๐ธ๐ฎ
administrator
2026-06-10 22:01:44
(2 days ago)
2026-06-07 00:01:33,098 fail2ban.actions [1128]: NOTICE [webadmin-badips] Ban 46.224.234.158 ...
show more
2026-06-07 00:01:33,098 fail2ban.actions [1128]: NOTICE [webadmin-badips] Ban 46.224.234.158
2026-06-08 00:01:06,107 fail2ban.actions [1104]: NOTICE [webadmin-badips] Ban 46.224.234.158
2026-06-10 00:04:17,369 fail2ban.actions [1080]: NOTICE [webadmin-badips] Ban 46.224.234.158
2026-06-07 00:01:33,098 fail2ban.actions [1128]: NOTICE [webadmin-badips] Ban 46.224.234.158
...
show less
Bad Web Bot
Web Spam
Email Spam
Blog Spam
Port Scan
Brute-Force
Web App Attack
Anonymous
2026-06-10 17:46:21
(2 days ago)
Failed Wordpress Logins
Web App Attack
๐ซ๐ท
tecnicorioja
2026-06-09 22:00:42
(3 days ago)
POST /xmlrpc.php [09/Jun/2026:15:22:10
Brute-Force
Web App Attack
๐ซ๐ท
solution.it
2026-06-09 14:04:22
(3 days ago)
[Tue Jun 09 16:04:22.505032 2026] [php7:error] [pid 2374707:tid 2374707] [client 46.224.234.158:3640 ...
show more
[Tue Jun 09 16:04:22.505032 2026] [php7:error] [pid 2374707:tid 2374707] [client 46.224.234.158:36408] script '/var/www/html/blog.solution.it/wp-login.php' not found or unable to stat
show less
Web App Attack
๐ฉ๐ช
barbarella
2026-06-09 13:50:00
(3 days ago)
unauthorized access to Visual Studio Code - SFTP Extension (GET /wp-json/wp/v2/users/me)
Hacking
Web App Attack
๐ฉ๐ช
london2038.com
2026-06-09 13:43:50
(3 days ago)
Probing for exploits
46.224.234.158 - - [09/Jun/2026:14:48:16 +0200] "GET /wp-login.php HTTP/2.0" 30 ...
show more
Probing for exploits
46.224.234.158 - - [09/Jun/2026:14:48:16 +0200] "GET /wp-login.php HTTP/2.0" 301 0 "-" "Mozilla/5.0 (X11; Fedora; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
46.224.234.158 - - [09/Jun/2026:15:43:47 +0200] "GET /wp-login.php HTTP/2.0" 301 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
show less
Hacking
Web App Attack
๐ฉ๐ช
Marc
2026-06-09 13:14:01
(3 days ago)
46.224.234.158 - - [09/Jun/2026:13:46:36 +0200] "GET /wp-login.php HTTP/2.0" 200 3463 "-" "Mozilla/5 ...
show more
46.224.234.158 - - [09/Jun/2026:13:46:36 +0200] "GET /wp-login.php HTTP/2.0" 200 3463 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36" 46.224.234.158 - - [09/Jun/2026:13:46:36 +0200] "POST /wp-login.php HTTP/2.0" 200 3371 "https://www.heckmann-elektro.de/wp-login.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36" 46.224.234.158 - - [09/Jun/2026:13:50:21 +0200] "GET /wp-login.php HTTP/1.1" 200 4233 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36" 46.224.234.158 - - [09/Jun/2026:15:13:55 +0200] "GET /wp-login.php HTTP/2.0" 200 4086 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36" 46.224.234.158 - - [09/Jun/2026:15:14:00 +0200] "POST /wp-login.php HTTP/2.0" 403 11160 "https://saatschule.de/wp-login.php" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64)
show less
Brute-Force
Web App Attack
๐จ๐ฆ
KIsmay
2026-06-09 11:19:21
(3 days ago)
Jun 9 06:39:15 www4 WPAudit[1131327]: 46.224.234.158 nelsonbcwelding.com "Mozilla/5.0 (Macintosh; I ...
show more
Jun 9 06:39:15 www4 WPAudit[1131327]: 46.224.234.158 nelsonbcwelding.com "Mozilla/5.0 (Macintosh; Intel Mac OS X 11_7_10) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36" sbd-admin:sbd-admin77 FAIL
Jun 9 06:43:00 www4 WPAudit[1131583]: 46.224.234.158 hvrhaulers.com "Mozilla/5.0 (Windows NT 10.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36" sbd-admin:sbd-admin09 FAIL
Jun 9 06:48:09 www4 WPAudit[1131889]: 46.224.234.158 www.trilloperelloyates.com "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:133.0) Gecko/20100101 Firefox/133.0" trillo:trillo16 FAIL
Jun 9 07:14:57 www4 WPAudit[1133675]: 46.224.234.158 ouchiaccounting.ca "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36" bwouchi:@bwouchi@ FAIL
Jun 9 07:19:21 www4 WPAudit[1131103]: 46.224.234.158 siscobc.com "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36" sisco:
...
show less
Brute-Force
Web App Attack
Anonymous
2026-06-09 11:17:31
(3 days ago)
46.224.234.158 - - [09/Jun/2026:13:17:29 +0200] "POST /xmlrpc.php HTTP/1.1" 200 426
...
Brute-Force
Bad Web Bot
Anonymous
2026-06-09 09:46:59
(3 days ago)
[Tue Jun 09 10:35:52.566001 2026] [authz_core:error] [pid 102812:tid 102872] [client 46.224.234.158: ...
show more
[Tue Jun 09 10:35:52.566001 2026] [authz_core:error] [pid 102812:tid 102872] [client 46.224.234.158:46716] AH01630: client denied by server configuration: /var/www/cimt-precision/wp-login.php
[Tue Jun 09 10:35:52.636412 2026] [authz_core:error] [pid 102812:tid 102873] [client 46.224.234.158:46716] AH01630: client denied by server configuration: /var/www/cimt-precision/wp-login.php, referer: https://pre.cimt-precision.de/wp-login.php
[Tue Jun 09 11:05:06.356143 2026] [authz_core:error] [pid 102517:tid 102554] [client 46.224.234.158:53776] AH01630: client denied by server configuration: /var/www/cimt-precision/wp-login.php
[Tue Jun 09 11:46:58.193273 2026] [authz_core:error] [pid 102517:tid 102553] [client 46.224.234.158:57990] AH01630: client denied by server configuration: /var/www/wordp/wp-login.php
...
show less
Brute-Force
Web App Attack
๐ฌ๐ง
relianoid.com
2026-06-09 08:37:54
(3 days ago)
404 Errors Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web App Attack
๐บ๐ธ
nyt
2026-06-09 08:21:08
(3 days ago)
Repeated WordPress login POSTs blocked by WAF (3 in 6h)
Brute-Force
Web App Attack
๐ณ๐ฟ
billyborsht
2026-06-09 08:12:36
(3 days ago)
2026-06-09T20:12:35.969304+12:00 southern wordpress(kate.frykberg.co.nz)[426179]: Authentication att ...
show more
2026-06-09T20:12:35.969304+12:00 southern wordpress(kate.frykberg.co.nz)[426179]: Authentication attempt for unknown user shamia from 46.224.234.158
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:59:53
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 46.224.234.158 (static.158.234.224.46.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 46.224.234.158 (static.158.234.224.46.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:59:49.799784 2026] [security2:error] [pid 24943:tid 24943] [client 46.224.234.158:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||avaliantlife.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "avaliantlife.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aifH9aaE8vPXvg2dbPmqyAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
billyborsht
2026-06-09 07:33:57
(3 days ago)
2026-06-09T19:33:55.715118+12:00 southern wordpress(www.dave.moskovitz.co.nz)[424703]: Authenticatio ...
show more
2026-06-09T19:33:55.715118+12:00 southern wordpress(www.dave.moskovitz.co.nz)[424703]: Authentication attempt for unknown user potaua from 46.224.234.158
...
show less
Hacking
Web App Attack