๐ซ๐ท
masterguru
2026-06-26 10:20:03
(34 minutes ago)
(modsec_5040) ModSec 5040: API Basic Auth blocked from 209.145.49.99 (US/United States/dashboard.int ...
show more
(modsec_5040) ModSec 5040: API Basic Auth blocked from 209.145.49.99 (US/United States/dashboard.integraluna.net): 1 in the last 3600 secs (0-196)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-26 09:25:17
(1 hour ago)
(mod_security) mod_security (id:225170) triggered by 209.145.49.99 (dashboard.integraluna.net): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 209.145.49.99 (dashboard.integraluna.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 05:25:09.861176 2026] [security2:error] [pid 22533:tid 22533] [client 209.145.49.99:59890] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||weightlossover50.customdesignsbybjp.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "weightlossover50.customdesignsbybjp.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aj5FdbVbNivdqVHsG2Y20AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-06-26 08:28:39
(2 hours ago)
3.591 POST requests with url.path */wp-login.php
Brute-Force
Bad Web Bot
๐ฉ๐ช
london2038.com
2026-06-26 08:16:05
(2 hours ago)
Attacking WordPress
209.145.49.99 - - [26/Jun/2026:10:16:02 +0200] "POST /wp-login.php HTTP/2.0" 503 ...
show more
Attacking WordPress
209.145.49.99 - - [26/Jun/2026:10:16:02 +0200] "POST /wp-login.php HTTP/2.0" 503 19289 "https://<REDACTED>/wp-login.php" "Mozilla/5.0 (X11; Linux x86_64; rv:133.0) Gecko/20100101 Firefox/133.0"
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-26 07:53:56
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 209.145.49.99 (dashboard.integraluna.net): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 209.145.49.99 (dashboard.integraluna.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 03:53:51.979360 2026] [security2:error] [pid 25622:tid 25622] [client 209.145.49.99:46894] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lenorasflowers.lahamradio.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lenorasflowers.lahamradio.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aj4wD8z-MGnUrFfeNDwAJwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
AlexEventfahrtenIPDB
2026-06-26 07:40:38
(3 hours ago)
[Fri Jun 26 09:40:34.873658 2026] [authz_core:error] [pid 1107855:tid 1107855] [client 209.145.49.99 ...
show more
[Fri Jun 26 09:40:34.873658 2026] [authz_core:error] [pid 1107855:tid 1107855] [client 209.145.49.99:58666] AH01630: client denied by server configuration: /var/www/std-sites/cadillac/wp-login.php
[Fri Jun 26 09:40:38.034037 2026] [authz_core:error] [pid 1162165:tid 1162165] [client 209.145.49.99:58672] AH01630: client denied by server configuration: /var/www/std-sites/cadillac/wp-login.php, referer: https://powerstar.spdns.de/wp-login.php
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-26 06:56:55
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 209.145.49.99 (dashboard.integraluna.net): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 209.145.49.99 (dashboard.integraluna.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 02:56:51.288498 2026] [security2:error] [pid 13118:tid 13118] [client 209.145.49.99:59788] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kentsavagelaw.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kentsavagelaw.com"] [uri "/wp-json/wp/v2/users/8"] [unique_id "aj4is0rEmbhNNzwUaYx5CwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
ptlab
2026-06-26 06:45:47
(4 hours ago)
Detected wp_login attack from WP-host.
Hacking
Web App Attack
๐ซ๐ฎ
KnightIndustries
2026-06-26 06:06:46
(4 hours ago)
2026-06-26T07:39:48.939209+02:00 milkyway wordpress(oldscarborough.com)[1032273]: Authentication fai ...
show more
2026-06-26T07:39:48.939209+02:00 milkyway wordpress(oldscarborough.com)[1032273]: Authentication failure for joshua from 209.145.49.99
2026-06-26T08:06:10.201138+02:00 milkyway wordpress(learncryptography.pw)[1037221]: Authentication attempt for unknown user thespacebutt from 209.145.49.99
2026-06-26T08:06:45.214729+02:00 milkyway wordpress(butlinsbadges.fawcett.ovh)[1037192]: Authentication failure for joshua from 209.145.49.99
...
show less
Brute-Force
Web App Attack
๐ฉ๐ช
LRob.fr
2026-06-26 06:00:16
(4 hours ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
๐ช๐ธ
masterguru
2026-06-26 05:59:57
(4 hours ago)
(wplogin) Failed WordPress login from 209.145.49.99 (US/United States/dashboard.integraluna.net): 5 ...
show more
(wplogin) Failed WordPress login from 209.145.49.99 (US/United States/dashboard.integraluna.net): 5 in the last 3600 secs (0-122)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-26 05:59:21
(4 hours ago)
(mod_security) mod_security (id:225170) triggered by 209.145.49.99 (dashboard.integraluna.net): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 209.145.49.99 (dashboard.integraluna.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 01:59:16.872222 2026] [security2:error] [pid 26020:tid 26020] [client 209.145.49.99:57822] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||proyectando.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "proyectando.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aj4VNHs5W1ZPfhOTz91lPwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-26 05:48:16
(5 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
๐บ๐ธ
lostswordfish.com
2026-06-26 05:32:05
(5 hours ago)
Wordfence waf block on fypeducation
Web App Attack
๐บ๐ธ
mnsf
2026-06-26 05:05:29
(5 hours ago)
Abuse Detected (1)
Brute-Force
Web App Attack