๐ฉ๐ช
neckaralb-admin.de
2026-07-23 11:38:40
(1 day ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ซ๐ท
Octopuce
2026-07-23 03:58:13
(1 day ago)
Aggressive web search of vulnerable pages: /wp-login.php /ext.php /delpaths.php /.well-known/pki-val ...
show more
Aggressive web search of vulnerable pages: /wp-login.php /ext.php /delpaths.php /.well-known/pki-validation/1.php /wp-content/plugins/wp-login. ...
show less
Web App Attack
๐ฎ๐น
CoreTech srl
2026-07-22 22:48:57
(1 day ago)
cloudlinux2 fail2ban: 2026-07-23 00:43:47,787 fail2ban.filter [1589]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-07-23 00:43:47,787 fail2ban.filter [1589]: INFO [plesk-modsecurity] Found 167.82.167.29 - 2026-07-23 00:43:47cloudlinux2 fail2ban: 2026-07-23 00:43:46,172 fail2ban.filter [1589]: INFO [plesk-modsecurity] Found 167.82.167.29 - 2026-07-23 00:43:46cloudlinux2 fail2ban: 2026-07-23 00:43:47,952 fail2ban.filter [1589]: INFO [recidive] Found 167.82.167.29 - 2026-07-23 00:43:47cloudlinux2 fail2ban: 2026-07-23 00:43:47,946 fail2ban.actions [1589]: NOTICE [plesk-modsecurity] Ban 167.82.167.29cloudlinux2 fail2ban: 2026-07-23 00:43:45,997 fail2ban.filter [1589]: INFO [plesk-modsecurity] Found 167.82.167.29 - 2026-07-23 00:43:45cloudlinux2 fail2ban: 2026-07-23 00:44:37,615 fail2ban.filter [1589]: INFO [plesk-wordpress] Found 194.61.40.158 - 2026-07-23 00:44:36cloudlinux2 fail2ban: 2026-07-23 00:44:48,170 fail2ban.filter [1589]: INFO [plesk-modsecurity] Found 104.199.145.40 - 2026-07-23 00:44:47cloudlinux2 fail2ban: 2026-07
show less
Web App Attack
๐จ๐ญ
backslash
2026-06-30 02:33:03
(3 weeks ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐ซ๐ท
Baking333
2026-06-27 13:12:38
(3 weeks ago)
[redacted] 194.61.40.158 - - [27/Jun/2026:14:12:37 +0100] "GET /[redacted] HTTP/1.1" 302 6783 0/1004 ...
show more
[redacted] 194.61.40.158 - - [27/Jun/2026:14:12:37 +0100] "GET /[redacted] HTTP/1.1" 302 6783 0/100403 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/129.0.0.0 Safari/537.36" [redacted] 194.61.40.158 - - [27/Jun/2026:14:12:37 +0100] "GET /wp-admin/ HTTP/1.1" 301 5837 0/277 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; rv:143.0) Gecko/20100101 Firefox/143.0"
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 01:22:08
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 194.61.40.158 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.61.40.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 21:21:38.762396 2026] [security2:error] [pid 19199:tid 19199] [client 194.61.40.158:30877] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.billwegener.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.billwegener.net"] [uri "/wp-json/wp/v2/users/"] [unique_id "aidqoqlHA2Dkm7-4TYvIagAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
aranguren.org
2026-06-02 07:49:56
(1 month ago)
194.61.40.158 - - [02/Jun/2026:17:49:53 +1000] "GET /wp-includes/classwithtostring.php HTTP/1.1" 404 ...
show more
194.61.40.158 - - [02/Jun/2026:17:49:53 +1000] "GET /wp-includes/classwithtostring.php HTTP/1.1" 404 994 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.100 Safari/537.36"
194.61.40.158 - - [02/Jun/2026:17:49:53 +1000] "GET /wp-content/blue.php HTTP/1.1" 404 994 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36"
194.61.40.158 - - [02/Jun/2026:17:49:53 +1000] "GET /content.php HTTP/1.1" 404 16 "-" "Mozilla/5.0 (Linux x86_64; rv:79.0) Gecko/20100101 Firefox/79.0"
194.61.40.158 - - [02/Jun/2026:17:49:54 +1000] "GET /wp-content/uploads/about.php HTTP/1.1" 404 994 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.110 Safari/537.36"
194.61.40.158 - - [02/Jun/2026:17:49:54 +1000] "GET /wp-admin/wp-login.php HTTP/1.1" 404 994 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/7
...
show less
Bad Web Bot
๐ฌ๐ง
consul.to
2026-05-24 18:19:06
(2 months ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-05-23 06:50:18
(2 months ago)
(wp-php-upload-includes) Block attempt to access .php in uploads wordpress uploads or well-known 194 ...
show more
(wp-php-upload-includes) Block attempt to access .php in uploads wordpress uploads or well-known 194.61.40.158 (IN/India/-)
show less
Brute-Force
๐ณ๐ฑ
Site.eu
2026-05-23 00:46:04
(2 months ago)
Excessive 404/403 errors
Brute-Force
๐ซ๐ท
masterguru
2026-05-20 02:23:20
(2 months ago)
Too much 404 requests in 1 minute. Operator GE matched 10 at IP:block_script. (46020-193)
Hacking
๐ซ๐ท
Octopuce
2026-05-19 23:09:38
(2 months ago)
Aggressive web search of vulnerable pages: /wp-content/plugins/xt/ /wp-content/plugins/content-manag ...
show more
Aggressive web search of vulnerable pages: /wp-content/plugins/xt/ /wp-content/plugins/content-management/ /wp-content/themes/Avada/licensing/ ...
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2026-05-15 19:18:08
(2 months ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ฆ
URAN Publishing Service
2026-04-24 18:46:25
(3 months ago)
194.61.40.158 - - [24/Apr/2026:21:46:24 +0300] "GET /wp-includes/block-bindings/system_core.php HTTP ...
show more
194.61.40.158 - - [24/Apr/2026:21:46:24 +0300] "GET /wp-includes/block-bindings/system_core.php HTTP/1.1" 404 706 "-" "Go-http-client/1.1"
194.61.40.158 - - [24/Apr/2026:21:46:24 +0300] "GET /wp-includes/SimplePie/about.php HTTP/1.1" 404 706 "-" "Go-http-client/1.1"
...
show less
Web App Attack
Anonymous
2026-04-21 04:02:34
(3 months ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: SG, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: SG, Attack patterns: WordPress scanning, Backup file probing
show less
Bad Web Bot
Web App Attack