๐บ๐ธ
TPI-Abuse
2026-09-22 00:59:01
(18 hours ago)
(mod_security) mod_security (id:225170) triggered by 157.230.43.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 157.230.43.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 20:58:56.439006 2026] [security2:error] [pid 13171:tid 13171] [client 157.230.43.92:59550] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||schlegelcreative.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "schlegelcreative.com"] [uri "/wp-json/wp/v2/users"] [unique_id "arHS0GrObzVINBw-85hkBgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-22 00:25:43
(19 hours ago)
This address sent web requests that have no legitimate reading: known exploit paths, path traversal, ...
show more
This address sent web requests that have no legitimate reading: known exploit paths, path traversal, injected payloads, or the signature of a vulnerability scanner. This is an attack on the sites we host, blocked on sight. Please check the machine behind it for an attack tool or malware. | method: GET | path: / | query: author=1 (+3 more) | 2026-09-22 00:25 UTC
show less
Hacking
Web App Attack
๐ณ๐ฑ
debestelapp
2026-09-21 22:45:05
(20 hours ago)
Exploited Host
๐ฉ๐ช
neckaralb-admin.de
2026-09-21 16:52:54
(1 day ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-21 15:14:09
(1 day ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐บ๐ธ
Jason Howell
2026-09-21 12:36:00
(1 day ago)
157.230.43.92 - - [21/Sep/2026:07:35:52 -0500] "GET /wp-login.php HTTP/1.1" 200 5602 "https://www.go ...
show more
157.230.43.92 - - [21/Sep/2026:07:35:52 -0500] "GET /wp-login.php HTTP/1.1" 200 5602 "https://www.google.com/search?q=wordpress" "Mozilla/5.0 (Windows NT 11.0; Win64; x64; rv:118.0) Gecko/20100101 Firefox/118.0"
157.230.43.92 - - [21/Sep/2026:07:35:57 -0500] "POST /wp-login.php HTTP/1.1" 200 1990 "https://qctotaltech.com/wp-login.php" "Mozilla/5.0 (Windows NT 11.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
157.230.43.92 - - [21/Sep/2026:07:35:58 -0500] "GET /wp-admin/index.php HTTP/1.1" 302 446 "https://qctotaltech.com/wp-login.php" "Mozilla/5.0 (Windows NT 11.0; Win64; x64; rv:121.0) Gecko/20100101 Firefox/121.0"
157.230.43.92 - - [21/Sep/2026:07:35:58 -0500] "GET /wp-login.php?redirect_to=https%3A%2F%2Fqctotaltech.com%2Fwp-admin%2Findex.php&reauth=1 HTTP/1.1" 200 7632 "https://qctotaltech.com/wp-login.php" "Mozilla/5.0 (Windows NT 11.0; Win64; x64; rv:121.0) Gecko/20100101 Firefox/121.0"
157.230.43.92 - - [21/Sep/2026:07:35:59 -0500] "POST /wp
...
show less
Web App Attack
๐ฉ๐ช
Sรฉfora Srl
2026-09-21 09:15:30
(1 day ago)
crowdsecurity/http-bf-wordpress_bf detected by CrowdSec
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-09-21 06:35:34
(1 day ago)
WordPress: User enumeration. Pattern match "(author\\\\= (88030-201)
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-21 02:56:22
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 157.230.43.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 157.230.43.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 22:56:17.184962 2026] [security2:error] [pid 23087:tid 23087] [client 157.230.43.92:53317] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rogerheath.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rogerheath.com"] [uri "/wp-json/wp/v2/users"] [unique_id "arCc0cfZEdXgfc2gdB1LSQAAACQ"], referer: https://www.google.com/search?q=wordpress
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
middelkoopcc
2026-09-21 01:53:01
(1 day ago)
2026-09-21 03:48:50 WordPress login error from 157.230.43.92: invalid_username && 2026-09-21 03:49:0 ...
show more
2026-09-21 03:48:50 WordPress login error from 157.230.43.92: invalid_username && 2026-09-21 03:49:05 WordPress login error from 157.230.43.92: invalid_username && 2026-09-21 03:49:20 WordPress login error from 157.230.43.92: invalid_username && 26 more within 20 minutes
show less
Brute-Force
Web App Attack
๐บ๐ธ
bigwavedave
2026-09-21 01:26:00
(1 day ago)
Wordpress Attack
Web App Attack
๐ฉ๐ช
abdubhai
2026-09-20 23:59:27
(1 day ago)
157.230.43.92 - - [21/Sep/2026:0
...
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-20 21:37:37
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 157.230.43.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 157.230.43.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 17:37:31.573698 2026] [security2:error] [pid 1899:tid 1899] [client 157.230.43.92:61431] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gazelleplanner.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gazelleplanner.com"] [uri "/wp-json/wp/v2/users"] [unique_id "arBSG2_Yp8o_g4jw9NxMCwAAAA4"], referer: https://duckduckgo.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
abdubhai
2026-09-20 13:44:07
(2 days ago)
157.230.43.92 - - [20/Sep/2026:1
...
Brute-Force
๐ฉ๐ช
konseptit
2026-09-20 08:54:38
(2 days ago)
(wordpress) Failed wordpress login from 157.230.43.92 (SG/Singapore/-)
Brute-Force