๐ง๐ช
cmbplf
2026-07-29 10:39:27
(9 hours ago)
10.710 requests with url.path */xmlrpc.php
Brute-Force
Bad Web Bot
๐ซ๐ท
masterguru
2026-07-29 07:30:11
(12 hours ago)
Too much 404 requests in 1 minute. Operator GE matched 10 at IP:block_script. (46020-195)
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-29 07:24:33
(12 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.158.183.77 (77.183.158.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.158.183.77 (77.183.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 03:24:29.982058 2026] [security2:error] [pid 7372:tid 7372] [client 34.158.183.77:63702] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bcbikini.com.puckerbikini.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bcbikini.com.puckerbikini.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ammqrYzP1anru7ylv6IaTAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
zynex
2026-07-29 07:18:20
(12 hours ago)
URL Probing: /2020/wp-includes/wlwmanifest.xml
Web App Attack
๐ซ๐ท
masterguru
2026-07-29 07:14:21
(12 hours ago)
WordPress: User enumeration. Pattern match "(author\\\\= (88030-193)
Hacking
๐ต๐ฑ
strefapi_com
2026-07-29 07:14:00
(12 hours ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
Lee Daniel
2026-07-29 07:11:03
(12 hours ago)
34.158.183.77 - - [29/Jul/2026:03:11:00 -0400] "GET //website/wp-includes/wlwmanifest.xml HTTP/1.1" ...
show more
34.158.183.77 - - [29/Jul/2026:03:11:00 -0400] "GET //website/wp-includes/wlwmanifest.xml HTTP/1.1" 404 64308 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36"
34.158.183.77 - - [29/Jul/2026:03:11:00 -0400] "GET //wp/wp-includes/wlwmanifest.xml HTTP/1.1" 404 64273 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36"
34.158.183.77 - - [29/Jul/2026:03:11:01 -0400] "GET //news/wp-includes/wlwmanifest.xml HTTP/1.1" 404 64287 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36"
34.158.183.77 - - [29/Jul/2026:03:11:01 -0400] "GET //2020/wp-includes/wlwmanifest.xml HTTP/1.1" 404 64283 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36"
34.158.183.77 - - [29/Jul/2026:03:11:02 -0400] "GET //2019/wp-includes/wlwmanifest.
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-29 07:08:41
(12 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.158.183.77 (77.183.158.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.158.183.77 (77.183.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 03:08:32.905803 2026] [security2:error] [pid 3149858:tid 3149858] [client 34.158.183.77:56859] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bamedica.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bamedica.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ammm8C7crkg5oPMqdacv4AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐บ
bcsaba
2026-07-29 07:06:53
(12 hours ago)
Multiple web server 400 error codes from same source ip.
34.158.183.77 - - [29/Jul/2026:09:06:43 +02 ...
show more
Multiple web server 400 error codes from same source ip.
34.158.183.77 - - [29/Jul/2026:09:06:43 +0200] "GET //test/wp-includes/wlwmanifest.xml HTTP/1.1" 404 1517 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36"
show less
Web App Attack
Brute-Force
๐ฉ๐ช
iNetWorker
2026-07-29 07:06:42
(12 hours ago)
trolling for resource vulnerabilities
Web App Attack
๐ท๐บ
DZBOT
2026-07-29 07:05:20
(12 hours ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-07-29 07:01:55
(12 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
๐ฎ๐น
VHosting
2026-07-29 07:00:06
(12 hours ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ฌ๐ท
setupgr
2026-07-29 06:55:54
(12 hours ago)
(XMLRPC) WP XMLRPC Attack 34.158.183.77 (NL/The Netherlands/Groningen/Groningen/-/[AS396982 GOOGLE-C ...
show more
(XMLRPC) WP XMLRPC Attack 34.158.183.77 (NL/The Netherlands/Groningen/Groningen/-/[AS396982 GOOGLE-CLOUD-PLATFORM]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.158.183.77 - - [29/Jul/2026:09:55:38 +0300] "GET //xmlrpc.php?rsd HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36"
show less
Port Scan