๐บ๐ธ
TPI-Abuse
2026-06-03 15:55:11
(6 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.11.48.127 (127.48.11.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 34.11.48.127 (127.48.11.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 11:55:04.814653 2026] [security2:error] [pid 7501:tid 7501] [client 34.11.48.127:54209] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.soudertonbigred.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.soudertonbigred.org"] [uri "/wp-includes/id3/license.txt/wp-json/wp/v2/users/"] [unique_id "aiBOWKBsZkAg9yiHvRWENwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฑ
test test
2026-06-03 15:31:52
(6 hours ago)
PropelTrades WAF โ AbuseIPDB score 85/100 (14 reports). path=/wp-includes/ID3/license.txt
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-03 15:24:44
(6 hours ago)
10 attempts against mh-misc-ban on ficus
Web App Attack
Anonymous
2026-06-03 15:22:46
(6 hours ago)
Auto-reported by Fail2Ban (NPM-Auth)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 15:21:48
(6 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.11.48.127 (127.48.11.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 34.11.48.127 (127.48.11.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 11:21:43.195874 2026] [security2:error] [pid 8492:tid 8492] [client 34.11.48.127:54535] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||priorityring.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "priorityring.net"] [uri "/wp-json/wp/v2/users/"] [unique_id "aiBGhyfDO084Gr9P62WNKwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-03 15:15:10
(7 hours ago)
34.11.48.127 - - [03/Jun/2026:17:15:08 +0200] "GET /wp-includes/ID3/license.txt HTTP/1.1" 404 567 "- ...
show more
34.11.48.127 - - [03/Jun/2026:17:15:08 +0200] "GET /wp-includes/ID3/license.txt HTTP/1.1" 404 567 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
34.11.48.127 - - [03/Jun/2026:17:15:09 +0200] "GET /blog/wp-includes/wlwmanifest.xml HTTP/1.1" 404 567 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
34.11.48.127 - - [03/Jun/2026:17:15:09 +0200] "GET /web/wp-includes/wlwmanifest.xml HTTP/1.1" 404 567 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
34.11.48.127 - - [03/Jun/2026:17:15:09 +0200] "GET /wordpress/wp-includes/wlwmanifest.xml HTTP/1.1" 404 567 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
34.11.48.127 - - [03/Jun/2026:17:15:09 +0200] "GET /wp/wp-includes/wlwmanifest.xml HTTP/1.1" 404 567 "-"
...
show less
Brute-Force
Web App Attack
๐ง๐พ
lns.bz
2026-06-03 15:10:09
(7 hours ago)
Too many 404 requests [BY]
Web App Attack
๐ซ๐ท
masterguru
2026-06-03 15:09:23
(7 hours ago)
(xmlrpc) Apache: Failed xmlrpc access from 34.11.48.127 (US/United States/127.48.11.34.bc.googleuser ...
show more
(xmlrpc) Apache: Failed xmlrpc access from 34.11.48.127 (US/United States/127.48.11.34.bc.googleusercontent.com): 10 in the last 3600 secs (0-201)
show less
Hacking
๐บ๐ธ
mnsf
2026-06-03 15:06:06
(7 hours ago)
Too many Status 40X (14)
Brute-Force
Web App Attack
Anonymous
2026-06-03 15:03:04
(7 hours ago)
Bot / scanning and/or hacking attempts: POST //xmlrpc.php HTTP/1.1, GET / HTTP/1.1, GET //wp-json/wp ...
show more
Bot / scanning and/or hacking attempts: POST //xmlrpc.php HTTP/1.1, GET / HTTP/1.1, GET //wp-json/wp/v2/users/ HTTP/1.1, GET /test/wp-includes/wlwmanifest.xml HTTP/1.1, GET /2020/wp-includes/wlwmanifest.xml HTTP/1.1, GET //shop/wp-includes/wlwmanifest.xml HTTP/1.1, GET //cms/wp-includes/wlwmanifest.xml HTTP/1.1, GET //2021/wp-includes/wlwmanifest.xml HTTP/1.1, GET //site/wp-includes/wlwmanifest.xml HTTP/1.1, GET //xmlrpc.php?rsd HTTP/1.1, GET //test/wp-includes/wlwmanifest.xml HTTP/1.1, GET //wp1/wp-includes/wlwmanifest.xml HTTP/1.1, GET //2019/wp-includes/wlwmanifest.xml HTTP/1.1, GET //wp/wp-includes/wlwmanifest.xml HTTP/1.1
show less
Hacking
Web App Attack
๐จ๐ฆ
polycoda
2026-06-03 15:01:21
(7 hours ago)
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based) - ๐ Directory Listings (Decay-Based) - โ Excess ...
show more
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based) - ๐ Directory Listings (Decay-Based) - โ Excessive 40X Errors (Decay-Based)
show less
Hacking
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-06-03 15:00:20
(7 hours ago)
Try to access /xmlrpc.php?rsd
Web App Attack
๐ท๐บ
DZBOT
2026-06-03 14:58:29
(7 hours ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฎ๐น
abuseiphack
2026-06-03 14:57:35
(7 hours ago)
Automatic report for brute force attack
Bad Web Bot
๐จ๐ญ
backslash
2026-06-03 14:57:00
(7 hours ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot