๐ฌ๐ท
setupgr
2026-07-04 09:06:14
(2 hours ago)
(wplogin_block) Blocked WP-Login Access Attempt 46.163.72.195 (FR/France/Grand Est/Strasbourg/-/[AS8 ...
show more
(wplogin_block) Blocked WP-Login Access Attempt 46.163.72.195 (FR/France/Grand Est/Strasbourg/-/[AS8972 GD-EMEA-DC-SXB1]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 46.163.72.195 - - [04/Jul/2026:12:04:18 +0300] "POST /wp-login.php HTTP/1.1" 503 7317 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.43 (KHTML, like Gecko) Chrome/139.0.0.0 Safari/537.36 OPR/123.0.0.0"
show less
Port Scan
๐ฉ๐ช
iNetWorker
2026-07-04 01:45:54
(9 hours ago)
trolling for resource vulnerabilities
Web App Attack
๐ซ๐ท
masterguru
2026-07-03 21:52:35
(13 hours ago)
wp-login request blocked, no referer. Pattern match "wp-login.php" at REQUEST_URI. (88020-195)
Hacking
๐ซ๐ท
tilellit.pro
2026-07-02 17:46:18
(1 day ago)
tilellit/wp-armour-ban
Hacking
๐บ๐ธ
nationaleventpros.com
2026-06-29 14:51:10
(4 days ago)
WordPress login attempt
Brute-Force
Anonymous
2026-06-28 13:16:21
(5 days ago)
Web attack blocked by Wordfence on www.museumvalkenburg.nl (1 hit). Reported by CRMON.
Web App Attack
๐ฉ๐ช
LRob
2026-06-26 21:15:03
(1 week ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
๐ง๐พ
lns.bz
2026-06-26 02:48:38
(1 week ago)
Banned for trying to access xmlrpc [BY]
Web App Attack
๐ท๐ด
INTEQ
2026-06-25 09:01:31
(1 week ago)
Web attack from 46.163.72.195
Web App Attack
๐ฉ๐ช
LRob
2026-06-25 06:30:05
(1 week ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-23 17:41:05
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 46.163.72.195 (mail.dym-tech.de): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 46.163.72.195 (mail.dym-tech.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 13:41:00.215024 2026] [security2:error] [pid 10642:tid 10642] [client 46.163.72.195:49380] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bonesband.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bonesband.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajrFLE7IBsEvCEEq9SnIIQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-03 23:47:40
(1 month ago)
[server.tmg.gr] httpd-suspicious-path: sites=crisis-management2018.eu; logs=/var/log/httpd/domains/c ...
show more
[server.tmg.gr] httpd-suspicious-path: sites=crisis-management2018.eu; logs=/var/log/httpd/domains/crisis-management2018.eu.log; samples=/wp-json/wp/v2/users | /?author=1 | /author/admin/
show less
Hacking
Web App Attack
Anonymous
2026-06-03 02:30:03
(1 month ago)
Web App Attack, Hacking
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 22:49:07
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 46.163.72.195 (mail.dym-tech.de): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 46.163.72.195 (mail.dym-tech.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 18:49:01.709716 2026] [security2:error] [pid 18824:tid 18824] [client 46.163.72.195:46576] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.breezentry.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.breezentry.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah9d3di2EnCPDkhYz0ohlQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-16 08:45:39
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 46.163.72.195 (mail.dym-tech.de): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 46.163.72.195 (mail.dym-tech.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 16 04:45:31.790992 2026] [security2:error] [pid 4329:tid 4329] [client 46.163.72.195:49964] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.jdeloa.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.jdeloa.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agguq2BrnUv4nA1DkbhXhAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack