๐ท๐ด
INTEQ
2026-06-26 04:44:54
(2 hours ago)
Web attack from 46.246.39.245
Web App Attack
๐บ๐ธ
factor1
2026-06-26 00:08:46
(7 hours ago)
Fail2ban at churndash Reports Abuse.
Brute-Force
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-06-25 16:44:00
(14 hours ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
SE/Sweden/46-246-39-245-static.glesys.net
Web App Attack
Anonymous
2026-06-25 08:50:16
(22 hours ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
๐ฉ๐ช
ger-stg-sifi1
2026-06-25 02:39:21
(1 day ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ฎ๐ฑ
Dolphi
2026-06-22 21:00:04
(3 days ago)
Excessive POST /wp-login.php requests
Brute-Force
Web App Attack
Anonymous
2026-06-22 10:04:40
(3 days ago)
46.246.39.245 - - > www.allacasadilucia.it [22/Jun/2026:12:04:39 +0200] "POST /xmlrpc.php HTTP/1.1" ...
show more
46.246.39.245 - - > www.allacasadilucia.it [22/Jun/2026:12:04:39 +0200] "POST /xmlrpc.php HTTP/1.1" 403 117 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" "-"
46.246.39.245 - - > www.allacasadilucia.it [22/Jun/2026:12:04:39 +0200] "POST /xmlrpc.php HTTP/1.1" 403 117 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:81.0) Gecko/20100101 Firefox/81.0" "-"
46.246.39.245 - - > www.allacasadilucia.it [22/Jun/2026:12:04:39 +0200] "POST /xmlrpc.php HTTP/1.1" 403 117 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:90.0) Gecko/20100101 Firefox/90.0" "-"
46.246.39.245 - - > www.allacasadilucia.it [22/Jun/2026:12:04:39 +0200] "POST /xmlrpc.php HTTP/1.1" 403 117 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/93.0" "-"
46.246.39.245 - - > www.allacasadilucia.it [22/Jun/2026:12:04:40 +0200] "POST /xmlrpc.php HTTP/1.1" 403 117 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:46.0) Gecko/20100101 Firefox/46.0" "-"
...
show less
Hacking
Bad Web Bot
Web App Attack
๐ฉ๐ช
netclix.gr
2026-06-22 03:36:48
(4 days ago)
(wordpress) Failed wordpress login from 46.246.39.245 (SE/Sweden/46-246-39-245-static.glesys.net): ...
show more
(wordpress) Failed wordpress login from 46.246.39.245 (SE/Sweden/46-246-39-245-static.glesys.net): (CF_ENABLE)
show less
Brute-Force
Anonymous
2026-06-21 16:52:40
(4 days ago)
Attac
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-21 04:58:49
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 46.246.39.245 (46-246-39-245-static.glesys.net) ...
show more
(mod_security) mod_security (id:225170) triggered by 46.246.39.245 (46-246-39-245-static.glesys.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 00:58:43.211339 2026] [security2:error] [pid 21221:tid 21221] [client 46.246.39.245:44398] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||buenasfrecuencias.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "buenasfrecuencias.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajdvg3rO3RQapDUarEd0LQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
middelkoopcc
2026-06-19 12:15:07
(6 days ago)
2026-06-19 14:14:19 WordPress login error from 46.246.39.245: invalid_username && 2026-06-19 14:14:1 ...
show more
2026-06-19 14:14:19 WordPress login error from 46.246.39.245: invalid_username && 2026-06-19 14:14:19 WordPress login error from 46.246.39.245: invalid_username && 2026-06-19 14:14:19 WordPress login error from 46.246.39.245: invalid_username && 82 more within 20 minutes
show less
Brute-Force
๐ซ๐ท
Kenshin869
2026-06-19 05:49:38
(1 week ago)
Wordpress unauthorized access attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-18 18:12:48
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 46.246.39.245 (46-246-39-245-static.glesys.net) ...
show more
(mod_security) mod_security (id:225170) triggered by 46.246.39.245 (46-246-39-245-static.glesys.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 14:12:41.418588 2026] [security2:error] [pid 16207:tid 16207] [client 46.246.39.245:33722] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.margroberts.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.margroberts.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajQ1GRfBUm-iDC6Von0TnwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 10:34:06
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 46.246.39.245 (46-246-39-245-static.glesys.net) ...
show more
(mod_security) mod_security (id:225170) triggered by 46.246.39.245 (46-246-39-245-static.glesys.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 06:34:00.136661 2026] [security2:error] [pid 16972:tid 16972] [client 46.246.39.245:39444] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.kaylamaclaincounseling.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.kaylamaclaincounseling.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajPJmDBG5LyrR5TwBRLKPgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 09:07:00
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 46.246.39.245 (46-246-39-245-static.glesys.net) ...
show more
(mod_security) mod_security (id:225170) triggered by 46.246.39.245 (46-246-39-245-static.glesys.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 05:06:51.272948 2026] [security2:error] [pid 7769:tid 7769] [client 46.246.39.245:38072] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.fltsiminc.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.fltsiminc.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajO1K6RNbt9I3ZCvr1pswQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack