๐บ๐ธ
jormaster3k
2026-06-23 10:08:30
(2 months ago)
Attack against WordPress
Web App Attack
Anonymous
2026-06-23 01:16:20
(2 months ago)
Web attack blocked by Wordfence on www.museumvalkenburg.nl (83 hits). Reported by CRMON.
Web App Attack
๐ช๐ธ
alferez
2026-06-22 21:41:17
(2 months ago)
Multiple WP Login Attack
Hacking
Exploited Host
Web App Attack
Anonymous
2026-06-22 17:48:20
(2 months ago)
(wordpress) Failed wordpress login from 182.52.149.78 (TH/Thailand/node-thq.pool-182-52.dynamic.nt-i ...
show more
(wordpress) Failed wordpress login from 182.52.149.78 (TH/Thailand/node-thq.pool-182-52.dynamic.nt-isp.net)
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-22 09:16:19
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 182.52.149.78 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 182.52.149.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 22 05:16:11.505803 2026] [security2:error] [pid 28739:tid 28811] [client 182.52.149.78:64819] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.grupojdg.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.grupojdg.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajj9W2mkS4cgJ-YFcLdlhQAAAFA"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-22 08:49:10
(2 months ago)
Attac
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-22 06:56:14
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 182.52.149.78 (node-thq.pool-182-52.dynamic.nt- ...
show more
(mod_security) mod_security (id:225170) triggered by 182.52.149.78 (node-thq.pool-182-52.dynamic.nt-isp.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 22 02:56:07.795868 2026] [security2:error] [pid 19414:tid 19414] [client 182.52.149.78:64983] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.maprada92.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.maprada92.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajjchxH13z1qeussEepArAAAAA0"], referer: https://www.facebook.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-22 01:56:54
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 182.52.149.78 (node-thq.pool-182-52.dynamic.nt- ...
show more
(mod_security) mod_security (id:225170) triggered by 182.52.149.78 (node-thq.pool-182-52.dynamic.nt-isp.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 21:56:50.537660 2026] [security2:error] [pid 22449:tid 22449] [client 182.52.149.78:53491] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.ibeautyexchange.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.ibeautyexchange.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajiWYlNsXPRdzhNVJqAcNQAAAEs"], referer: https://www.google.com/search?q=wordpress
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
eliosbrocchi
2026-06-21 21:12:54
(2 months ago)
2026-06-21T23:12:53.676901+02:00 thunderchild wordpress(www.crislio.com)[2582]: Blocked user enumera ...
show more
2026-06-21T23:12:53.676901+02:00 thunderchild wordpress(www.crislio.com)[2582]: Blocked user enumeration attempt from 182.52.149.78
...
show less
VPN IP
๐ฌ๐ง
noise.agency
2026-06-21 15:31:30
(2 months ago)
(wordpress) Failed wordpress login from 182.52.149.78 (TH/Thailand/-)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-21 13:34:40
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 182.52.149.78 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 182.52.149.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 09:34:35.086171 2026] [security2:error] [pid 19672:tid 19672] [client 182.52.149.78:62310] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.clayrivers.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.clayrivers.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajfoax7MD9jjOTjwO8giNwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
akasolutions.de
2026-06-21 11:56:39
(2 months ago)
(wordpress) Failed wordpress login from 182.52.149.78 (TH/Thailand/-)
Brute-Force
Anonymous
2026-06-21 11:35:08
(2 months ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-21 09:49:49
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 182.52.149.78 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 182.52.149.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 05:49:42.565672 2026] [security2:error] [pid 28129:tid 28129] [client 182.52.149.78:65010] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.impressionsinthread.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.impressionsinthread.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajeztiDAw_ImiORves9_6QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
middelkoopcc
2026-06-21 08:40:06
(2 months ago)
2026-06-21 10:31:46 WordPress login error from 182.52.149.78: invalid_username && 2026-06-21 10:31:5 ...
show more
2026-06-21 10:31:46 WordPress login error from 182.52.149.78: invalid_username && 2026-06-21 10:31:56 WordPress login error from 182.52.149.78: invalid_username && 2026-06-21 10:32:06 WordPress login error from 182.52.149.78: invalid_username && 46 more within 20 minutes
show less
Brute-Force