|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 148.72.174.54 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 148.72.174.54 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 25 15:29:27.515652 2023] [security2:error] [pid 18143] [client 148.72.174.54:46548] [client 148.72.174.54] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kamermanhome.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kamermanhome.com"] [uri "/blog/wp-json/wp/v2/users/"] [unique_id "ZYnmJ6Iaj3janvET3JsSOQAAAAE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 148.72.174.54 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 148.72.174.54 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 23 21:36:47.342496 2023] [security2:error] [pid 21039] [client 148.72.174.54:34976] [client 148.72.174.54] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||m2pg.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "m2pg.net"] [uri "/blog/wp-json/wp/v2/users/"] [unique_id "ZYeZPyXNXP2kj28Rk4CqdQAAACk"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 148.72.174.54 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 148.72.174.54 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 27 12:37:31.971645 2023] [security2:error] [pid 30611] [client 148.72.174.54:52938] [client 148.72.174.54] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||varalla.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "varalla.com"] [uri "/blog/wp-json/wp/v2/users/"] [unique_id "ZWTT2_dqi5yfw6SxK0RugAAAAAs"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฉ๐ช
ps-center
|
|
DIS: Web Attack GET /wp-login.php
GET /wp-login.php
|
Web Spam
Hacking
Bad Web Bot
Web App Attack
|
|
|
๐จ๐ฆ
nyclee.net
|
|
WebServer Vunerability Probe
...
|
Hacking
Web App Attack
|
|
|
๐ต๐ฑ
strefapi_com
|
|
148.72.174.54 - - [25/Oct/2023:15:01:17 +0000] "GET //wp-includes/wlwmanifest.xml HTTP/2.0" 404 4049 ...
show more
148.72.174.54 - - [25/Oct/2023:15:01:17 +0000] "GET //wp-includes/wlwmanifest.xml HTTP/2.0" 404 4049 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36"
148.72.174.54 - - [25/Oct/2023:15:01:17 +0000] "GET //xmlrpc.php?rsd HTTP/2.0" 404 4049 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36"
148.72.174.54 - - [25/Oct/2023:15:01:18 +0000] "GET //blog/wp-includes/wlwmanifest.xml HTTP/2.0" 404 4049 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36"
...
show less
|
Hacking
Brute-Force
Web App Attack
|
|
|
Anonymous
|
|
(wordpress) Failed wordpress XMLRPC 148.72.174.54 (US/United States/-)
|
Brute-Force
|
|
|
Anonymous
|
|
(wordpress) Failed wordpress login from 148.72.174.54 (US/United States/-)
|
Brute-Force
|
|
|
๐บ๐ธ
mnsf
|
|
Login Too Frequent (9)
|
Brute-Force
Web App Attack
|
|
|
๐บ๐ธ
Major Hostility
|
|
"GET /wp-includes/wlwmanifest.xml HTTP/1.1" 404
"GET /xmlrpc.php?rsd HTTP/1.1" 403
"GET /blog/wp-inc ...
show more
"GET /wp-includes/wlwmanifest.xml HTTP/1.1" 404
"GET /xmlrpc.php?rsd HTTP/1.1" 403
"GET /blog/wp-includes/wlwmanifest.xml HTTP/1.1" 404
"GET /web/wp-includes/wlwmanifest.xml HTTP/1.1" 404
"GET /wordpress/wp-includes/wlwmanifest.xml HTTP/1.1" 404
"GET /website/wp-includes/wlwmanifest.xml HTTP/1.1" 404
"GET /wp/wp-includes/wlwmanifest.xml HTTP/1.1" 404
"GET /news/wp-includes/wlwmanifest.xml HTTP/1.1" 404
"GET /2020/wp-includes/wlwmanifest.xml HTTP/1.1" 404
"GET /2019/wp-includes/wlwmanifest.xml HTTP/1.1" 404
"GET /shop/wp-includes/wlwmanifest.xml HTTP/1.1" 404
"GET /wp1/wp-includes/wlwmanifest.xml HTTP/1.1" 404
"GET /test/wp-includes/wlwmanifest.xml HTTP/1.1" 404
"GET /wp2/wp-includes/wlwmanifest.xml HTTP/1.1" 404
%2
show less
|
Web App Attack
|
|
|
๐ต๐ฑ
strefapi_com
|
|
148.72.174.54 - - [19/Oct/2023:21:53:57 +0000] "GET //wp-includes/wlwmanifest.xml HTTP/2.0" 404 4049 ...
show more
148.72.174.54 - - [19/Oct/2023:21:53:57 +0000] "GET //wp-includes/wlwmanifest.xml HTTP/2.0" 404 4049 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36"
148.72.174.54 - - [19/Oct/2023:21:53:57 +0000] "GET //xmlrpc.php?rsd HTTP/2.0" 404 4049 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36"
148.72.174.54 - - [19/Oct/2023:21:53:58 +0000] "GET //blog/wp-includes/wlwmanifest.xml HTTP/2.0" 404 4049 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36"
...
show less
|
Hacking
Brute-Force
Web App Attack
|
|
|
Anonymous
|
|
(wordpress) Failed wordpress login from 148.72.174.54 (US/United States/-)
|
Brute-Force
|
|
|
๐ฉ๐ช
corthorn
|
|
148.72.174.54 - - [19/Oct/2023:18:29:07 +0200] "POST //xmlrpc.php HTTP/1.1" 403 421 "-" "Mozilla/5.0 ...
show more
148.72.174.54 - - [19/Oct/2023:18:29:07 +0200] "POST //xmlrpc.php HTTP/1.1" 403 421 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36"
...
show less
|
Brute-Force
|
|
|
๐บ๐ธ
octageeks.com
|
|
Wordpress malicious attack:[octawp]
|
Web App Attack
|
|
|
๐บ๐ธ
octageeks.com
|
|
Wordpress malicious attack:[octawp]
|
Web App Attack
|
|