🇩🇪
FeG Deutschland
2026-09-12 08:45:47
(3 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
🇩🇪
neckaralb-admin.de
2026-09-11 21:38:34
(14 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇦🇺
AWW-Admin
2026-09-09 22:24:16
(2 days ago)
(wordpress) Failed wordpress login from 60.145.181.111 (JP/Japan/softbank060145181111.bbtec.net)
Brute-Force
🇳🇿
Tripwire
2026-09-09 07:15:57
(3 days ago)
Wordpress login attempts
Brute-Force
Web App Attack
🇩🇪
Hazzard
2026-09-09 07:14:19
(3 days ago)
(wordpress) Failed wordpress login from 60.145.181.111 (JP/Japan/Osaka/-/softbank060145181111.bbtec. ...
show more
(wordpress) Failed wordpress login from 60.145.181.111 (JP/Japan/Osaka/-/softbank060145181111.bbtec.net/[redacted]): (CF_ENABLE)
show less
Brute-Force
🇮🇹
CoreTech srl
2026-09-09 06:38:56
(3 days ago)
cloudlinux2 fail2ban: 2026-09-09 08:33:41,629 fail2ban.filter [1892]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-09 08:33:41,629 fail2ban.filter [1892]: INFO [plesk-modsecurity] Found 119.242.13.85 - 2026-09-09 08:33:41cloudlinux2 fail2ban: 2026-09-09 08:33:52,304 fail2ban.filter [1892]: INFO [plesk-modsecurity] Found 110.225.33.29 - 2026-09-09 08:33:52cloudlinux2 fail2ban: 2026-09-09 08:34:03,045 fail2ban.filter [1892]: INFO [plesk-modsecurity] Found 110.225.33.29 - 2026-09-09 08:34:03cloudlinux2 fail2ban: 2026-09-09 08:34:14,343 fail2ban.filter [1892]: INFO [plesk-wordpress] Found 60.145.181.111 - 2026-09-09 08:34:14cloudlinux2 fail2ban: 2026-09-09 08:34:39,230 fail2ban.filter [1892]: INFO [plesk-wordpress] Found 45.8.19.16 - 2026-09-09 08:34:38cloudlinux2 fail2ban: 2026-09-09 08:34:33,964 fail2ban.filter [1892]: INFO [plesk-modsecurity] Found 80.227.247.94 - 2026-09-09 08:34:33cloudlinux2 fail2ban: 2026-09-09 08:34:53,260 fail2ban.filter [1892]: INFO [plesk-proftpd] Found 185.216.186.237 - 2026-09-09 08:34:53clo
show less
FTP Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 06:31:34
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 60.145.181.111 (softbank060145181111.bbtec.net) ...
show more
(mod_security) mod_security (id:225170) triggered by 60.145.181.111 (softbank060145181111.bbtec.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 02:31:31.090299 2026] [security2:error] [pid 16651:tid 16677] [client 60.145.181.111:57888] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||maroontribe.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "maroontribe.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqD9Q3IWtk-iI_fSdedTugAAAE8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-09-09 06:13:42
(3 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
🇷🇴
SpamStopper
2026-09-09 05:19:32
(3 days ago)
Fail2Ban - WP Spoofing
Port Scan
Brute-Force
Web App Attack
Anonymous
2026-09-09 05:15:13
(3 days ago)
Web attack blocked by Wordfence on gedichtenlangsdegeul.nl (1 hit). Reported by CRMON.
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 05:13:56
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 60.145.181.111 (softbank060145181111.bbtec.net) ...
show more
(mod_security) mod_security (id:225170) triggered by 60.145.181.111 (softbank060145181111.bbtec.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 01:13:48.757581 2026] [security2:error] [pid 30330:tid 30330] [client 60.145.181.111:46262] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cyqci.eu|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cyqci.eu"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqDrDB_N5A1jPdkIRKBbxQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 04:54:27
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 60.145.181.111 (softbank060145181111.bbtec.net) ...
show more
(mod_security) mod_security (id:225170) triggered by 60.145.181.111 (softbank060145181111.bbtec.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 00:54:19.452999 2026] [security2:error] [pid 32364:tid 32364] [client 60.145.181.111:50826] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||zacharypowers.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "zacharypowers.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqDme3deC4982ZQfmLUbWQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 02:36:17
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 60.145.181.111 (softbank060145181111.bbtec.net) ...
show more
(mod_security) mod_security (id:225170) triggered by 60.145.181.111 (softbank060145181111.bbtec.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 22:36:10.374090 2026] [security2:error] [pid 536260:tid 536284] [client 60.145.181.111:42178] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nicholsinvest.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nicholsinvest.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqDGGvYPKBkVkuFfreGGHwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 22:29:57
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 60.145.181.111 (softbank060145181111.bbtec.net) ...
show more
(mod_security) mod_security (id:225170) triggered by 60.145.181.111 (softbank060145181111.bbtec.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 18:29:49.747784 2026] [security2:error] [pid 13033:tid 13033] [client 60.145.181.111:34324] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||blog.l3l4.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "blog.l3l4.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqCMXQsMNMjmDOO94h0SQgAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 21:55:14
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 60.145.181.111 (softbank060145181111.bbtec.net) ...
show more
(mod_security) mod_security (id:225170) triggered by 60.145.181.111 (softbank060145181111.bbtec.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 17:55:05.958571 2026] [security2:error] [pid 18661:tid 18661] [client 60.145.181.111:55980] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mundanestudies.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mundanestudies.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqCEOQT62ic4MMmKn4SpCwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack