๐ง๐ช
taivas.nl
2026-06-15 04:32:35
(2 days ago)
Many_bad_calls
Web App Attack
๐บ๐ธ
mnsf
2026-06-15 00:14:54
(2 days ago)
Too many Status 40X (13)
Brute-Force
Web App Attack
๐ง๐ช
cmbplf
2026-06-14 17:02:39
(2 days ago)
8.184 requests in 1 hour (3mos16h59m)
Brute-Force
Bad Web Bot
๐ซ๐ท
Feelautom
2026-06-14 16:15:06
(2 days ago)
[FeelAutom Auto-Ban] AI Analyst: WordPress path scanning (8 hits) with score 160/200
Hacking
๐ง๐ช
taivas.nl
2026-06-14 16:02:13
(2 days ago)
Bad_requests
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-14 16:01:54
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 34.78.197.214 (214.197.78.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.78.197.214 (214.197.78.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 12:01:48.180127 2026] [security2:error] [pid 2038:tid 2038] [client 34.78.197.214:50548] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||unitedletter.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "unitedletter.com"] [uri "/upload/wp-json/wp/v2/users/"] [unique_id "ai7QbM32eiVgKwTvWgnaJwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
grassau.com
2026-06-14 15:45:19
(2 days ago)
(wordpress) Failed wordpress login from 34.78.197.214 (BE/Belgium/Brussels Capital/Brussels/214.197. ...
show more
(wordpress) Failed wordpress login from 34.78.197.214 (BE/Belgium/Brussels Capital/Brussels/214.197.78.34.bc.googleusercontent.com)
show less
Brute-Force
๐จ๐ญ
Origon
2026-06-14 15:44:47
(2 days ago)
http-probing - IP: 34.78.197.214 - time="2026-06-14T17:44:46+02:00" level=info msg="(555f66b4f6a745 ...
show more
http-probing - IP: 34.78.197.214 - time="2026-06-14T17:44:46+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-probing by ip 34.78.197.214 (BE/396982) : 4h ban on Ip 34.78.197.214" module=db
show less
Web App Attack
๐บ๐ธ
kosada.com
2026-06-14 15:36:31
(2 days ago)
Web vulnerability probing: /wp/wp-includes/wlwmanifest.xml
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 15:35:12
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 34.78.197.214 (214.197.78.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.78.197.214 (214.197.78.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 11:35:07.018888 2026] [security2:error] [pid 25836:tid 25836] [client 34.78.197.214:54058] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ubuciko.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ubuciko.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ai7KK_edTj6-geLPA8dEpAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-06-14 15:27:00
(2 days ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐ฉ๐ช
big-cloud.nl
2026-06-14 15:22:27
(2 days ago)
Try to access /xmlrpc.php?rsd
Web App Attack
Anonymous
2026-06-14 15:21:05
(2 days ago)
Bot / scanning and/or hacking attempts: POST //xmlrpc.php HTTP/1.1
Hacking
Web App Attack
๐ฉ๐ช
AetherFox
2026-06-14 15:16:56
(2 days ago)
AetherFox VoidGuard detected: [Sun Jun 14 15:16:55.025233 2026] [authz_core:error] [pid 599536:tid 5 ...
show more
AetherFox VoidGuard detected: [Sun Jun 14 15:16:55.025233 2026] [authz_core:error] [pid 599536:tid 599562] [client 34.78.197.214:52919] AH01630: client denied by server configuration: proxy:https://[MASKED]/wp-includes/ID3/license.txt
[Sun Jun 14 15:16:55.051493 2026] [authz_core:error] [pid 599536:tid 599558] [client 34.78.197.214:52919] AH01630: client denied by server configuration: proxy:https://[MASKED]/feed/
[Sun Jun 14 15:16:55.064530 2026] [authz_core:error] [pid 599536:tid 599548] [client 34.78.197.214:52919] AH01630: client denied by server configuration: proxy:https://[MASKED]/xmlrpc.php
[Sun Jun 14 15:16:55.091995 2026] [authz_core:error] [pid 599536:tid 599560] [client 34.78.197.214:52919] AH01630: client denied by server configuration: proxy:https://[MASKED]/blog/wp-includes/wlwmanifest.xml
[Sun Jun 14 15:16:55.107455 2026] [authz_core:error] [pid 599536:tid 599549] [client 34.78.197.214:52919] AH01630: client denied by server configuration
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 15:15:13
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 34.78.197.214 (214.197.78.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.78.197.214 (214.197.78.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 11:15:06.474818 2026] [security2:error] [pid 12877:tid 12877] [client 34.78.197.214:50604] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.truthsabouthealthcare.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.truthsabouthealthcare.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ai7FenRkG__i8QtQX-xWGwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack