๐บ๐ธ
mnsf
2026-06-13 02:05:12
(2 days ago)
Login Too Frequent (7)
Brute-Force
Web App Attack
๐จ๐ฆ
KIsmay
2026-06-12 10:02:57
(3 days ago)
Jun 12 06:00:34 www4 WPAudit[1463495]: 193.36.224.44 amandasrestaurant.ca "Mozilla/5.0 (Windows NT 1 ...
show more
Jun 12 06:00:34 www4 WPAudit[1463495]: 193.36.224.44 amandasrestaurant.ca "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/118.0.0.0 Safari/537.36" admin:wp123 FAIL
Jun 12 06:01:12 www4 WPAudit[1463495]: 193.36.224.44 amandasrestaurant.ca "Mozilla/5.0 (Windows NT 11.0; Win64; x64; rv:121.0) Gecko/20100101 Firefox/121.0" administrator:wp123 FAIL
Jun 12 06:01:41 www4 WPAudit[1463495]: 193.36.224.44 amandasrestaurant.ca "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7; rv:118.0) Gecko/20100101 Firefox/118.0" gina:wp123 FAIL
Jun 12 06:02:29 www4 WPAudit[1463495]: 193.36.224.44 amandasrestaurant.ca "Mozilla/5.0 (Windows NT 11.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/118.0.0.0 Safari/537.36" sbd-admin:wp123 FAIL
Jun 12 06:02:56 www4 WPAudit[1463495]: 193.36.224.44 amandasrestaurant.ca "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_6_1) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.2 Safari/605.1.15" admin:wpadmin FAIL
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-06-12 01:05:50
(3 days ago)
Login Too Frequent (7)
Brute-Force
Web App Attack
๐ฌ๐ท
setupgr
2026-06-11 22:50:37
(3 days ago)
(mod_security) mod_security (id:900001) triggered by 193.36.224.44: 1 in the last 86400 secs; Ports: ...
show more
(mod_security) mod_security (id:900001) triggered by 193.36.224.44: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Fri Jun 12 01:50:34.858365 2026] [security2:error] [pid 2274:tid 2399] [client 193.36.224.44:32945] ModSecurity: Access denied with code 403 (phase 1). Match of "rx ^(www\\\\.)?(pankoskal\\\\.gr|alloweddomain2\\\\.com)$" against "REQUEST_HEADERS:Host" required. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "74"] [id "900001"] [msg "Blocked WP Login attempt on domain: adoro.gr"] [severity "CRITICAL"] [tag "security"] [hostname "adoro.gr"] [uri "/wp-login.php"] [unique_id "ais7uiOS9qvayoURem7rcAAAAEw"], referer: https://adoro.gr/wp-login.php
show less
Port Scan
๐ง๐ช
voormedia
2026-05-07 14:00:16
(1 month ago)
Accessed trap at '/wp-login.php'
Web App Attack
๐บ๐ธ
octageeks.com
2026-05-07 04:06:04
(1 month ago)
Wordpress malicious attack:[octausername]
Web App Attack
๐บ๐ธ
NicoID
2026-05-06 00:13:50
(1 month ago)
193.36.224.44 - - [05/May/2026:17:34:55 -0600] "POST /wp-login.php HTTP/1.1" 200 9822 "-" "Mozilla/5 ...
show more
193.36.224.44 - - [05/May/2026:17:34:55 -0600] "POST /wp-login.php HTTP/1.1" 200 9822 "-" "Mozilla/5.0"
...
show less
Brute-Force
Anonymous
2026-05-01 20:55:17
(1 month ago)
2026-05-01T22:55:17.370877+02:00 zanati wp(sahpa.co.za)[1597837]: Blocked authentication attempt for ...
show more
2026-05-01T22:55:17.370877+02:00 zanati wp(sahpa.co.za)[1597837]: Blocked authentication attempt for admin from 193.36.224.44
...
show less
Web App Attack
๐ฆ๐บ
MAGIC
2026-04-04 02:31:41
(2 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ซ๐ท
COMAITE
2026-03-06 12:58:31
(3 months ago)
CMS (WordPress or Joomla) brute force attempt.
Web App Attack
๐ฉ๐ช
LRob.fr
2026-03-06 11:00:47
(3 months ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-06 03:53:08
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 193.36.224.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 193.36.224.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 05 22:53:03.230694 2026] [security2:error] [pid 29719:tid 29719] [client 193.36.224.44:61541] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||marriedtv.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "marriedtv.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aapPn7jO8JSnXWVxY1jzowAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
gnom4ik
2026-02-22 04:31:11
(3 months ago)
ban-reviewer auto report; ip=193.36.224.44; scenario=http:scan; verdict=valid_ban; confidence=0.85; ...
show more
ban-reviewer auto report; ip=193.36.224.44; scenario=http:scan; verdict=valid_ban; confidence=0.85; categories=14,15,18; active_decisions=1; lookback_decisions=1; nginx_requests=0; appsec_matches=0; auth_events=0; kernel_events=0; signals=IP flagged for 'Port Scan' (category 14) in abuseipdb; Scan behavior detected via http:scan scenario; Decision appears in active decisions total count
show less
Port Scan
Hacking
Brute-Force
๐ซ๐ท
dynamix
2026-01-26 09:29:06
(4 months ago)
Multiple WAF Violations
Web App Attack
๐ฌ๐ง
[email protected]
2026-01-23 13:30:10
(4 months ago)
193.36.224.44 - - [23/Jan/2026:13:28:44 +0000] "POST ///xmlrpc.php HTTP/1.1" 200 401 "-" "Mozilla/5. ...
show more
193.36.224.44 - - [23/Jan/2026:13:28:44 +0000] "POST ///xmlrpc.php HTTP/1.1" 200 401 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
193.36.224.44 - - [23/Jan/2026:13:29:24 +0000] "POST ///xmlrpc.php HTTP/1.1" 200 401 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
193.36.224.44 - - [23/Jan/2026:13:30:09 +0000] "POST ///xmlrpc.php HTTP/1.1" 200 401 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
...
show less
Web App Attack