๐บ๐ธ
integrantservices.com
2026-07-28 13:24:23
(1 hour ago)
(wordpress) Failed wordpress login from 35.245.42.211 (US/United States/211.42.245.35.bc.googleuserc ...
show more
(wordpress) Failed wordpress login from 35.245.42.211 (US/United States/211.42.245.35.bc.googleusercontent.com)
show less
Brute-Force
๐ต๐ฑ
strefapi_com
2026-07-28 13:24:10
(1 hour ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-07-28 13:10:29
(2 hours ago)
WordPress: User enumeration. Pattern match "(author\\\\= (88030-193)
Hacking
๐บ๐ธ
mnsf
2026-07-28 13:05:32
(2 hours ago)
Abuse Detected (22)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 12:55:26
(2 hours ago)
(mod_security) mod_security (id:225170) triggered by 35.245.42.211 (211.42.245.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 35.245.42.211 (211.42.245.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 08:55:17.671465 2026] [security2:error] [pid 2894247:tid 2894247] [client 35.245.42.211:64024] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.orcastrong.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.orcastrong.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "amimtZhZ8f7M_-iuo0IUcQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
lespbaj
2026-07-28 12:51:36
(2 hours ago)
{"time":"2026-07-28T12:51:34+00:00","ip":"35.245.42.211","method":"GET","uri":"//xmlrpc.php?rsd","ua ...
show more
{"time":"2026-07-28T12:51:34+00:00","ip":"35.245.42.211","method":"GET","uri":"//xmlrpc.php?rsd","ua":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36","referer":""}
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-07-28 12:43:14
(2 hours ago)
Try to access /xmlrpc.php?rsd
Web App Attack
๐จ๐ญ
backslash
2026-07-28 12:42:00
(2 hours ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-28 12:40:08
(2 hours ago)
(mod_security) mod_security (id:225170) triggered by 35.245.42.211 (211.42.245.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 35.245.42.211 (211.42.245.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 08:40:01.607418 2026] [security2:error] [pid 1661360:tid 1661360] [client 35.245.42.211:53682] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||oldsite.soudertonbigred.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "oldsite.soudertonbigred.org"] [uri "/band/wp-json/wp/v2/users/"] [unique_id "amijIdbnT8QGp7vxLIwUUQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
mondor.ro
2026-07-28 12:39:09
(2 hours ago)
Cluster member 148.251.176.225 (DE/Germany/antares.webyouridea.ro) said, DENY 35.245.42.211, Reason: ...
show more
Cluster member 148.251.176.225 (DE/Germany/antares.webyouridea.ro) said, DENY 35.245.42.211, Reason:[(manifest) WordPress wlwmanifest.xml Attack 35.245.42.211 (US/United States/211.42.245.35.bc.googleusercontent.com): 10 in the last 3600 secs]; Ports: *; Direction: inout; Trigger: LF_CLUSTER; Logs:
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-07-28 12:24:40
(2 hours ago)
(mod_security) mod_security (id:225170) triggered by 35.245.42.211 (211.42.245.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 35.245.42.211 (211.42.245.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 08:24:33.531451 2026] [security2:error] [pid 2286276:tid 2286276] [client 35.245.42.211:54976] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nuevo.allcostaricarentals.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nuevo.allcostaricarentals.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "amifgdA6lBYsDhgnjS3xIgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-07-28 12:24:04
(2 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: xmlrpc. O ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: xmlrpc. Observed by 1 sensor(s); 57 hits.
show less
Brute-Force
Web App Attack
๐ซ๐ท
conseilgouz
2026-07-28 12:22:36
(2 hours ago)
npe-7 : Trying access unauthorized files/dir=>//wp-includes/wlwmanifest.xml
Hacking
๐ฎ๐น
VHosting
2026-07-28 12:20:03
(2 hours ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack