๐ฑ๐ป
garmtech.com
2026-09-20 09:08:53
(4 hours ago)
Attempted access to sensitive endpoint (/license.txt) detected. Automated scan or unauthorized probi ...
show more
Attempted access to sensitive endpoint (/license.txt) detected. Automated scan or unauthorized probing.
show less
Web App Attack
๐ณ๐ฑ
MacLotsen
2026-09-20 05:20:14
(8 hours ago)
178.128.210.160 - - [20/Sep/2026:07:15:52 +0200] "POST /wp-login.php HTTP/1.1" 200 4415 "https://www ...
show more
178.128.210.160 - - [20/Sep/2026:07:15:52 +0200] "POST /wp-login.php HTTP/1.1" 200 4415 "https://www.afkewiersma.nl/wp-login.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7; rv:119.0) Gecko/20100101 Firefox/119.0"
178.128.210.160 - - [20/Sep/2026:07:16:30 +0200] "POST /wp-login.php HTTP/1.1" 200 4414 "https://www.afkewiersma.nl/wp-login.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_6_1) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.2 Safari/605.1.15"
178.128.210.160 - - [20/Sep/2026:07:16:57 +0200] "POST /wp-login.php HTTP/1.1" 200 4414 "https://www.afkewiersma.nl/wp-login.php" "Mozilla/5.0 (Windows NT 11.0; Win64; x64; rv:121.0) Gecko/20100101 Firefox/121.0"
178.128.210.160 - - [20/Sep/2026:07:17:19 +0200] "POST /wp-login.php HTTP/1.1" 200 4416 "https://www.afkewiersma.nl/wp-login.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/118.0.0.0 Safari/537.36"
178.128.210.160 - - [20/Sep/2026:07:18:00 +0200] "POST /wp-login.php HTTP/1
...
show less
Web App Attack
Brute-Force
๐ณ๐ฑ
Site.eu
2026-09-19 15:50:02
(22 hours ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐ฉ๐ช
neckaralb-admin.de
2026-09-19 15:02:59
(22 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
SX Communications
2026-09-19 06:36:08
(1 day ago)
Blocked abusive HTTP application-layer DoS / botnet traffic from 178.128.210.160: traffic from this ...
show more
Blocked abusive HTTP application-layer DoS / botnet traffic from 178.128.210.160: traffic from this address continues high-cost dynamic page and feed requests at abusive rates via TCP/HTTPS despite edge block responses. Likely compromised end-user host.
show less
DDoS Attack
Bad Web Bot
Exploited Host
๐ฆ๐บ
Klaverstyn
2026-09-19 06:12:08
(1 day ago)
Excessive HTTP request rate
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 20:06:05
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 178.128.210.160 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 178.128.210.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 16:05:56.222584 2026] [security2:error] [pid 21025:tid 21025] [client 178.128.210.160:61695] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.mariarozella.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.mariarozella.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aq2ZpMdT4RRmM3erWi506wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
dbmwebdesign
2026-09-18 19:25:24
(1 day ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
๐ฉ๐ช
pscriptos
2026-09-18 18:19:37
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-admin-interface-probing
Web App Attack
Hacking
๐ฉ๐ช
BlueWire Hosting
2026-09-18 11:12:46
(2 days ago)
Bad bot ignoring robot.txt
Bad Web Bot
๐ฉ๐ช
LRob
2026-09-17 16:20:38
(2 days ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: /wp-login.php | 2026-09-17 16:20 UTC
show less
Hacking
Web App Attack
๐ป๐ณ
scuslon
2026-09-17 05:57:04
(3 days ago)
RdpGuard detected brute-force attempt on RDP
Brute-Force
๐ณ๐ฑ
Site.eu
2026-09-17 01:01:17
(3 days ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐ฉ๐ช
Vegascosmetics
2026-09-16 09:42:36
(4 days ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after first-seen suspicion / AbuseIPDB repu ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after first-seen suspicion / AbuseIPDB reputation policy (no URL signature). Evidence: Suspicion-Ban (Score 75>=65, Abuse 81, NonEU, first-seen)
show less
Hacking
Exploited Host
Web App Attack
๐บ๐ฆ
Olexiy Backend
2026-09-16 08:07:53
(4 days ago)
178.128.210.160
...
Bad Web Bot
Web App Attack