๐ณ๐ฟ
Antinson
2026-07-27 09:21:39
(1 day ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐บ๐ธ
mnsf
2026-07-27 09:05:31
(1 day ago)
Abuse Detected (13)
Brute-Force
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-07-27 08:45:53
(1 day ago)
Try to access /opblaasbare-flessen//xmlrpc.php?rsd
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 08:45:45
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 136.67.46.199 (199.46.67.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 136.67.46.199 (199.46.67.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 04:45:38.387737 2026] [security2:error] [pid 3559766:tid 3559766] [client 136.67.46.199:55599] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||oogeothermal.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "oogeothermal.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "amcasinXhhG35s4lrnllMgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-07-27 08:42:00
(1 day ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐บ๐ธ
OceanTreasure
2026-07-27 08:37:21
(1 day ago)
tcp/443; Windows Live Writer manifest enumeration: "GET //wp-includes/wlwmanifest.xml" @ 2026-07-27T ...
show more
tcp/443; Windows Live Writer manifest enumeration: "GET //wp-includes/wlwmanifest.xml" @ 2026-07-27T08:30:34Z [proxy]
show less
Brute-Force
๐บ๐ธ
kosada.com
2026-07-27 08:36:28
(1 day ago)
Web vulnerability probing: /wordpress/wp-includes/wlwmanifest.xml
Web App Attack
๐ฎ๐น
CoreTech srl
2026-07-27 08:31:10
(1 day ago)
CloudLinux/Plesk alert - host=cloudlinux dominio=nubys.it ip=136.67.46.199 richieste=291 rischio=ALT ...
show more
CloudLinux/Plesk alert - host=cloudlinux dominio=nubys.it ip=136.67.46.199 richieste=291 rischio=ALTO score=12 motivi=molte_richieste,molte_post,path_sospetti,poco_statico,dinamico cat_id=21,19,18 periodo=10min
show less
Web App Attack
Bad Web Bot
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-27 08:29:39
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 136.67.46.199 (199.46.67.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 136.67.46.199 (199.46.67.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 04:29:35.250277 2026] [security2:error] [pid 23538:tid 23538] [client 136.67.46.199:51215] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||obleak.doublenaughtspycar.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "obleak.doublenaughtspycar.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "amcW73PAJVGUadPkqDj40AAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
yitzhaq
2026-07-27 08:21:51
(1 day ago)
136.67.46.199 - - [27/Jul/2026:10:21:48 +0200] "GET / HTTP/1.1" 301 548 "-" "Mozilla/5.0 (Windows NT ...
show more
136.67.46.199 - - [27/Jul/2026:10:21:48 +0200] "GET / HTTP/1.1" 301 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36"
136.67.46.199 - - [27/Jul/2026:10:21:49 +0200] "GET / HTTP/1.1" 200 10052 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36"
136.67.46.199 - - [27/Jul/2026:10:21:49 +0200] "GET //wp-includes/wlwmanifest.xml HTTP/1.1" 404 513 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36"
136.67.46.199 - - [27/Jul/2026:10:21:49 +0200] "GET //xmlrpc.php?rsd HTTP/1.1" 404 640 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36"
136.67.46.199 - - [27/Jul/2026:10:21:50 +0200] "GET / HTTP/1.1" 200 6285 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114
show less
Web App Attack
Hacking
๐ง๐พ
lns.bz
2026-07-27 08:20:05
(1 day ago)
Too many 404 requests [BY]
Web App Attack
๐ธ๐ช
vaia.cloud
2026-07-27 08:20:02
(1 day ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
๐ฉ๐ช
joharikop
2026-07-27 08:15:21
(1 day ago)
Malformed HTTP request or known bad user agent detected by fail2ban on nginx reverse proxy
Bad Web Bot
Anonymous
2026-07-27 07:57:46
(1 day ago)
136.67.46.199 - - [27/Jul/2026:09:57:37 +0200] "GET / HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (Windows ...
show more
136.67.46.199 - - [27/Jul/2026:09:57:37 +0200] "GET / HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36"
136.67.46.199 - - [27/Jul/2026:09:57:38 +0200] "GET / HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36"
136.67.46.199 - - [27/Jul/2026:09:57:38 +0200] "GET /wp-includes/wlwmanifest.xml HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36"
136.67.46.199 - - [27/Jul/2026:09:57:39 +0200] "GET /xmlrpc.php?rsd HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36"
136.67.46.199 - - [27/Jul/2026:09:57:39 +0200] "GET / HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.438
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
grassau.com
2026-07-27 07:57:11
(1 day ago)
(wordpress) Failed wordpress login from 136.67.46.199 (US/United States/Oregon/The Dalles/199.46.67. ...
show more
(wordpress) Failed wordpress login from 136.67.46.199 (US/United States/Oregon/The Dalles/199.46.67.136.bc.googleusercontent.com)
show less
Brute-Force