๐ฉ๐ช
Blexyel
2026-06-30 07:39:11
(2 hours ago)
34.90.154.92 - - [30/Jun/2026:09:39:11 +0200] "GET //blog/wp-includes/wlwmanifest.xml HTTP/1.1" 404 ...
show more
34.90.154.92 - - [30/Jun/2026:09:39:11 +0200] "GET //blog/wp-includes/wlwmanifest.xml HTTP/1.1" 404 435 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36" "share.fomx.gay"
...
show less
Brute-Force
Web App Attack
๐ฉ๐ช
AetherFox
2026-06-30 07:34:07
(2 hours ago)
AetherFox VoidGuard detected: [Tue Jun 30 07:34:06.596095 2026] [authz_core:error] [pid 2921667:tid ...
show more
AetherFox VoidGuard detected: [Tue Jun 30 07:34:06.596095 2026] [authz_core:error] [pid 2921667:tid 2921689] [client 34.90.154.92:63630] AH01630: client denied by server configuration: proxy:https://[MASKED]/wp-includes/id3/license.txt/feed/
[Tue Jun 30 07:34:06.706468 2026] [authz_core:error] [pid 2921667:tid 2921670] [client 34.90.154.92:63630] AH01630: client denied by server configuration: proxy:https://[MASKED]/wp-includes/id3/license.txt/xmlrpc.php
[Tue Jun 30 07:34:06.856916 2026] [authz_core:error] [pid 2921667:tid 2921691] [client 34.90.154.92:63630] AH01630: client denied by server configuration: proxy:https://[MASKED]/wp-includes/id3/license.txt/blog/wp-includes/wlwmanifest.xml
[Tue Jun 30 07:34:06.914556 2026] [authz_core:error] [pid 2921667:tid 2921671] [client 34.90.154.92:63630] AH01630: client denied by server configuration: proxy:https://[MASKED]/wp-includes/id3/license.txt/web/wp-includes/wlwmanifest.xml
[Tue Jun 30 07:34:06.971125 2026
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
Kenshin869
2026-06-30 07:28:44
(2 hours ago)
Wordpress unauthorized access attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-30 07:27:16
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.90.154.92 (92.154.90.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 34.90.154.92 (92.154.90.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 30 03:27:10.127796 2026] [security2:error] [pid 19923:tid 19923] [client 34.90.154.92:55415] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||forefrontmusic.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "forefrontmusic.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "akNvzvu9Im0d9PqFuK7i8AAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
m_vlasov
2026-06-30 07:22:56
(3 hours ago)
SSH/Telnet honeypot: 0 login attempts, 0 sessions, 0 shell commands.
Hacking
๐บ๐ธ
lostswordfish.com
2026-06-30 07:22:05
(3 hours ago)
Wordfence waf block on lostswordfish
Web App Attack
๐จ๐ญ
4server
2026-06-30 07:19:36
(3 hours ago)
[TueJun3009:19:33.5100002026][security2:error][pid2194936:tid2195261][client34.90.154.92:0]ModSecuri ...
show more
[TueJun3009:19:33.5100002026][security2:error][pid2194936:tid2195261][client34.90.154.92:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"368\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"foodelivery.benvenutialfood.ch\"][uri\"/xmlrpc.php\"][unique_id\"akNuBcWz-a59E03XSjrUGQAAANQ\"]
show less
Hacking
Web App Attack
๐ฉ๐ช
Blexyel
2026-06-30 07:18:05
(3 hours ago)
34.90.154.92 - - [30/Jun/2026:09:18:04 +0200] "GET //blog/wp-includes/wlwmanifest.xml HTTP/1.1" 404 ...
show more
34.90.154.92 - - [30/Jun/2026:09:18:04 +0200] "GET //blog/wp-includes/wlwmanifest.xml HTTP/1.1" 404 577 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
...
show less
Brute-Force
Web App Attack
Anonymous
2026-06-30 07:17:22
(3 hours ago)
34.90.154.92 - - [30/Jun/2026:15:17:22 +0800] "GET //xmlrpc.php?rsd HTTP/1.1" 404 16 "-" "Mozilla/5. ...
show more
34.90.154.92 - - [30/Jun/2026:15:17:22 +0800] "GET //xmlrpc.php?rsd HTTP/1.1" 404 16 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-06-30 07:17:04
(3 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-06-30 07:10:57
(3 hours ago)
Unauthorized access to webpage admin
Web App Attack
Anonymous
2026-06-30 07:05:05
(3 hours ago)
Automatic report - Vulnerability scan
/xmlrpc.php?rsd
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-30 06:57:58
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.90.154.92 (92.154.90.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 34.90.154.92 (92.154.90.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 30 02:57:53.943459 2026] [security2:error] [pid 20875:tid 20875] [client 34.90.154.92:60230] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.feiz.church|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.feiz.church"] [uri "/wp-json/wp/v2/users/"] [unique_id "akNo8carM6V6FKnBUXkptwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
zynex
2026-06-30 06:55:59
(3 hours ago)
URL Probing: /wp1/wp-includes/wlwmanifest.xml
Web App Attack
๐ท๐บ
DZBOT
2026-06-30 06:55:40
(3 hours ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack