🇧🇪
cmbplf
2026-09-03 15:35:34
(4 days ago)
7.738 requests with url.path //xmlrpc.php
2.803 requests with url.path */wp-includes/wlwmanifest.x ...
show more
7.738 requests with url.path //xmlrpc.php
2.803 requests with url.path */wp-includes/wlwmanifest.xml
show less
Brute-Force
Bad Web Bot
🇸🇪
drosan
2026-09-03 15:32:00
(4 days ago)
Wordpress probing: /cms/wp-includes/...
/wp2/wp-includes/...
/test/wp-includes/...
/shop/wp-inclu ...
show more
Wordpress probing: /cms/wp-includes/...
/wp2/wp-includes/...
/test/wp-includes/...
/shop/wp-includes/...
/wordpress/wp-includes/...
/blog/wp-includes/...
/xmlrpc.php
show less
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-03 14:05:28
(4 days ago)
Abuse Detected (10)
Brute-Force
Web App Attack
🇫🇷
Zundapper
2026-09-03 13:57:13
(4 days ago)
34.48.24.193 - - [03/Sep/2026:15:57:12 +0200] "GET //wp-includes/wlwmanifest.xml HTTP/1.1" 404 548 " ...
show more
34.48.24.193 - - [03/Sep/2026:15:57:12 +0200] "GET //wp-includes/wlwmanifest.xml HTTP/1.1" 404 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
34.48.24.193 - - [03/Sep/2026:15:57:12 +0200] "GET //blog/wp-includes/wlwmanifest.xml HTTP/1.1" 404 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
34.48.24.193 - - [03/Sep/2026:15:57:13 +0200] "GET //web/wp-includes/wlwmanifest.xml HTTP/1.1" 404 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
34.48.24.193 - - [03/Sep/2026:15:57:13 +0200] "GET //wordpress/wp-includes/wlwmanifest.xml HTTP/1.1" 404 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
34.48.24.193 - - [03/Sep/2026:15:57:13 +0200] "GET //website/wp-includes/wlwmanifest.xml HTTP/1.1
...
show less
Web App Attack
Port Scan
🇩🇪
raph
2026-09-03 13:50:41
(4 days ago)
[Wordpress] crawler /wp-admin/*, /wp-content/*, etc.
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 13:48:54
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 34.48.24.193 (193.24.48.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 34.48.24.193 (193.24.48.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 09:48:49.428397 2026] [security2:error] [pid 21652:tid 21652] [client 34.48.24.193:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cloudex.link|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cloudex.link"] [uri "/wp-json/wp/v2/users/"] [unique_id "apl6wYGpVp2FaUupmmEBUwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
AvonleaConsulting
2026-09-03 13:34:27
(4 days ago)
Scanning unused Default website or suspicious access to valid sites from IP marked as abusive
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-03 13:34:18
(4 days ago)
15 attempts against mh-modsecurity-ban on pf221107
Brute-Force
Web App Attack
🇨🇦
Sakusen
2026-09-03 13:24:40
(4 days ago)
Automated web scanning: 11 reqs, 9 paths probed, 9 returned 404; probed: 9 .xml
Bad Web Bot
🇩🇪
FeG Deutschland
2026-09-03 13:22:54
(4 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
🇮🇹
VHosting
2026-09-03 13:10:04
(4 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-09-03 13:09:12
(4 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
Anonymous
2026-09-03 13:08:40
(4 days ago)
[Thu Sep 03 15:08:39.007427 2026] [authz_core:error] [pid 789580:tid 789580] [client 34.48.24.193:56 ...
show more
[Thu Sep 03 15:08:39.007427 2026] [authz_core:error] [pid 789580:tid 789580] [client 34.48.24.193:56223] AH01630: client denied by server configuration: /var/lib/slidge/attachments
[Thu Sep 03 15:08:39.135000 2026] [authz_core:error] [pid 789580:tid 789580] [client 34.48.24.193:56223] AH01630: client denied by server configuration: /var/lib/slidge/attachments
[Thu Sep 03 15:08:39.278112 2026] [authz_core:error] [pid 789580:tid 789580] [client 34.48.24.193:56223] AH01630: client denied by server configuration: /var/lib/slidge/attachments
...
show less
Brute-Force
Web App Attack