Bot / scanning and/or hacking attempts: GET / HTTP/1.1, GET //blog/wp-includes/wlwmanifest.xml HTTP/ ...
show moreBot / scanning and/or hacking attempts: GET / HTTP/1.1, GET //blog/wp-includes/wlwmanifest.xml HTTP/1.1, GET //2018/wp-includes/wlwmanifest.xml HTTP/1.1, GET //2019/wp-includes/wlwmanifest.xml HTTP/1.1, GET //web/wp-includes/wlwmanifest.xml HTTP/1.1, GET //site/wp-includes/wlwmanifest.xml HTTP/1.1, GET //wp2/wp-includes/wlwmanifest.xml HTTP/1.1, GET //wp/wp-includes/wlwmanifest.xml HTTP/1.1, GET //news/wp-includes/wlwmanifest.xml HTTP/1.1, GET //website/wp-includes/wlwmanifest.xml HTTP/1.1, GET //shop/wp-includes/wlwmanifest.xml HTTP/1.1, GET //cms/wp-includes/wlwmanifest.xml HTTP/1.1, GET //wp-includes/wlwmanifest.xml HTTP/1.1, GET //xmlrpc.php?rsd HTTP/1.1, GET //wordpress/wp-includes/wlwmanifest.xml HTTP/1.1, GET //test/wp-includes/wlwmanifest.xml HTTP/1.1, GET //sito/wp-includes/wlwmanifest.xml HTTP/1.1, GET //wp1/wp-includes/wlwmanifest.xml HTTP/1.1, GET //media/wp-includes/wlwmanifest.xml HTTP/1.1
show less
(wordpress) Failed wordpress login from 3.80.199.238 (US/United States/ec2-3-80-199-238.compute-1.am ...
show more(wordpress) Failed wordpress login from 3.80.199.238 (US/United States/ec2-3-80-199-238.compute-1.amazonaws.com)
show less
trying wp-login.php/xmlrpc.php 43 times in 1 minutes
Brute-Force
Web App Attack
Anonymous
(wordpress) Failed wordpress login from 3.80.199.238 (US/United States/ec2-3-80-199-238.compute-1.am ...
show more(wordpress) Failed wordpress login from 3.80.199.238 (US/United States/ec2-3-80-199-238.compute-1.amazonaws.com)
show less
(mod_security) mod_security (id:225170) triggered by 3.80.199.238 (ec2-3-80-199-238.compute-1.amazon ...
show more(mod_security) mod_security (id:225170) triggered by 3.80.199.238 (ec2-3-80-199-238.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 11:46:06.939137 2026] [security2:error] [pid 2687367:tid 2687367] [client 3.80.199.238:60934] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dynamic-therapy-mn.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dynamic-therapy-mn.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aYtgzoL6iL3g1OhC5PCVgAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
(PERMBLOCK) 3.80.199.238 (US/United States/ec2-3-80-199-238.compute-1.amazonaws.com) has had more th ...
show more(PERMBLOCK) 3.80.199.238 (US/United States/ec2-3-80-199-238.compute-1.amazonaws.com) has had more than 4 temp blocks in the last 86400 secs; IP: 3.80.199.238; Ports: *; Direction: 1; Trigger: LF_PERMBLOCK_COUNT; Logs:
show less
(wordpress) Failed wordpress login from 3.80.199.238 (US/United States/ec2-3-80-199-238.compute-1.am ...
show more(wordpress) Failed wordpress login from 3.80.199.238 (US/United States/ec2-3-80-199-238.compute-1.amazonaws.com)
show less
Brute-Force
Showing 1 to
15
of 47 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ