|
Anonymous
|
|
Auto-reported by Fail2Ban (NPM-Auth)
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 34.32.154.181 (181.154.32.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.32.154.181 (181.154.32.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 13:12:35.515344 2026] [security2:error] [pid 23066:tid 23066] [client 34.32.154.181:57335] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.cassialifesci.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.cassialifesci.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aib4AwC_kTu_N6xDL7kDJgAAABU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ณ๐ฑ
Site.eu
|
|
Repeated wp-login/xmlrpc attempts
|
Brute-Force
SSH
|
|
|
๐ณ๐ฟ
Antinson
|
|
Scraping with a high error ratio and request rate
|
Bad Web Bot
|
|
|
๐บ๐ธ
Lee Daniel
|
|
34.32.154.181 - - [08/Jun/2026:12:49:27 -0400] "GET //web/wp-includes/wlwmanifest.xml HTTP/1.1" 404 ...
show more
34.32.154.181 - - [08/Jun/2026:12:49:27 -0400] "GET //web/wp-includes/wlwmanifest.xml HTTP/1.1" 404 2895 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
34.32.154.181 - - [08/Jun/2026:12:49:27 -0400] "GET //wordpress/wp-includes/wlwmanifest.xml HTTP/1.1" 404 2897 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
34.32.154.181 - - [08/Jun/2026:12:49:27 -0400] "GET //wp/wp-includes/wlwmanifest.xml HTTP/1.1" 404 2893 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
34.32.154.181 - - [08/Jun/2026:12:49:27 -0400] "GET //2020/wp-includes/wlwmanifest.xml HTTP/1.1" 404 2895 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
34.32.154.181 - - [08/Jun/2026:12:49:28 -0400] "GET //2019/wp-includes/wlwmanifest.xml HTT
...
show less
|
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
Anonymous
|
|
[server.tmg.gr] httpd-suspicious-path: sites=cardioathena2023.gr,cardiobridge2023.gr,cardiorenal2020 ...
show more
[server.tmg.gr] httpd-suspicious-path: sites=cardioathena2023.gr,cardiobridge2023.gr,cardiorenal2020.gr,eumedline.eu.cardiology; logs=/var/log/httpd/domains/cardioathena2023.gr.log,/var/log/httpd/domains/cardiobridge2023.gr.log,/var/log/httpd/domains/cardiorenal2020.gr.log; samples=/wp-includes/ID3/license.txt | /blog/wp-includes/wlwmanifest.xml | /web/wp-includes/wlwmanifest.xml
show less
|
Hacking
Web App Attack
|
|
|
๐บ๐ธ
integrantservices.com
|
|
(wordpress) Failed wordpress login from 34.32.154.181 (181.154.32.34.bc.googleusercontent.com)
|
Brute-Force
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:240335) triggered by 34.32.154.181 (181.154.32.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:240335) triggered by 34.32.154.181 (181.154.32.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 12:43:00.877072 2026] [security2:error] [pid 22279:tid 22279] [client 34.32.154.181:63362] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 34.32.154.181 (+1 hits since last alert)|www.capitalswisscorp.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.capitalswisscorp.com"] [uri "/xmlrpc.php"] [unique_id "aibxFL_sg-U7y9CMQExIOQAAABY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ซ๐ท
Baking333
|
|
[redacted] 34.32.154.181 - - [08/Jun/2026:17:35:41 +0100] "GET //wp-includes/ID3/[redacted] HTTP/1.1 ...
show more
[redacted] 34.32.154.181 - - [08/Jun/2026:17:35:41 +0100] "GET //wp-includes/ID3/[redacted] HTTP/1.1" 302 1528 0/99495 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36" [redacted] 34.32.154.181 - - [08/Jun/2026:17:35:41 +0100] "GET /[redacted]?rsd HTTP/1.1" 302 1527 0/81746 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
show less
|
Bad Web Bot
Web App Attack
|
|
|
๐ฌ๐ง
AvonleaConsulting
|
|
Scanning unused Default website or suspicious access to valid sites from IP marked as abusive
|
Bad Web Bot
Web App Attack
|
|
|
๐ฉ๐ช
Viveronese
|
|
HTTP vulnerability scanning
|
Web App Attack
|
|
|
Anonymous
|
|
Auto-reported by Fail2Ban (NPM-Auth)
|
Web App Attack
|
|
|
๐บ๐ธ
slay3r9903
|
|
IP address blocked by Cloudflare security rules due to suspicious activity and security violations.
|
Hacking
Bad Web Bot
|
|
|
๐ณ๐ฑ
Savvii
|
|
10 attempts against mh-misc-ban on frost
|
Web App Attack
|
|
|
๐ง๐พ
lns.bz
|
|
Too many 404 requests [BY]
|
Web App Attack
|
|