๐ฎ๐น
CoreTech srl
2026-08-28 09:33:57
(13 hours ago)
cloudlinux2 fail2ban: 2026-08-28 11:31:03,080 fail2ban.filter [1478]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-08-28 11:31:03,080 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 185.251.19.9 - 2026-08-28 11:31:02cloudlinux2 fail2ban: 2026-08-28 11:31:03,161 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 45.132.227.174 - 2026-08-28 11:31:02cloudlinux2 fail2ban: 2026-08-28 11:31:58,661 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 191.96.106.148 - 2026-08-28 11:31:57cloudlinux2 fail2ban: 2026-08-28 11:32:05,677 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 180.153.236.226 - 2026-08-28 11:32:05cloudlinux2 fail2ban: 2026-08-28 11:32:50,989 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 45.131.193.25 - 2026-08-28 11:32:50cloudlinux2 fail2ban: 2026-08-28 11:33:07,904 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 136.144.43.14 - 2026-08-28 11:33:07cloudlinux2 fail2ban: 2026-08-28 11:33:07,724 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 136.144.43.34 - 2026-08-28 11:33:07clou
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 05:20:34
(2 days ago)
(mod_security) mod_security (id:218420) triggered by 185.194.178.59 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:218420) triggered by 185.194.178.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 01:20:25.268624 2026] [security2:error] [pid 7484:tid 7484] [client 185.194.178.59:61055] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i)php://(std(in|out|err)|(in|out)put|fd|memory|temp|filter)" at ARGS_NAMES:\\xadd allow_url_include=1 \\xadd auto_prepend_file=php://input. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/21_PHP_PHPGen.conf"] [line "22"] [id "218420"] [rev "2"] [msg "COMODO WAF: PHP Injection Attack: I/O Stream Found||seacor.us|F|2"] [data "Matched Data: php://input found within ARGS_NAMES:\\x5cxadd allow_url_include=1 \\x5cxadd auto_prepend_file=php://input: \\xadd allow_url_include=1 \\xadd auto_prepend_file=php://input"] [severity "CRITICAL"] [tag "CWAF"] [tag "PHPGen"] [hostname "seacor.us"] [uri "/test.php"] [unique_id "ao53mcxaykTNAp5Q2s-wsAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-26 04:44:53
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-25 12:39:33
(3 days ago)
(wordpress) Apache: Failed WordPress login from 185.194.178.59 (FR/France/-): 10 in the last 3600 se ...
show more
(wordpress) Apache: Failed WordPress login from 185.194.178.59 (FR/France/-): 10 in the last 3600 secs (0-195)
show less
Hacking
๐ซ๐ท
masterguru
2026-08-25 12:04:42
(3 days ago)
(wordpress) Apache: Failed WordPress login from 185.194.178.59 (FR/France/-): 10 in the last 3600 se ...
show more
(wordpress) Apache: Failed WordPress login from 185.194.178.59 (FR/France/-): 10 in the last 3600 secs (0-201)
show less
Hacking
๐ณ๐ฑ
Site.eu
2026-08-25 10:41:01
(3 days ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐ฆ๐น
penguin-solutions.at
2026-08-25 06:43:54
(3 days ago)
Excessive 403/404 errors
...
Brute-Force
Web App Attack
๐บ๐ธ
nyt
2026-08-25 02:50:36
(3 days ago)
Brute-Force, Web App Attack, 503 on login page
Brute-Force
Web App Attack
๐ซ๐ท
LoneRider
2026-08-23 02:23:35
(5 days ago)
185.194.178.59 - - [23/Aug/2026:04:23:31 +0200] "POST /wp-login.php HTTP/1.1" 200 8632 "https://maks ...
show more
185.194.178.59 - - [23/Aug/2026:04:23:31 +0200] "POST /wp-login.php HTTP/1.1" 200 8632 "https://maksiprint.com.mk/wp-login.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15) Gecko/20100101 Firefox/122.0"
185.194.178.59 - - [23/Aug/2026:04:23:33 +0200] "POST /wp-login.php HTTP/1.1" 200 8637 "https://maksiprint.com.mk/wp-login.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15) Gecko/20100101 Firefox/121.0"
185.194.178.59 - - [23/Aug/2026:04:23:35 +0200] "POST /wp-login.php HTTP/1.1" 200 8636 "https://maksiprint.com.mk/wp-login.php" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/121.0.6167.85 Safari/537.36"
...
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-22 14:28:22
(6 days ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐ฉ๐ช
ger-stg-sifi1
2026-08-22 05:57:49
(6 days ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ซ๐ท
masterguru
2026-08-21 21:09:18
(1 week ago)
(wordpress) Apache: Failed WordPress login from 185.194.178.59 (FR/France/-): 10 in the last 3600 se ...
show more
(wordpress) Apache: Failed WordPress login from 185.194.178.59 (FR/France/-): 10 in the last 3600 secs (0-195)
show less
Hacking
๐ช๐ธ
ofm-abuse
2026-08-21 16:47:15
(1 week ago)
Brute-force
...
Brute-Force
Web App Attack
Bad Web Bot
๐ณ๐ฑ
Site.eu
2026-08-21 03:40:47
(1 week ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐ฉ๐ช
ger-stg-sifi1
2026-08-20 23:42:01
(1 week ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack