(11 hours ago)
Fail2ban at saturn Reports Abuse.
Brute-Force
Web App Attack
๐ฉ๐ช
netclix.gr
2026-06-03 13:06:29
(11 hours ago)
(wordpress) Failed wordpress login from 132.148.72.88 (US/United States/88.72.148.132.host.secureser ...
show more
(wordpress) Failed wordpress login from 132.148.72.88 (US/United States/88.72.148.132.host.secureserver.net): (CF_ENABLE)
show less
Brute-Force