๐ซ๐ท
ingroscart.it
2026-05-23 08:35:29
(4 weeks ago)
(wordpress) Failed wordpress login from 185.212.130.10 (VG/British Virgin Islands/10.host.prohoster. ...
show more
(wordpress) Failed wordpress login from 185.212.130.10 (VG/British Virgin Islands/10.host.prohoster.info)
show less
Brute-Force
๐ซ๐ท
tecnicorioja
2026-05-22 22:00:19
(4 weeks ago)
wp-login attack [22/May/2026:09:46:50
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 17:53:41
(4 weeks ago)
(mod_security) mod_security (id:225170) triggered by 185.212.130.10 (10.host.prohoster.info): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 185.212.130.10 (10.host.prohoster.info): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 13:53:36.390672 2026] [security2:error] [pid 17582:tid 17582] [client 185.212.130.10:55286] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||theseventhcongregationofladderdayvixens.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "theseventhcongregationofladderdayvixens.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ahCYIN3zvRolOE9El4UzygAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-05-22 12:35:24
(4 weeks ago)
Detected mail brute force attack from 4 different servers
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-05-21 23:00:30
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 185.212.130.10 (10.host.prohoster.info): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 185.212.130.10 (10.host.prohoster.info): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 21 19:00:22.156289 2026] [security2:error] [pid 23327:tid 23327] [client 185.212.130.10:57478] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rochesterhistorical.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rochesterhistorical.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ag-Ohk_5FXV1mkOEHKTYHgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
octageeks.com
2026-05-21 04:06:12
(1 month ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐บ๐ธ
lostswordfish.com
2026-05-20 10:20:05
(1 month ago)
Wordfence waf block on registrymatters
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-19 19:09:22
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 185.212.130.10 (10.host.prohoster.info): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 185.212.130.10 (10.host.prohoster.info): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 19 15:09:15.238480 2026] [security2:error] [pid 29632:tid 29632] [client 185.212.130.10:35126] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sigridsnaturalfoods.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sigridsnaturalfoods.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "agy1W9OFA3hA2jcwtfoRvgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
cerberusinformatica
2021-11-01 13:27:33
(4 years ago)
185.212.130.10 - - [01/Nov/2021:18:14:58 +0100] "POST /xmlrpc.php HTTP/1.1" 403 146 "-" "Mozilla/5.0 ...
show more
185.212.130.10 - - [01/Nov/2021:18:14:58 +0100] "POST /xmlrpc.php HTTP/1.1" 403 146 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:62.0) Gecko/20100101 Firefox/62.0"
185.212.130.10 - - [01/Nov/2021:18:27:32 +0100] "POST /xmlrpc.php HTTP/1.1" 403 146 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:62.0) Gecko/20100101 Firefox/62.0"
...
show less
Web App Attack
๐ป๐ณ
websase.com
2021-11-01 13:17:55
(4 years ago)
WordPress XMLRPC Brute Force Attacks
Brute-Force
Web App Attack
๐ซ๐ฎ
bittiguru.fi
2021-11-01 12:24:30
(4 years ago)
Brute Force
Hacking
Brute-Force
Web App Attack
๐ฌ๐ง
sdos.es
2021-11-01 06:00:30
(4 years ago)
"XSS Attack Detected via libinjection - Matched Data: XSS data found within ARGS_NAMES:<?xml version ...
show more
"XSS Attack Detected via libinjection - Matched Data: XSS data found within ARGS_NAMES:<?xml version: <?xml version"
show less
Web App Attack
๐ซ๐ท
Yepngo
2021-11-01 04:41:38
(4 years ago)
185.212.130.10 - - [01/Nov/2021:09:41:38 +0100] "POST /wp-login.php HTTP/1.1" 200 9701 "-" "Mozilla/ ...
show more
185.212.130.10 - - [01/Nov/2021:09:41:38 +0100] "POST /wp-login.php HTTP/1.1" 200 9701 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:62.0) Gecko/20100101 Firefox/62.0"
...
show less
Brute-Force
Web App Attack
Anonymous
2021-11-01 01:51:00
(4 years ago)
185.212.130.10 - - [01/Nov/2021:06:50:59 +0100] "GET /wp-login.php HTTP/1.1" 200 1533 "-" "Mozilla/5 ...
show more
185.212.130.10 - - [01/Nov/2021:06:50:59 +0100] "GET /wp-login.php HTTP/1.1" 200 1533 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:62.0) Gecko/20100101 Firefox/62.0"
185.212.130.10 - - [01/Nov/2021:06:50:59 +0100] "POST /wp-login.php HTTP/1.1" 200 1942 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:62.0) Gecko/20100101 Firefox/62.0"
185.212.130.10 - - [01/Nov/2021:06:50:59 +0100] "POST /xmlrpc.php HTTP/1.1" 200 478 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:62.0) Gecko/20100101 Firefox/62.0"
...
show less
Brute-Force
Web App Attack
๐ฌ๐ง
UKFast Security
2021-10-31 21:27:36
(4 years ago)
WordPress XML RPC POST Brute Force Attack
Web App Attack