๐ช๐ธ
robotstxt
2026-10-03 04:47:41
(2 days ago)
194.61.40.30 - - [03/Oct/2026:04:47:24 +0000] "GET //wp-includes/id3/license.txt/xmlrpc.php?rsd HTTP ...
show more
194.61.40.30 - - [03/Oct/2026:04:47:24 +0000] "GET //wp-includes/id3/license.txt/xmlrpc.php?rsd HTTP/1.1" 403 5 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36" "-" edge="194.61.40.30"
194.61.40.30 - - [03/Oct/2026:04:47:25 +0000] "GET //wp-includes/id3/license.txt/blog/wp-includes/wlwmanifest.xml HTTP/1.1" 403 5 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36" "-" edge="194.61.40.30"
194.61.40.30 - - [03/Oct/2026:04:47:26 +0000] "GET //wp-includes/id3/license.txt/web/wp-includes/wlwmanifest.xml HTTP/1.1" 403 5 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36" "-" edge="194.61.40.30"
194.61.40.30 - - [03/Oct/2026:04:47:27 +0000] "GET //wp-includes/id3/license.txt/wordpress/wp-includes/wlwmanifest.xml HTTP/1.1" 403 5 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/
...
show less
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-10-02 19:09:19
(2 days ago)
excessive HTTP 404 errors
Bad Web Bot
๐ต๐ฑ
Budyn
2026-10-02 17:28:56
(2 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: pma.teddypot.tech | URI: //xmlrpc.php?rsd | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
javierin
2026-10-02 16:54:48
(2 days ago)
194.61.40.30 - perchapersonalizada.es - - [02/Oct/2026:16:54:44 +0000] "GET //blog/wp-includes/wlwma ...
show more
194.61.40.30 - perchapersonalizada.es - - [02/Oct/2026:16:54:44 +0000] "GET //blog/wp-includes/wlwmanifest.xml HTTP/1.1" 404 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
194.61.40.30 - perchapersonalizada.es - - [02/Oct/2026:16:54:45 +0000] "GET //web/wp-includes/wlwmanifest.xml HTTP/1.1" 404 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
194.61.40.30 - perchapersonalizada.es - - [02/Oct/2026:16:54:45 +0000] "GET //wordpress/wp-includes/wlwmanifest.xml HTTP/1.1" 404 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
194.61.40.30 - perchapersonalizada.es - - [02/Oct/2026:16:54:45 +0000] "GET //wp/wp-includes/wlwmanifest.xml HTTP/1.1" 404 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36
...
show less
Hacking
Web App Attack
๐ต๐ฑ
Budyn
2026-10-01 15:35:31
(3 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: telemetry.teddypot.cloud | URI: //xmlrpc.php?rsd | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ฆ๐บ
Bay13
2026-10-01 11:19:14
(3 days ago)
CrowdSec:custom/http-sensitive-files
Web App Attack
๐บ๐ธ
Charlesiv
2026-09-30 18:00:44
(4 days ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
ASN: 137409 (GSL Networks Pty ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
ASN: 137409 (GSL Networks Pty LTD)
Protocol: HTTP/1.1 (GET method)
Endpoint: /cms/wp-includes/wlwmanifest.xml
Timestamp: 2026-09-30T17:32:35Z
Ray ID: a434f7b0886b8237
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36
show less
Bad Web Bot
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-26 10:19:29
(1 week ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐ฉ๐ช
LRob
2026-09-25 05:39:40
(1 week ago)
This address sends abusive requests to WordPress sites we host: user enumeration through the REST AP ...
show more
This address sends abusive requests to WordPress sites we host: user enumeration through the REST API, xmlrpc.php calls the site refuses, endpoints the site does not serve. These are the reconnaissance and attack calls of automated WordPress attack tools, blocked on sight. Please check the machine behind it. | method: GET | path: /wp-login.php | 2026-09-25 05:39 UTC
show less
Web App Attack
Hacking
๐ธ๐ฌ
pusathosting.com
2026-09-24 23:20:09
(1 week ago)
24ds22 bruteforce
Brute-Force
Web App Attack
Anonymous
2026-09-08 08:15:31
(3 weeks ago)
Web attack blocked by Wordfence on mergel.nu (1 hit). Reported by CRMON.
Web App Attack
๐ง๐ช
cmbplf
2026-09-06 23:37:26
(4 weeks ago)
5.839 POST requests with url.path */wp-login.php
Brute-Force
Bad Web Bot
๐ซ๐ท
dynamix
2026-09-06 20:11:08
(4 weeks ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-31 00:49:24
(1 month ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐ซ๐ท
LRob
2026-08-31 00:33:37
(1 month ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: /wp-login.php | 2026-08-31 00:33 UTC
show less
Hacking
Web App Attack