๐ง๐พ
lns.bz
2026-08-25 11:03:02
(21 hours ago)
Too many 404 requests [BY]
Web App Attack
๐จ๐ญ
Origon
2026-08-25 10:59:31
(22 hours ago)
http-probing - IP: 34.138.81.207 - time="2026-08-25T12:59:30+02:00" level=info msg="(555f66b4f6a745 ...
show more
http-probing - IP: 34.138.81.207 - time="2026-08-25T12:59:30+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-probing by ip 34.138.81.207 (US/396982) : 4h ban on Ip 34.138.81.207" module=db
show less
Web App Attack
๐ฎ๐น
madaello
2026-08-25 10:49:57
(22 hours ago)
34.138.81.207 - - [25/Aug/2026:12:49:57 +0200] "GET //wp-includes/wlwmanifest.xml HTTP/1.1" 404 563 ...
show more
34.138.81.207 - - [25/Aug/2026:12:49:57 +0200] "GET //wp-includes/wlwmanifest.xml HTTP/1.1" 404 563 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
34.138.81.207 - - [25/Aug/2026:12:49:57 +0200] "GET //xmlrpc.php?rsd HTTP/1.1" 404 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
34.138.81.207 - - [25/Aug/2026:12:49:57 +0200] "GET //blog/wp-includes/wlwmanifest.xml HTTP/1.1" 404 563 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
34.138.81.207 - - [25/Aug/2026:12:49:57 +0200] "GET //web/wp-includes/wlwmanifest.xml HTTP/1.1" 404 563 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
34.138.81.207 - - [25/Aug/2026:12:49:57 +0200] "GET //wordpress/wp-includes/wlwmanifest.xml HTTP/1.1" 404 563 "-" "M
...
show less
Port Scan
๐ต๐ฑ
strefapi_com
2026-08-25 10:36:15
(22 hours ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
Anonymous
2026-08-25 10:35:14
(22 hours ago)
Too many successive quick attempts with error status 301, 404, 405, 444, 403 or 400
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-25 10:21:34
(22 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.138.81.207 (207.81.138.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.138.81.207 (207.81.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 06:21:26.833929 2026] [security2:error] [pid 3135:tid 3177] [client 34.138.81.207:60785] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||southtampaprints.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "southtampaprints.com"] [uri "/site/wp-json/wp/v2/users/"] [unique_id "ao1sphTGW6cxxVJNpxesIgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-08-25 10:09:15
(22 hours ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: //xmlrpc.php | 2026-08-25 10:09 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
SketchyDude
2026-08-25 10:08:43
(22 hours ago)
Banned by Fail2Ban jail: apache-auth
Brute-Force
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-08-25 10:07:02
(22 hours ago)
Fail2Ban - [WAF]ModSecurity rule violation on modsecurity ... [mx02,mx03]
Hacking
SQL Injection
Web App Attack
๐ฎ๐น
VHosting
2026-08-25 10:05:08
(22 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 09:54:56
(23 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.138.81.207 (207.81.138.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.138.81.207 (207.81.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 05:54:52.633952 2026] [security2:error] [pid 7766:tid 7766] [client 34.138.81.207:65058] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.socialenterprise.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.socialenterprise.net"] [uri "/wp-json/wp/v2/users/"] [unique_id "ao1mbO_51-sCC3FeHB6AxwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack