๐ฆ๐บ
paulshipley.com.au
2026-07-01 19:14:52
(34 minutes ago)
support.paulshipley.com.au:443 141.94.240.62 - - [02/Jul/2026:05:14:51 +1000] "GET /wp/wp-login.php ...
show more
support.paulshipley.com.au:443 141.94.240.62 - - [02/Jul/2026:05:14:51 +1000] "GET /wp/wp-login.php HTTP/1.1" 404 26806 "-" "Mozilla/5.0 (Windows NT 10.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ซ๐ท
Yepngo
2026-07-01 19:12:20
(37 minutes ago)
141.94.240.62 - - [01/Jul/2026:21:12:20 +0200] "POST /wp-login.php HTTP/2.0" 200 11368 "https://yepn ...
show more
141.94.240.62 - - [01/Jul/2026:21:12:20 +0200] "POST /wp-login.php HTTP/2.0" 200 11368 "https://yepngo.com/wp-login.php" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
...
show less
Brute-Force
Web App Attack
๐จ๐ฟ
plzenskypruvodce.cz
2026-07-01 19:07:51
(41 minutes ago)
2026-07-01T21:07:50.587952+02:00 web wordpress(varhanykolin.cz)[2889654]: Immediately block connecti ...
show more
2026-07-01T21:07:50.587952+02:00 web wordpress(varhanykolin.cz)[2889654]: Immediately block connections from 141.94.240.62
...
show less
Brute-Force
๐ฉ๐ช
bsoft.de
2026-07-01 18:53:09
(56 minutes ago)
141.94.240.62 - - [01/Jul/2026:18:07:17 +0200] "GET /wp-login.php HTTP/1.1" 404 61037 "-" "Mozilla/5 ...
show more
141.94.240.62 - - [01/Jul/2026:18:07:17 +0200] "GET /wp-login.php HTTP/1.1" 404 61037 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 11_7_10) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
141.94.240.62 - - [01/Jul/2026:20:24:36 +0200] "GET /wp-login.php HTTP/1.1" 404 74348 "https://bolte.de/wp-login.php" "Mozilla/5.0 (X11; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
141.94.240.62 - - [01/Jul/2026:20:53:08 +0200] "GET /wp-login.php HTTP/1.1" 404 74306 "https://bolte.de/wp-login.php" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:133.0) Gecko/20100101 Firefox/133.0"
show less
Web App Attack
๐ฉ๐ช
Marc
2026-07-01 18:43:50
(1 hour ago)
141.94.240.62 - - [01/Jul/2026:20:04:49 +0200] "GET /wp-login.php HTTP/2.0" 200 15981 "https://wasch ...
show more
141.94.240.62 - - [01/Jul/2026:20:04:49 +0200] "GET /wp-login.php HTTP/2.0" 200 15981 "https://wasch-arena.de/wp-login.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36" 141.94.240.62 - - [01/Jul/2026:20:04:50 +0200] "GET /wp-login.php HTTP/2.0" 200 15677 "https://wasch-arena.de/wp-login.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36" 141.94.240.62 - - [01/Jul/2026:20:31:39 +0200] "GET /wp-login.php HTTP/2.0" 200 15981 "https://wasch-arena.de/wp-login.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_7_4) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36" 141.94.240.62 - - [01/Jul/2026:20:31:40 +0200] "GET /wp-login.php HTTP/2.0" 200 15676 "https://wasch-arena.de/wp-login.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_7_4) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36" 141.94.240.62 - - [01/Jul/2026:20:43:50 +0200] "GET /wp-login.
show less
Brute-Force
Web App Attack
๐ฉ๐ช
dbmwebdesign
2026-07-01 18:00:50
(1 hour ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
๐ฉ๐ช
Nerdscave Hosting
2026-07-01 17:52:29
(1 hour ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
Anonymous
2026-07-01 17:51:10
(1 hour ago)
[Wed Jul 01 19:51:08.578980 2026] [authz_core:error] [pid 44745:tid 44823] [client 141.94.240.62:456 ...
show more
[Wed Jul 01 19:51:08.578980 2026] [authz_core:error] [pid 44745:tid 44823] [client 141.94.240.62:45642] AH01630: client denied by server configuration: /var/www/cimt-precision/wp-login.php
[Wed Jul 01 19:51:08.639406 2026] [authz_core:error] [pid 44745:tid 44815] [client 141.94.240.62:45642] AH01630: client denied by server configuration: /var/www/cimt-precision/wp-login.php, referer: https://pre.cimt-precision.de/wp-login.php
...
show less
Brute-Force
Web App Attack
๐ฉ๐ช
F242
2026-07-01 17:50:44
(1 hour ago)
Wordpress Login or XMLRPC abuse
Web App Attack
๐ฉ๐ช
rh24
2026-07-01 17:36:06
(2 hours ago)
(wordpress) Failed wordpress login from 141.94.240.62 (FR/France/factoriadeapps.com): (CF_ENABLE)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-01 17:17:26
(2 hours ago)
(mod_security) mod_security (id:225170) triggered by 141.94.240.62 (factoriadeapps.com): 1 in the la ...
show more
(mod_security) mod_security (id:225170) triggered by 141.94.240.62 (factoriadeapps.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 01 13:17:20.473678 2026] [security2:error] [pid 14786:tid 14786] [client 141.94.240.62:60324] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.daisydoesoap.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.daisydoesoap.com"] [uri "/wp-json/wp/v2/users"] [unique_id "akVLoAiAICJu9R7ahyyj5wAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐บ
szasa
2026-07-01 17:16:06
(2 hours ago)
2026/07/01 19:16:05 [error] 4177413#4177413: *571351 access forbidden by rule, client: 141.94.240.62 ...
show more
2026/07/01 19:16:05 [error] 4177413#4177413: *571351 access forbidden by rule, client: 141.94.240.62, server: datamentor.hu, request: "GET /wp-login.php HTTP/2.0", host: "datamentor.hu"
2026/07/01 19:16:05 [error] 4177413#4177413: *571351 access forbidden by rule, client: 141.94.240.62, server: datamentor.hu, request: "POST /wp-login.php HTTP/2.0", host: "datamentor.hu", referrer: "https://datamentor.hu/wp-login.php"
2026/07/01 19:16:05 [error] 4177413#4177413: *571351 access forbidden by rule, client: 141.94.240.62, server: datamentor.hu, request: "POST /wp-login.php HTTP/2.0", host: "datamentor.hu", referrer: "https://datamentor.hu/wp-login.php"
...
show less
Web App Attack
Anonymous
2026-07-01 17:07:30
(2 hours ago)
141.94.240.62 - - [01/Jul/2026:19:07:25 +0200] "GET /wp-login.php HTTP/2.0" 200 3999 "-" "Mozilla/5. ...
show more
141.94.240.62 - - [01/Jul/2026:19:07:25 +0200] "GET /wp-login.php HTTP/2.0" 200 3999 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐จ๐ญ
4server
2026-07-01 17:03:59
(2 hours ago)
[WedJul0119:03:53.2878302026][security2:error][pid454691:tid454708][client141.94.240.62:0]ModSecurit ...
show more
[WedJul0119:03:53.2878302026][security2:error][pid454691:tid454708][client141.94.240.62:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"larademarco.ch\"][uri\"/wp-login.php\"][unique_id\"akVIeQ6wgomm7EG6NeHt0AAAAM8\"]\,referer:https://larademarco.ch/wp-login.php
show less
Hacking
Web App Attack
๐บ๐ธ
Penny Packer
2026-07-01 16:22:29
(3 hours ago)
Fail2Ban apache-tripwires
Web App Attack