๐บ๐ธ
mnsf
2026-06-25 21:22:58
(1 day ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ง๐ช
cmbplf
2026-06-24 18:03:56
(2 days ago)
24.193 requests in 1 hour (1mo2w3d)
Brute-Force
Bad Web Bot
๐บ๐ธ
lostswordfish.com
2026-06-24 17:38:03
(2 days ago)
Wordfence waf block on podcasts
Web App Attack
๐ฉ๐ช
maxpower
2026-06-24 17:29:16
(2 days ago)
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 34.136.8.13 (US/United States/13.8.136.34.bc.g ...
show more
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 34.136.8.13 (US/United States/13.8.136.34.bc.googleusercontent.com): 3 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.136.8.13 - - [24/Jun/2026:19:29:09 +0200] "GET //?author=1 HTTP/1.1" 403 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" "-" host=samimanutenzionisrl.it
34.136.8.13 - - [24/Jun/2026:19:29:10 +0200] "GET //?author=2 HTTP/1.1" 403 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" "-" host=samimanutenzionisrl.it
34.136.8.13 - - [24/Jun/2026:19:29:10 +0200] "GET //wp-json/wp/v2/users/ HTTP/1.1" 200 406 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" "-" host=samimanutenzionisrl.it
show less
Port Scan
๐บ๐ธ
Victor Lรณpez
2026-06-24 17:23:30
(2 days ago)
reparaya.com.co 34.136.8.13 - - [24/Jun/2026:12:23:28 -0500] "GET //xmlrpc.php?rsd HTTP/1.1" 200 320 ...
show more
reparaya.com.co 34.136.8.13 - - [24/Jun/2026:12:23:28 -0500] "GET //xmlrpc.php?rsd HTTP/1.1" 200 3205 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
reparaya.com.co 34.136.8.13 - - [24/Jun/2026:12:23:29 -0500] "POST //xmlrpc.php HTTP/1.1" 405 552 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
reparaya.com.co 34.136.8.13 - - [24/Jun/2026:12:23:30 -0500] "POST //xmlrpc.php HTTP/1.1" 405 552 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-24 17:18:09
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 34.136.8.13 (13.8.136.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:225170) triggered by 34.136.8.13 (13.8.136.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 13:18:01.534845 2026] [security2:error] [pid 3372:tid 3372] [client 34.136.8.13:56064] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||puckerbackbikinis.puckerbikini.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "puckerbackbikinis.puckerbikini.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ajwRSWWBrDjm4RJ_c8o8JwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-24 17:15:17
(2 days ago)
34.136.8.13 - - [24/Jun/2026:19:15:16 +0200] "POST //xmlrpc.php HTTP/1.1" 200 401 "-" "Mozilla/5.0 ( ...
show more
34.136.8.13 - - [24/Jun/2026:19:15:16 +0200] "POST //xmlrpc.php HTTP/1.1" 200 401 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
34.136.8.13 - - [24/Jun/2026:19:15:16 +0200] "POST //xmlrpc.php HTTP/1.1" 200 591 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
34.136.8.13 - - [24/Jun/2026:19:15:16 +0200] "POST //xmlrpc.php HTTP/1.1" 200 401 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
34.136.8.13 - - [24/Jun/2026:19:15:16 +0200] "POST //xmlrpc.php HTTP/1.1" 200 591 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
34.136.8.13 - - [24/Jun/2026:19:15:17 +0200] "POST //xmlrpc.php HTTP/1.1" 200 401 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904
...
show less
Brute-Force
Web App Attack
๐ฉ๐ช
XICTRON
2026-06-24 17:15:06
(2 days ago)
ModSecurity rule violation detected by Fail2Ban
Web App Attack
๐ฎ๐น
VHosting
2026-06-24 17:15:03
(2 days ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
nyt
2026-06-24 17:13:18
(2 days ago)
Empty UA + error, WP Author Enumeration
Web App Attack
๐ฉ๐ช
Hazzard
2026-06-24 17:10:19
(2 days ago)
(wordpress) Failed wordpress login from 34.136.8.13 (US/United States/Iowa/Council Bluffs/13.8.136.3 ...
show more
(wordpress) Failed wordpress login from 34.136.8.13 (US/United States/Iowa/Council Bluffs/13.8.136.34.bc.googleusercontent.com/[redacted]): (CF_ENABLE)
show less
Brute-Force
๐ฎ๐ฉ
Burayot
2025-06-17 00:34:38
(1 year ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.136.8.13 (US/United States/13.8. ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.136.8.13 (US/United States/13.8.136.34.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-06-17 00:28:53
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 34.136.8.13 (13.8.136.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.136.8.13 (13.8.136.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 16 20:28:47.299003 2025] [security2:error] [pid 3949050:tid 3949050] [client 34.136.8.13:57596] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||gamepart.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "gamepart.com"] [uri "/home/tancedi1/gamepart.com"] [unique_id "aFC2v8BZSMUchfwwsILd0wAAAAU"], referer: http://gamepart.com/home/tancedi1/gamepart.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2025-06-17 00:21:53
(1 year ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 247
Exploited Host
Web App Attack
๐บ๐ธ
Epimetheus
2025-06-16 23:54:45
(1 year ago)
Unauthorized access attempts:
From:
34.136.8.13
Method:
HTTP GET
URI Path:
/wp-includes/js/jqu ...
show more
Unauthorized access attempts:
From:
34.136.8.13
Method:
HTTP GET
URI Path:
/wp-includes/js/jquery/jquery.js
UA:
"Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36"
show less
Web App Attack