Anonymous
2024-10-12 15:47:47
(1 year ago)
wordpress-trap
Web App Attack
๐ง๐ช
cmbplf
2024-09-27 18:30:00
(1 year ago)
996 requests to */xmlrpc.php
Brute-Force
Bad Web Bot
๐บ๐ธ
ALSCOยฎ๏ธ
2024-09-05 22:00:54
(1 year ago)
Report By ALSCO Security Team: XSS Injection Attempt Detected
Hacking
๐บ๐ธ
Secure Gatewayยฎ๏ธ
2024-09-05 22:00:53
(1 year ago)
Report By Secure Gateway Security Team: XSS Injection Attempt Detected
Web App Attack
Anonymous
2024-09-04 15:40:35
(1 year ago)
wordpress-trap
Web App Attack
๐ซ๐ท
COMAITE
2024-09-04 12:48:10
(1 year ago)
Multiple web server 400 error codes from same source ip 45.8.19.167.
Web App Attack
๐ซ๐ท
pm33
2024-08-27 16:48:26
(1 year ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
๐ฉ๐ช
uhlhosting
2024-08-27 11:35:22
(1 year ago)
africanbushdoctorz.com 45.8.19.167 - - [27/Aug/2024:13:35:20.800832 +0200] "GET /en/index.php HTTP/1 ...
show more
africanbushdoctorz.com 45.8.19.167 - - [27/Aug/2024:13:35:20.800832 +0200] "GET /en/index.php HTTP/1.1" 403 199 "-" "-" Zs25-EYKrl4XyYz7aOj2EQAAAAA "-" /apache/20240827/20240827-1335/20240827-133520-Zs25-EYKrl4XyYz7aOj2EQAAAAA 0 1675 md5:2e22d713f852f08e013740fbf451b628
africanbushdoctorz.com 45.8.19.167 - - [27/Aug/2024:13:35:21.095284 +0200] "GET /index/function.php HTTP/1.1" 403 199 "-" "-" Zs25-UYKrl4XyYz7aOj2EgAAAAg "-" /apache/20240827/20240827-1335/20240827-133521-Zs25-UYKrl4XyYz7aOj2EgAAAAg 0 1687 md5:2dca22677a6c82bca66cc9c2314d4772
africanbushdoctorz.com 45.8.19.167 - - [27/Aug/2024:13:35:21.592863 +0200] "GET /wp-content/plugins/ubh/up.php HTTP/1.1" 403 199 "-" "-" Zs25-UYKrl4XyYz7aOj2EwAAAAk "-" /apache/20240827/20240827-1335/20240827-133521-Zs25-UYKrl4XyYz7aOj2EwAAAAk 0 1709 md5:2768fbea49c714af146ca0f6da94330a
africanbushdoctorz.com 45.8.19.167 - - [27/Aug/2024:13:35:21.904546 +0200] "GET /wp-login.php HTTP/1.1" 403 199 "-" "-" Zs25-UYKrl4XyYz7aOj2FAAAAA0 "-" /apache/2
...
show less
DDoS Attack
Brute-Force
Anonymous
2024-08-26 12:49:45
(1 year ago)
wordpress-trap
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-24 21:40:43
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 45.8.19.167 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.8.19.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 24 17:40:39.234879 2024] [security2:error] [pid 23220:tid 23220] [client 45.8.19.167:44993] [client 45.8.19.167] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "firejasstrio.com"] [uri "/wp-config.php"] [unique_id "ZspTVzwC37P87VZuCj_wKAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-08-23 07:49:43
(1 year ago)
wordpress-trap
Web App Attack
๐บ๐ธ
mw
2024-08-23 04:53:29
(1 year ago)
45.8.19.167 - - [22/Aug/2024:23:53:23 -0500] "GET /sidwsi.PhP7 HTTP/1.1" 404 36305 "http://www.kenco ...
show more
45.8.19.167 - - [22/Aug/2024:23:53:23 -0500] "GET /sidwsi.PhP7 HTTP/1.1" 404 36305 "http://www.kencook.com/sidwsi.PhP7" "Go-http-client/1.1"
45.8.19.167 - - [22/Aug/2024:23:53:25 -0500] "GET /wp-content/radio.php HTTP/1.1" 404 136 "http://www.kencook.com/wp-content/radio.php" "Go-http-client/1.1"
45.8.19.167 - - [22/Aug/2024:23:53:26 -0500] "GET /wp-admin/dropdown.php HTTP/1.1" 404 136 "http://www.kencook.com/wp-admin/dropdown.php" "Go-http-client/1.1"
45.8.19.167 - - [22/Aug/2024:23:53:27 -0500] "GET /wp-l0gin.php HTTP/1.1" 404 136 "http://www.kencook.com/wp-l0gin.php" "Go-http-client/1.1"
45.8.19.167 - - [22/Aug/2024:23:53:28 -0500] "GET /s.php HTTP/1.1" 404 136 "http://www.kencook.com/s.php" "Go-http-client/1.1"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-20 20:22:41
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 45.8.19.167 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.8.19.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 20 16:22:37.360977 2024] [security2:error] [pid 3738372:tid 3738372] [client 45.8.19.167:50847] [client 45.8.19.167] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kraatzrussell.com"] [uri "/wp-config.php"] [unique_id "ZsT7DZThrbrH7JhRuFQ9mAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-07-15 00:05:49
(2 years ago)
$f2bV_matches
Brute-Force
Anonymous
2024-07-06 17:22:24
(2 years ago)
(wordpress) Failed wordpress login from 45.8.19.167 (US/United States/-)
Brute-Force