Anonymous
2025-11-05 08:33:24
(8 months ago)
wordpress-trap
Web App Attack
๐จ๐ญ
Origon
2025-11-03 16:03:31
(8 months ago)
http-backdoors-attempts - IP: 5.188.9.124 - time="2025-11-03T17:03:31+01:00" level=info msg="(555f6 ...
show more
http-backdoors-attempts - IP: 5.188.9.124 - time="2025-11-03T17:03:31+01:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-backdoors-attempts by ip 5.188.9.124 (RU/205553) : 4h ban on Ip 5.188.9.124"
show less
Web App Attack
๐บ๐ธ
octageeks.com
2025-10-25 04:07:04
(9 months ago)
Wordpress malicious attack:[octascan]
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-25 02:44:11
(9 months ago)
(mod_security) mod_security (id:225170) triggered by 5.188.9.124 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 5.188.9.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 24 22:44:04.977011 2025] [security2:error] [pid 10960:tid 10960] [client 5.188.9.124:15770] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fusionrep.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fusionrep.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aPw5dDnHif5WeKFaUuQ1TgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-24 18:24:09
(9 months ago)
(mod_security) mod_security (id:225170) triggered by 5.188.9.124 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 5.188.9.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 24 14:24:05.845259 2025] [security2:error] [pid 10129:tid 10129] [client 5.188.9.124:1126] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kenometer.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kenometer.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aPvERWHaOIuuY0aTo-Af4wAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-24 16:38:08
(9 months ago)
(mod_security) mod_security (id:225170) triggered by 5.188.9.124 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 5.188.9.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 24 12:38:02.349817 2025] [security2:error] [pid 1857962:tid 1857962] [client 5.188.9.124:16413] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sharawi-gum.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sharawi-gum.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aPurau_2u4oh6V-F9WDaBQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-10-24 09:49:16
(9 months ago)
wordpress-trap
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-23 17:58:55
(9 months ago)
(mod_security) mod_security (id:225170) triggered by 5.188.9.124 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 5.188.9.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 23 13:58:49.037346 2025] [security2:error] [pid 29755:tid 29755] [client 5.188.9.124:13438] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||protection4allsecurity.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "protection4allsecurity.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aPps2YdOmNE7urJq6Z4kZQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-10-23 01:31:15
(9 months ago)
wordpress-trap
Web App Attack
๐ฉ๐ช
expandmade.com
2025-10-20 23:58:05
(9 months ago)
trolling for resource vulnerabilities [20/Oct/2025:23:58:05 "GET /wp-content/plugins/litespeed-cache ...
show more
trolling for resource vulnerabilities [20/Oct/2025:23:58:05 "GET /wp-content/plugins/litespeed-cache/readme.txt"]
show less
Web App Attack
๐ซ๐ท
HerrWolf
2025-10-20 12:45:04
(9 months ago)
CrowdSec Detection: crowdsecurity/http-backdoors-attempts
Web App Attack
๐บ๐ธ
ne1for23
2025-10-19 21:14:42
(9 months ago)
Probing for CVE-2006-5730 target to exploit (Modx CMS 0.9.2.1 and earlier/FCKeditor).
5.188.9.124 - ...
show more
Probing for CVE-2006-5730 target to exploit (Modx CMS 0.9.2.1 and earlier/FCKeditor).
5.188.9.124 - - [19/Oct/2025:21:14:42 +0000] "GET /manager/media/script/mootools/mootools.js HTTP/1.1" 403 555 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36"
show less
Web App Attack
Anonymous
2025-10-19 20:37:49
(9 months ago)
wordpress-trap
Web App Attack
๐บ๐ธ
kosada.com
2025-10-18 12:13:33
(9 months ago)
Web vulnerability probing: /admin.php
Web App Attack
Anonymous
2025-10-18 04:27:38
(9 months ago)
wordpress-trap
Web App Attack