๐ฌ๐ง
Comberton
2026-10-01 10:21:38
(1 day ago)
Ban via by F2B apache-wordfence jail
Brute-Force
๐ฌ๐ง
Comberton
2026-09-29 00:24:10
(4 days ago)
Ban via by F2B apache-wordfence jail
Brute-Force
๐ฉ๐ช
ghostwarriors
2026-09-28 16:20:08
(4 days ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-09-28 16:11:13
(4 days ago)
139.212.249.242 - - [28/Sep/2026:18:10:59 +0200] "GET /wp-content/plugins/buttonizer-multifunctional ...
show more
139.212.249.242 - - [28/Sep/2026:18:10:59 +0200] "GET /wp-content/plugins/buttonizer-multifunctional-button/readme.txt HTTP/1.1" 404 46898 "http://[site]/wp-content/plugins/buttonizer-multifunctional-button/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
139.212.249.242 - - [28/Sep/2026:18:11:04 +0200] "GET /wp-content/plugins/stream/readme.txt HTTP/1.1" 404 42923 "http://[site]/wp-content/plugins/stream/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
139.212.249.242 - - [28/Sep/2026:18:11:05 +0200] "GET /wp-content/plugins/woocommerce-germanized/readme.txt HTTP/1.1" 404 42923 "http://[site]/wp-content/plugins/woocommerce-germanized/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
139.212.249.242 - - [28/Sep/2026:18:11:06 +0200] "GET /wp-content/plugins/wp-job-manag
show less
Web App Attack
Hacking
๐บ๐ธ
IndigoRidge
2026-09-28 14:44:50
(4 days ago)
139.212.249.242 - - [28/Sep/2026:10:44:36 -0400] "GET /wp-content/plugins/social-warfare/readme.txt ...
show more
139.212.249.242 - - [28/Sep/2026:10:44:36 -0400] "GET /wp-content/plugins/social-warfare/readme.txt HTTP/1.1" 404 32955 "http://thecarolinalens.com/wp-content/plugins/social-warfare/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
139.212.249.242 - - [28/Sep/2026:10:44:39 -0400] "GET /wp-content/plugins/custom-icons-for-elementor/README.txt HTTP/1.1" 404 32955 "http://thecarolinalens.com/wp-content/plugins/custom-icons-for-elementor/README.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
139.212.249.242 - - [28/Sep/2026:10:44:43 -0400] "GET /wp-content/plugins/sticky-buttons/Readme.txt HTTP/1.1" 404 32955 "http://thecarolinalens.com/wp-content/plugins/sticky-buttons/Readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
139.212.249.242 - - [28/Sep/2026:10:44:47 -0400] "GET /wp-con
...
show less
Web App Attack
๐บ๐ธ
IndigoRidge
2026-09-26 19:36:17
(6 days ago)
139.212.249.242 - - [26/Sep/2026:15:36:12 -0400] "GET /wp-content/plugins/wa-sticky-button/readme.tx ...
show more
139.212.249.242 - - [26/Sep/2026:15:36:12 -0400] "GET /wp-content/plugins/wa-sticky-button/readme.txt HTTP/1.1" 404 34204 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
139.212.249.242 - - [26/Sep/2026:15:36:13 -0400] "GET /wp-content/plugins/wc-multivendor-membership/readme.txt HTTP/1.1" 404 34204 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
139.212.249.242 - - [26/Sep/2026:15:36:14 -0400] "GET /wp-content/plugins/wck-custom-fields-and-custom-post-types-creator/readme.txt HTTP/1.1" 404 34204 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
139.212.249.242 - - [26/Sep/2026:15:36:15 -0400] "GET /wp-content/plugins/weforms/readme.txt HTTP/1.1" 404 34204 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
139.212.249.242 - - [
...
show less
Web App Attack
๐ฉ๐ช
LRob
2026-09-26 16:20:18
(6 days ago)
This address keeps sending requests that the sites' own web application firewall refuses โ attack pa ...
show more
This address keeps sending requests that the sites' own web application firewall refuses โ attack payloads, forbidden paths โ again and again. One refusal is a mistake; a series is an attack tool at work. Blocked; please check the machine behind it. | method: GET | path: /wp-content/plugins/navz-photo-gallery/readme.txt (+1 more) | 2026-09-26 16:20 UTC
show less
Web App Attack
Hacking
๐ฉ๐ช
LRob
2026-09-25 07:52:52
(1 week ago)
This address keeps sending requests that the sites' own web application firewall refuses โ attack pa ...
show more
This address keeps sending requests that the sites' own web application firewall refuses โ attack payloads, forbidden paths โ again and again. One refusal is a mistake; a series is an attack tool at work. Blocked; please check the machine behind it. | method: GET | path: /wp-content/plugins/conditional-payments-for-woocommerce/readme.txt (+2 more) | 2026-09-25 07:52 UTC
show less
Web App Attack
Hacking
๐บ๐ธ
IndigoRidge
2026-09-24 17:08:24
(1 week ago)
139.212.249.242 - - [24/Sep/2026:13:08:10 -0400] "GET /wp-content/plugins/facebook-pagelike-widget/r ...
show more
139.212.249.242 - - [24/Sep/2026:13:08:10 -0400] "GET /wp-content/plugins/facebook-pagelike-widget/readme.txt HTTP/1.1" 404 35090 "https://www.coastalacademyofrealestate.com/wp-content/plugins/facebook-pagelike-widget/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
139.212.249.242 - - [24/Sep/2026:13:08:12 -0400] "GET /wp-content/plugins/testimonial-free/readme.txt HTTP/1.1" 404 35090 "https://www.coastalacademyofrealestate.com/wp-content/plugins/testimonial-free/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
139.212.249.242 - - [24/Sep/2026:13:08:14 -0400] "GET /wp-content/plugins/blog-designer-pack/readme.txt HTTP/1.1" 404 35090 "https://www.coastalacademyofrealestate.com/wp-content/plugins/blog-designer-pack/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
139.2
...
show less
Web App Attack
๐ฉ๐ช
LRob
2026-09-24 14:53:44
(1 week ago)
This address keeps sending requests that the sites' own web application firewall refuses โ attack pa ...
show more
This address keeps sending requests that the sites' own web application firewall refuses โ attack payloads, forbidden paths โ again and again. One refusal is a mistake; a series is an attack tool at work. Blocked; please check the machine behind it. | method: GET | path: /wp-content/plugins/blackhole-bad-bots/readme.txt (+4 more) | 2026-09-24 14:53 UTC
show less
Web App Attack
Hacking
๐บ๐ธ
mnsf
2026-09-22 21:05:17
(1 week ago)
Abuse Detected (29)
Brute-Force
Web App Attack
Anonymous
2026-09-21 20:11:58
(1 week ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ธ๐ช
vaia.cloud
2026-09-21 03:10:04
(1 week ago)
crowdsecurity/http-wordpress-scan
Brute-Force
Web App Attack
๐บ๐ธ
IndigoRidge
2026-09-19 15:51:42
(1 week ago)
139.212.249.242 - - [19/Sep/2026:11:51:32 -0400] "GET /wp-content/plugins/wp-migrate-db/readme.txt H ...
show more
139.212.249.242 - - [19/Sep/2026:11:51:32 -0400] "GET /wp-content/plugins/wp-migrate-db/readme.txt HTTP/1.1" 404 47571 "https://www.greenvilleagent247.com/wp-content/plugins/wp-migrate-db/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
139.212.249.242 - - [19/Sep/2026:11:51:34 -0400] "GET /wp-content/plugins/leadin/readme.txt HTTP/1.1" 404 47571 "https://www.greenvilleagent247.com/wp-content/plugins/leadin/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
139.212.249.242 - - [19/Sep/2026:11:51:35 -0400] "GET /wp-content/plugins/table-of-contents-plus/readme.txt HTTP/1.1" 404 47571 "https://www.greenvilleagent247.com/wp-content/plugins/table-of-contents-plus/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
139.212.249.242 - - [19/Sep/2026:11:51:38 -0400] "GET /wp-conte
...
show less
Web App Attack
Anonymous
2026-09-19 14:17:00
(1 week ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking