๐ธ๐ช
vaia.cloud
2026-09-25 13:30:05
(10 hours ago)
crowdsecurity/http-wordpress-scan
Brute-Force
Web App Attack
๐ช๐ธ
robotstxt
2026-09-25 13:03:12
(11 hours ago)
36.143.220.168 - - [25/Sep/2026:13:02:31 +0000] "GET /wp-content/plugins/cleantalk-spam-protect/read ...
show more
36.143.220.168 - - [25/Sep/2026:13:02:31 +0000] "GET /wp-content/plugins/cleantalk-spam-protect/readme.txt HTTP/1.1" 403 31 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11" "-" edge="36.143.220.168"
36.143.220.168 - - [25/Sep/2026:13:02:33 +0000] "GET /wp-content/plugins/post-duplicator/readme.txt HTTP/1.1" 403 31 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11" "-" edge="36.143.220.168"
36.143.220.168 - - [25/Sep/2026:13:02:36 +0000] "GET /wp-content/plugins/newsletter/readme.txt HTTP/1.1" 403 31 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11" "-" edge="36.143.220.168"
36.143.220.168 - - [25/Sep/2026:13:02:39 +0000] "GET /wp-content/plugins/astra-widgets/readme.txt HTTP/1.1" 403 31 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/53
...
show less
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-09-25 10:20:16
(14 hours ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-09-25 10:05:41
(14 hours ago)
36.143.220.168 - - [25/Sep/2026:12:05:34 +0200] "GET /wp-content/plugins/gallery-videos/readme.txt H ...
show more
36.143.220.168 - - [25/Sep/2026:12:05:34 +0200] "GET /wp-content/plugins/gallery-videos/readme.txt HTTP/1.1" 404 43102 "http://[site]/wp-content/plugins/gallery-videos/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
36.143.220.168 - - [25/Sep/2026:12:05:35 +0200] "GET /wp-content/plugins/tarteaucitronjs/readme.txt HTTP/1.1" 404 42923 "http://[site]/wp-content/plugins/tarteaucitronjs/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
36.143.220.168 - - [25/Sep/2026:12:05:36 +0200] "GET /wp-content/plugins/tc-custom-javascript/readme.txt HTTP/1.1" 404 42923 "http://[site]/wp-content/plugins/tc-custom-javascript/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
36.143.220.168 - - [25/Sep/2026:12:05:37 +0200] "GET /wp-content/plugins/sharethis-share-buttons/readme.txt HTTP/
show less
Web App Attack
Hacking
๐บ๐ธ
antlac1
2026-09-24 20:24:11
(1 day ago)
crowdsecurity/http-wordpress-scan
Brute-Force
Web App Attack
๐บ๐ธ
IndigoRidge
2026-09-24 15:50:34
(1 day ago)
36.143.220.168 - - [24/Sep/2026:11:50:30 -0400] "GET /wp-content/plugins/wp-simple-booking-calendar/ ...
show more
36.143.220.168 - - [24/Sep/2026:11:50:30 -0400] "GET /wp-content/plugins/wp-simple-booking-calendar/readme.txt HTTP/1.1" 404 36076 "http://www.buyersinspectiongroup.com/wp-content/plugins/wp-simple-booking-calendar/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
36.143.220.168 - - [24/Sep/2026:11:50:30 -0400] "GET /wp-content/plugins/wp-marketing-automations/readme.txt HTTP/1.1" 404 36076 "http://www.buyersinspectiongroup.com/wp-content/plugins/wp-marketing-automations/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
36.143.220.168 - - [24/Sep/2026:11:50:33 -0400] "GET /wp-content/plugins/radio-buttons-for-taxonomies/readme.txt HTTP/1.1" 404 36076 "http://www.buyersinspectiongroup.com/wp-content/plugins/radio-buttons-for-taxonomies/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 S
...
show less
Web App Attack
๐ต๐น
Subnet Shadow Specter
2026-09-24 15:27:16
(1 day ago)
[Security Alert] Detected targeted scanning for WordPress vulnerabilities. Access has been automatic ...
show more
[Security Alert] Detected targeted scanning for WordPress vulnerabilities. Access has been automatically blocked, and the IP address has been banned. [Method]: => GET. [Request]: => /wp-content/plugins/whatshelp-chat-button/readme.txt. Access revoked. [User-Agent]: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11. [OS]: Windows. [IP Address]: 36.143.220.168. [IoA Datetime]: 2026-09-24 15:58:26 UTC +1.
show less
Bad Web Bot
Hacking
Port Scan
Web App Attack
Anonymous
2026-09-24 14:32:37
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
IndigoRidge
2026-09-23 18:06:23
(2 days ago)
36.143.220.168 - - [23/Sep/2026:14:06:18 -0400] "GET /wp-content/plugins/classic-editor-and-classic- ...
show more
36.143.220.168 - - [23/Sep/2026:14:06:18 -0400] "GET /wp-content/plugins/classic-editor-and-classic-widgets/readme.txt HTTP/1.1" 404 40477 "http://www.topnotchclemson.com/wp-content/plugins/classic-editor-and-classic-widgets/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
36.143.220.168 - - [23/Sep/2026:14:06:20 -0400] "GET /wp-content/plugins/echo-knowledge-base/readme.txt HTTP/1.1" 404 40477 "http://www.topnotchclemson.com/wp-content/plugins/echo-knowledge-base/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
36.143.220.168 - - [23/Sep/2026:14:06:21 -0400] "GET /wp-content/plugins/bit-form/readme.txt HTTP/1.1" 404 40477 "http://www.topnotchclemson.com/wp-content/plugins/bit-form/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
36.143.220.168 - - [23/Sep/2026:14:06:
...
show less
Web App Attack
Anonymous
2026-09-23 07:56:22
(2 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
IndigoRidge
2026-09-23 07:04:53
(2 days ago)
36.143.220.168 - - [23/Sep/2026:03:04:43 -0400] "GET /wp-content/plugins/wpforo/readme.txt HTTP/1.1" ...
show more
36.143.220.168 - - [23/Sep/2026:03:04:43 -0400] "GET /wp-content/plugins/wpforo/readme.txt HTTP/1.1" 404 47300 "https://lakekeoweerealestate.com/wp-content/plugins/wpforo/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
36.143.220.168 - - [23/Sep/2026:03:04:45 -0400] "GET /wp-content/plugins/image-sizes/readme.txt HTTP/1.1" 404 47300 "https://lakekeoweerealestate.com/wp-content/plugins/image-sizes/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
36.143.220.168 - - [23/Sep/2026:03:04:48 -0400] "GET /wp-content/plugins/integracao-rd-station/readme.txt HTTP/1.1" 404 47300 "https://lakekeoweerealestate.com/wp-content/plugins/integracao-rd-station/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
36.143.220.168 - - [23/Sep/2026:03:04:50 -0400] "GET /wp-content/plugins/login
...
show less
Web App Attack
๐บ๐ธ
xmission.com
2026-09-22 23:13:17
(3 days ago)
36.143.220.168 - - [22/Sep/2026:17:13:00 -0600] "GET /wp-content/plugins/cryout-serious-slider/readm ...
show more
36.143.220.168 - - [22/Sep/2026:17:13:00 -0600] "GET /wp-content/plugins/cryout-serious-slider/readme.txt HTTP/1.1" 404 8773 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
36.143.220.168 - - [22/Sep/2026:17:13:08 -0600] "GET /wp-content/plugins/wp-media-library-categories/readme.txt HTTP/1.1" 404 8773 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
36.143.220.168 - - [22/Sep/2026:17:13:09 -0600] "GET /wp-content/plugins/wp-simple-booking-calendar/readme.txt HTTP/1.1" 404 8773 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
36.143.220.168 - - [22/Sep/2026:17:13:10 -0600] "GET /wp-content/plugins/wp-travel-engine/README.txt HTTP/1.1" 404 8773 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
36.143.220.168 - - [22/Sep/2026:17
...
show less
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-22 21:25:03
(3 days ago)
crowdsecurity/http-wordpress-scan
Brute-Force
Web App Attack
๐บ๐ธ
IndigoRidge
2026-09-22 16:01:45
(3 days ago)
36.143.220.168 - - [22/Sep/2026:12:01:32 -0400] "GET /wp-content/plugins/upi-qr-code-payment-for-woo ...
show more
36.143.220.168 - - [22/Sep/2026:12:01:32 -0400] "GET /wp-content/plugins/upi-qr-code-payment-for-woocommerce/readme.txt HTTP/1.1" 404 32955 "http://thecarolinalens.com/wp-content/plugins/upi-qr-code-payment-for-woocommerce/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
36.143.220.168 - - [22/Sep/2026:12:01:34 -0400] "GET /wp-content/plugins/login-rebuilder/readme.txt HTTP/1.1" 404 32955 "http://thecarolinalens.com/wp-content/plugins/login-rebuilder/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11"
36.143.220.168 - - [22/Sep/2026:12:01:37 -0400] "GET /wp-content/plugins/back-in-stock-notifier-for-woocommerce/readme.txt HTTP/1.1" 404 32955 "http://thecarolinalens.com/wp-content/plugins/back-in-stock-notifier-for-woocommerce/readme.txt" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.
...
show less
Web App Attack
๐บ๐ธ
mnsf
2026-09-22 14:05:37
(3 days ago)
Too many Status 40X (11)
Scanning/Probing (55)
Brute-Force
Web App Attack