๐ซ๐ท
Feelautom
2026-09-17 13:26:09
(5 days ago)
[FeelAutom Auto-Ban] PathScan: /wp-includes/wlwmanifest.xml (Score: 200)
Port Scan
Anonymous
2026-09-17 13:11:48
(5 days ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: RO, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: RO, Attack patterns: WordPress scanning
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-09-17 12:33:04
(6 days ago)
Probing websites for vulnerabilities
Web App Attack
๐ต๐ฑ
sefinek.net
2026-09-17 12:32:40
(6 days ago)
Triggered Cloudflare WAF (firewallCustom) from RO.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (G ...
show more
Triggered Cloudflare WAF (firewallCustom) from RO.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (GET) | Endpoint: / | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36 โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ต๐ฑ
Budyn
2026-09-17 11:20:32
(6 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: status.dont-eat-the-pudding.online | URI: //xmlrpc.php | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36 | BODY: <?xml version="1.0"?><methodCall><methodName>system.multicall</methodName><params><param><value><array><data> <value><struct><member><name>methodName</name><value><string>wp.getUsersBlogs</string></value></member><member><name>params</name><value><array><data><value><array><data><value><string>admin</string
show less
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-17 10:10:03
(6 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-09-17 05:13:27
(6 days ago)
16 attacks on PHP URLs:
GET /domain.cgi?id=261/xmlrpc.php?rsd HTTP/1.1
Web App Attack
๐จ๐ฆ
zXero
2026-09-17 01:28:23
(6 days ago)
Fail2Ban automatic report - jail: no-wordpress
Brute-Force
SSH
DDoS Attack
๐ณ๐ฑ
Site.eu
2026-09-17 01:00:28
(6 days ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐บ๐ธ
infra-monitor
2026-09-17 00:00:07
(6 days ago)
Automated ban via infra-monitor: wordpress-probe, wp-sensitive-paths
Web App Attack
๐ฉ๐ช
AetherFox
2026-09-16 23:09:40
(6 days ago)
AetherFox VoidGuard detected: [Wed Sep 16 23:09:38.583897 2026] [security2:error] [pid 2603177:tid 2 ...
show more
AetherFox VoidGuard detected: [Wed Sep 16 23:09:38.583897 2026] [security2:error] [pid 2603177:tid 2603220] [client 185.19.40.167:50773] [client 185.19.40.167] ModSecurity: Access denied with code 403 (phase 1). Match of "ipMatch 23.88.112.221" against "REMOTE_ADDR" required. [file "/etc/modsecurity/AetherFox.conf"] [line "34"] [id "100053"] [msg "wp-includes access blocked by AetherFox VoidGuard"] [hostname "draconigen.net"] [uri "/wp-includes/wlwmanifest.xml"] [unique_id "aqshshKEMJxUoOVnn0cp8AAAAA4"]
[Wed Sep 16 23:09:38.934974 2026] [security2:error] [pid 2603177:tid 2603224] [client 185.19.40.167:51209] [client 185.19.40.167] ModSecurity: Access denied with code 403 (phase 1). Match of "ipMatch 23.88.112.221" against "REMOTE_ADDR" required. [file "/etc/modsecurity/AetherFox.conf"] [line "34"] [id "100053"] [msg "wp-includes access blocked by AetherFox VoidGuard"] [hostname "draconigen.net"] [uri "/blog/wp-includes/wlwmanifest.xml"] [unique_id "aqshshKEMJxUoOVnn
...
show less
Hacking
Bad Web Bot
๐ณ๐ฑ
e.fierstra
2026-09-16 23:01:05
(6 days ago)
excessive HTTP 404 errors
Bad Web Bot
๐ซ๐ท
SpaceHost-Server
2026-09-16 22:17:23
(6 days ago)
Brute-Force
Web App Attack
๐ฌ๐ง
kiwi.network
2026-09-16 21:17:01
(6 days ago)
Incessant port scan:
Port Scan
Hacking
Exploited Host
๐ต๐ฑ
Budyn
2026-09-16 18:34:34
(6 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: vpn.budyn.xyz | URI: //xmlrpc.php | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36 | BODY: <?xml version="1.0"?><methodCall><methodName>system.multicall</methodName><params><param><value><array><data> <value><struct><member><name>methodName</name><value><string>wp.getUsersBlogs</string></value></member><member><name>params</name><value><array><data><value><array><data><value><string>admin</string></value><value><stri
show less
Bad Web Bot
Web App Attack