๐ธ๐ฎ
administrator
2026-09-24 22:13:30
(16 hours ago)
2026-09-23 10:32:53,170 fail2ban.actions [1182]: NOTICE [apache-badbots] Ban 35.232.9.111
20 ...
show more
2026-09-23 10:32:53,170 fail2ban.actions [1182]: NOTICE [apache-badbots] Ban 35.232.9.111
2026-09-23 10:32:53,170 fail2ban.actions [1182]: NOTICE [apache-badbots] Ban 35.232.9.111
2026-09-23 10:32:53,170 fail2ban.actions [1182]: NOTICE [apache-badbots] Ban 35.232.9.111
...
show less
Bad Web Bot
Web Spam
Email Spam
Blog Spam
Port Scan
Brute-Force
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-09-24 04:08:09
(1 day ago)
Wordpress malicious attack:[octaflood]
Web App Attack
Anonymous
2026-09-23 14:31:37
(1 day ago)
Web probing (1 hits in 24h) on limburgsekunstkring.nl: sensitive-path scans and/or 404 bursts. Repor ...
show more
Web probing (1 hits in 24h) on limburgsekunstkring.nl: sensitive-path scans and/or 404 bursts. Reported by CRMON.
show less
Web App Attack
๐ฉ๐ช
maxpower
2026-09-23 08:54:03
(2 days ago)
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 35.232.9.111 (US/United States/111.9.232.35.bc ...
show more
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 35.232.9.111 (US/United States/111.9.232.35.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 35.232.9.111 - - [23/Sep/2026:10:54:01 +0200] "POST /xmlrpc.php HTTP/2.0" 200 4812 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 Safari/537.36" "-" host=ramsesconsulting.it
show less
Port Scan
๐บ๐ธ
integrantservices.com
2026-09-23 08:50:17
(2 days ago)
(wordpress) Failed wordpress login from 35.232.9.111 (US/United States/111.9.232.35.bc.googleusercon ...
show more
(wordpress) Failed wordpress login from 35.232.9.111 (US/United States/111.9.232.35.bc.googleusercontent.com)
show less
Brute-Force
๐ซ๐ท
ingroscart.it
2026-09-23 08:40:29
(2 days ago)
(wordpress) Failed wordpress login from 35.232.9.111 (US/United States/Iowa/Council Bluffs/111.9.232 ...
show more
(wordpress) Failed wordpress login from 35.232.9.111 (US/United States/Iowa/Council Bluffs/111.9.232.35.bc.googleusercontent.com/[redacted])
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-23 08:32:15
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 35.232.9.111 (111.9.232.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 35.232.9.111 (111.9.232.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 04:32:11.970964 2026] [security2:error] [pid 9865:tid 9865] [client 35.232.9.111:55394] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ramseycountycorruption.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ramseycountycorruption.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "arOOiyHBih_ST5IfU8Lt3gAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-09-23 08:31:28
(2 days ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ฆ๐บ
A.i.D.A.N.N
2026-09-23 08:27:28
(2 days ago)
A.i.D.A.N.N: Anomaly Detected - Signature match Web Service - Web vulnerability scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 08:07:59
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 35.232.9.111 (111.9.232.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 35.232.9.111 (111.9.232.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 04:07:51.500420 2026] [security2:error] [pid 32064:tid 32064] [client 35.232.9.111:36770] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||equipoperu.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "equipoperu.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "arOI1xLlFnMg2COIphsBRwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 06:29:16
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 35.232.9.111 (111.9.232.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 35.232.9.111 (111.9.232.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 02:29:12.014738 2026] [security2:error] [pid 20064:tid 20064] [client 35.232.9.111:39634] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lusineweb.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lusineweb.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "arNxuMpLroBU25iQ1efjtQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 05:40:55
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 35.232.9.111 (111.9.232.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 35.232.9.111 (111.9.232.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 01:40:51.856019 2026] [security2:error] [pid 30834:tid 30834] [client 35.232.9.111:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.bradleybarefoot.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.bradleybarefoot.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "arNmYwx9QsR69pKLxg0T0wAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-15 14:10:02
(5 months ago)
| Shellshock attack attempt
Web App Attack
Hacking
SQL Injection
Anonymous
2026-04-15 05:10:09
(5 months ago)
Aggressive web scan
Web App Attack