๐ฑ๐ป
garmtech.com
2025-11-23 16:31:23
(6 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 18-31.178.128.96.19.web-spamme ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 18-31.178.128.96.19.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐ซ๐ท
dynamix
2025-11-07 04:19:13
(7 months ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
Linuxmalwarehuntingnl
2024-07-01 10:39:02
(1 year ago)
Unauthorized connection attempt
Brute-Force
๐บ๐ธ
MortimerCat
2024-05-15 11:13:16
(2 years ago)
Unauthorised use of XMLRPC
Web App Attack
๐บ๐ธ
deskpass.com
2024-05-15 10:29:39
(2 years ago)
GET /xmlrpc.php
Web App Attack
๐บ๐ธ
jcbriar
2024-05-15 09:54:46
(2 years ago)
Searching for vulnerable scripts
Hacking
Web App Attack
๐ณ๐ฑ
Roderic
2024-05-15 09:21:36
(2 years ago)
(mod_security) mod_security triggered on hostname [redacted] 178.128.96.19 (SG/Singapore/-)
SQL Injection
๐บ๐ธ
RidgeStar
2024-05-15 08:07:53
(2 years ago)
2024-05-15T01:07:52-07:00: http://ekcsra.org/wp/wp-includes/wlwmanifest.xml
2024-05-15T01:07:50-07:0 ...
show more
2024-05-15T01:07:52-07:00: http://ekcsra.org/wp/wp-includes/wlwmanifest.xml
2024-05-15T01:07:50-07:00: http://ekcsra.org/web/wp-includes/wlwmanifest.xml
2024-05-15T01:07:50-07:00: http://ekcsra.org/wordpress/wp-includes/wlwmanifest.xml
2024-05-15T01:07:49-07:00: http://ekcsra.org/blog/wp-includes/wlwmanifest.xml
2024-05-15T01:07:46-07:00: http://ekcsra.org/wp-includes/wlwmanifest.xml
show less
Hacking
Web App Attack
๐ฎ๐ช
Jim Keir
2024-05-15 08:03:53
(2 years ago)
2024-05-15 08:03:53 178.128.96.19 File scanning, blocking 178.128.96.19 for 5 minutes
Web App Attack
๐ฉ๐ช
stinpriza
2024-05-14 16:13:27
(2 years ago)
WP Authentication attempt for unknown user
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-05-14 14:42:41
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 178.128.96.19 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 178.128.96.19 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 14 10:42:34.946979 2024] [security2:error] [pid 4111914] [client 178.128.96.19:60212] [client 178.128.96.19] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||renjunews.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "renjunews.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZkN4WkMZmxafdHr61UkvTwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-05-14 08:55:07
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 178.128.96.19 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 178.128.96.19 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 14 04:55:00.979213 2024] [security2:error] [pid 24950:tid 47811355854592] [client 178.128.96.19:65060] [client 178.128.96.19] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||aafm.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "aafm.us"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZkMm5EXRvyUOErNXhpogTwAAAE8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-05-14 07:26:33
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 178.128.96.19 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 178.128.96.19 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 14 03:26:25.675079 2024] [security2:error] [pid 20219] [client 178.128.96.19:54668] [client 178.128.96.19] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.rvlinks.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.rvlinks.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZkMSIb16RPnh994wJR0ofAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
weblite
2024-05-14 07:25:57
(2 years ago)
WP_XMLRPC_ABUSE
Brute-Force
Web App Attack
๐ฆ๐บ
Bay13
2024-05-14 06:50:26
(2 years ago)
f2b http-redirect
Hacking
Web App Attack