Anonymous
2026-06-03 21:26:05
(1 hour ago)
(wordpress) Failed wordpress login from 212.30.37.201 (-)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-03 18:58:37
(4 hours ago)
(mod_security) mod_security (id:225170) triggered by 212.30.37.201 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 212.30.37.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 14:58:32.728694 2026] [security2:error] [pid 16380:tid 16380] [client 212.30.37.201:47021] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||idmadventures.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "idmadventures.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aiB5WFbP3lEOGShMlnvNoAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-05-16 03:34:45
(2 weeks ago)
2.000 requests with url.path //xmlrpc.php
Brute-Force
Bad Web Bot
๐ซ๐ท
dynamix
2026-05-16 01:53:29
(2 weeks ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-15 22:49:09
(2 weeks ago)
(mod_security) mod_security (id:240000) triggered by 212.30.37.201 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240000) triggered by 212.30.37.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 18:49:00.999187 2026] [security2:error] [pid 13006:tid 13006] [client 212.30.37.201:24273] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||ericdrives.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "ericdrives.com"] [uri "/images/stories/themes.php"] [unique_id "agei3C8VsOgWIQmly83FzQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Dolphi
2026-05-12 10:00:19
(3 weeks ago)
POST //xmlrpc.php
Brute-Force
Web App Attack
๐ณ๐ฑ
Savvii
2026-05-12 08:44:43
(3 weeks ago)
10 attempts against mh-misc-ban on kale
Web App Attack
๐ณ๐ฑ
Site.eu
2026-05-08 02:31:18
(3 weeks ago)
Excessive 404/403 errors
Brute-Force
๐ท๐บ
sms.ru
2026-05-07 19:31:59
(3 weeks ago)
/wp-admin/js/widgets/cloud.php
Web App Attack
๐ฎ๐น
VHosting
2026-05-07 00:30:03
(3 weeks ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ซ๐ท
Octopuce
2026-05-06 14:32:22
(4 weeks ago)
Aggressive web search of vulnerable pages: /wp-includes/js/index.php /wp-content/upgrade/item.php /b ...
show more
Aggressive web search of vulnerable pages: /wp-includes/js/index.php /wp-content/upgrade/item.php /buy.php /wp-content/languages/wp-conflg.php ...
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-04-30 02:32:04
(1 month ago)
212.30.37.201 - - [30/Apr/2026:05:32:04 +0300] "GET /wp-includes/ID3/index.php HTTP/1.1" 404 707 "-" ...
show more
212.30.37.201 - - [30/Apr/2026:05:32:04 +0300] "GET /wp-includes/ID3/index.php HTTP/1.1" 404 707 "-" "Go-http-client/1.1"
...
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-04-29 17:30:38
(1 month ago)
212.30.37.201 - - [29/Apr/2026:20:30:38 +0300] "GET /wp-content/uploads/elementor/index.php HTTP/1.1 ...
show more
212.30.37.201 - - [29/Apr/2026:20:30:38 +0300] "GET /wp-content/uploads/elementor/index.php HTTP/1.1" 404 712 "-" "Go-http-client/1.1"
212.30.37.201 - - [29/Apr/2026:20:30:38 +0300] "GET /wp-content/plugins/StylePlugin/up.php HTTP/1.1" 404 712 "-" "Go-http-client/1.1"
...
show less
Web App Attack
๐ซ๐ท
dynamix
2026-04-20 18:32:52
(1 month ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-03-14 08:09:51
(2 months ago)
[redacted] 212.30.37.201 - - [14/Mar/2026:09:09:42 +0100] "GET /wp-admin.php HTTP/1.1" 404 196 "-" " ...
show more
[redacted] 212.30.37.201 - - [14/Mar/2026:09:09:42 +0100] "GET /wp-admin.php HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
[redacted] 212.30.37.201 - - [14/Mar/2026:09:09:43 +0100] "GET /wp-admin/maint/bootstrap.php HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3"
[redacted] 212.30.37.201 - - [14/Mar/2026:09:09:43 +0100] "GET /wp-admin/network/chosen.php HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Linux x86_64; rv:79.0) Gecko/20100101 Firefox/79.0"
[redacted] 212.30.37.201 - - [14/Mar/2026:09:09:43 +0100] "GET /wp-content/themes/pridmag/db.php?u HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36"
[redacted] 212.30.37.201 - - [14/Mar/2026:09:09:43 +0100] "GET /wp-admin/images/chosen.php HTTP/1.1" 40
...
show less
Hacking
Web App Attack