๐ฒ๐ฝ
octageeks.com
2026-09-15 04:07:32
(1 day ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-14 04:28:57
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 04:37:08
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 193.216.21.248 (m193-216-21-248.cust.tele2.lt): ...
show more
(mod_security) mod_security (id:225170) triggered by 193.216.21.248 (m193-216-21-248.cust.tele2.lt): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 00:37:01.563071 2026] [security2:error] [pid 3294:tid 3294] [client 193.216.21.248:48610] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||indoorsfinishing.com.saadeh.ws|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "indoorsfinishing.com.saadeh.ws"] [uri "/wp-json/wp/v2/users"] [unique_id "aqYobaIJKcl6bDmIg2ExPwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-09-13 04:06:46
(3 days ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-12 23:54:13
(4 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 27
Exploited Host
Web App Attack
๐ซ๐ท
ELYAZ
2026-09-12 07:10:22
(4 days ago)
(wordpress) Failed wordpress login from 193.216.21.248 (LT/Lithuania/m193-216-21-248.cust.tele2.lt): ...
show more
(wordpress) Failed wordpress login from 193.216.21.248 (LT/Lithuania/m193-216-21-248.cust.tele2.lt): (CF_ENABLE)
show less
Brute-Force
๐ฉ๐ช
neckaralb-admin.de
2026-09-12 06:02:25
(4 days ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ธ๐ฎ
administrator
2026-09-11 23:04:47
(5 days ago)
2026-09-09 07:35:45,510 fail2ban.actions [1054]: NOTICE [apache-badbots] Ban 193.216.21.248
...
show more
2026-09-09 07:35:45,510 fail2ban.actions [1054]: NOTICE [apache-badbots] Ban 193.216.21.248
2026-09-09 07:35:45,510 fail2ban.actions [1054]: NOTICE [apache-badbots] Ban 193.216.21.248
2026-09-09 07:35:45,510 fail2ban.actions [1054]: NOTICE [apache-badbots] Ban 193.216.21.248
...
show less
Bad Web Bot
Web Spam
Email Spam
Blog Spam
Port Scan
Brute-Force
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-11 14:06:16
(5 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
๐ฉ๐ช
LRob
2026-09-11 13:55:30
(5 days ago)
WordPress login brute-force | path: /wp-fi/wp-login.php | 2026-09-11 13:55 UTC
Brute-Force
Web App Attack
๐ฉ๐ช
neckaralb-admin.de
2026-09-11 05:55:24
(5 days ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-10 23:38:05
(6 days ago)
(mod_security) mod_security (id:225170) triggered by 193.216.21.248 (m193-216-21-248.cust.tele2.lt): ...
show more
(mod_security) mod_security (id:225170) triggered by 193.216.21.248 (m193-216-21-248.cust.tele2.lt): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 19:37:58.486417 2026] [security2:error] [pid 24629:tid 24629] [client 193.216.21.248:58196] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.investlocalnm.socialenterprise.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.investlocalnm.socialenterprise.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aqM_Vh_K_uq6jrdWwdiIGwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-10 05:25:42
(6 days ago)
Asking over plain http and never following the redirect served โ a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served โ a crawler that reads nothing it asks for | method: GET | path: /wp-login.php | 2026-09-10 05:25 UTC
show less
Bad Web Bot
๐ฎ๐น
CoreTech srl
2026-09-10 03:18:56
(6 days ago)
cloudlinux2 fail2ban: 2026-09-10 05:14:11,411 fail2ban.filter [1892]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-09-10 05:14:11,411 fail2ban.filter [1892]: INFO [plesk-wordpress] Found 155.2.215.9 - 2026-09-10 05:14:10cloudlinux2 fail2ban: 2026-09-10 05:15:34,712 fail2ban.filter [1892]: INFO [plesk-modsecurity] Found 34.11.90.244 - 2026-09-10 05:15:34cloudlinux2 fail2ban: 2026-09-10 05:15:43,396 fail2ban.filter [1892]: INFO [plesk-wordpress] Found 193.216.21.248 - 2026-09-10 05:15:42cloudlinux2 fail2ban: 2026-09-10 05:15:56,471 fail2ban.actions [1892]: NOTICE [plesk-modsecurity] Unban 8.234.85.136cloudlinux2 fail2ban: 2026-09-10 05:16:29,738 fail2ban.filter [1892]: INFO [plesk-wordpress] Found 136.144.19.242 - 2026-09-10 05:16:29cloudlinux2 fail2ban: 2026-09-10 05:16:39,738 fail2ban.filter [1892]: INFO [plesk-modsecurity] Found 152.59.185.231 - 2026-09-10 05:16:39cloudlinux2 fail2ban: 2026-09-10 05:16:46,530 fail2ban.filter [1892]: INFO [plesk-modsecurity] Found 35.198.104.237 - 2026-09-10 05:16:46cloudlinux2 fail2ban: 2
show less
Web App Attack
๐ฉ๐ช
LRob
2026-09-10 03:14:29
(6 days ago)
Asking over plain http and never following the redirect served โ a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served โ a crawler that reads nothing it asks for | method: GET | path: /wp-login.php | 2026-09-10 03:14 UTC
show less
Bad Web Bot