๐ซ๐ท
masterguru
2026-09-01 04:29:40
(11 minutes ago)
(wordpress) Apache: Failed WordPress login from 66.116.232.29 (IN/India/server.jaikvik.com): 10 in t ...
show more
(wordpress) Apache: Failed WordPress login from 66.116.232.29 (IN/India/server.jaikvik.com): 10 in the last 3600 secs (0-197)
show less
Hacking
๐ฎ๐น
CoreTech srl
2026-09-01 04:28:56
(12 minutes ago)
cloudlinux2 fail2ban: 2026-09-01 06:24:31,558 fail2ban.filter [1605]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-09-01 06:24:31,558 fail2ban.filter [1605]: INFO [plesk-wordpress] Found 41.185.8.187 - 2026-09-01 06:24:31cloudlinux2 fail2ban: 2026-09-01 06:25:36,133 fail2ban.filter [1605]: INFO [plesk-wordpress] Found 66.116.232.29 - 2026-09-01 06:25:36cloudlinux2 fail2ban: 2026-09-01 06:25:42,806 fail2ban.filter [1605]: INFO [plesk-wordpress] Found 103.86.176.249 - 2026-09-01 06:25:42cloudlinux2 fail2ban: 2026-09-01 06:25:53,476 fail2ban.filter [1605]: INFO [plesk-wordpress] Found 46.101.115.233 - 2026-09-01 06:25:53cloudlinux2 fail2ban: 2026-09-01 06:25:53,189 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 46.101.115.233 - 2026-09-01 06:25:53cloudlinux2 fail2ban: 2026-09-01 06:26:01,474 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 34.186.206.107 - 2026-09-01 06:26:01cloudlinux2 fail2ban: 2026-09-01 06:26:01,502 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 34.186.206.107 - 2026-09-01 06:26:0
show less
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-09-01 04:26:15
(15 minutes ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-01 04:23:10
(18 minutes ago)
(mod_security) mod_security (id:225170) triggered by 66.116.232.29 (server.jaikvik.com): 1 in the la ...
show more
(mod_security) mod_security (id:225170) triggered by 66.116.232.29 (server.jaikvik.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 00:23:04.828481 2026] [security2:error] [pid 23823:tid 23823] [client 66.116.232.29:43354] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||theamarals.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "theamarals.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apZTKIt-Mxx-QOL6XgQCMQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
spamverify.com
2026-09-01 04:20:20
(21 minutes ago)
Honeypot Hit: WordPress Users
Web Spam
Blog Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
mnogoweb
2026-09-01 03:52:31
(48 minutes ago)
(smtpauth) Failed SMTP AUTH login from 66.116.232.29 (IN/India/server.jaikvik.com): 5 in the last 36 ...
show more
(smtpauth) Failed SMTP AUTH login from 66.116.232.29 (IN/India/server.jaikvik.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_SMTPAUTH; Logs: 2026-08-31 21:27:18 login authenticator failed for server.jaikvik.com (45.74.31.30) [66.116.232.29]: 535 Incorrect authentication data ([email protected] )
2026-08-31 21:29:09 login authenticator failed for server.jaikvik.com (45.74.31.30) [66.116.232.29]: 535 Incorrect authentication data ([email protected] )
2026-08-31 21:29:55 login authenticator failed for server.jaikvik.com (45.74.31.30) [66.116.232.29]: 535 Incorrect authentication data ([email protected] )
2026-08-31 21:37:55 login authenticator failed for server.jaikvik.com (45.74.31.30) [66.116.232.29]: 535 Incorrect authentication data ([email protected] )
2026-08-31 21:45:44 login authenticator failed for server.jaikvik.com (45.74.31.42) [66.116.232.29]: 535 Incorrect authentication data ([email protected] )
show less
Port Scan
๐ซ๐ท
dynamix
2026-09-01 03:36:33
(1 hour ago)
WordPress wp-login.php Brute Force Attack
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-09-01 03:27:13
(1 hour ago)
(wordpress) Apache: Failed WordPress login from 66.116.232.29 (IN/India/server.jaikvik.com): 10 in t ...
show more
(wordpress) Apache: Failed WordPress login from 66.116.232.29 (IN/India/server.jaikvik.com): 10 in the last 3600 secs (0-201)
show less
Hacking
๐บ๐ธ
xxkodedxx
2026-09-01 03:26:39
(1 hour ago)
[Zorvexus edge-defense] GET .env / WordPress honeypot probe
Trigger: 1ร honeypot-get in 10m window.
...
show more
[Zorvexus edge-defense] GET .env / WordPress honeypot probe
Trigger: 1ร honeypot-get in 10m window.
Active: 03:25:51 UTC
Volume: 1 honeypot probe(s)
Bait taken: /wp-json/wp/v2/users/me
UA: "66.116.232.29"
Auto-banned 30d. zorvexus-banner.
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 03:25:45
(1 hour ago)
(mod_security) mod_security (id:225170) triggered by 66.116.232.29 (server.jaikvik.com): 1 in the la ...
show more
(mod_security) mod_security (id:225170) triggered by 66.116.232.29 (server.jaikvik.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 23:25:38.756923 2026] [security2:error] [pid 2260:tid 2260] [client 66.116.232.29:39222] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.edmontonareahomes.digitalracemedia.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.edmontonareahomes.digitalracemedia.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apZFspCPDGAM6lZJtZyo0AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
alferez
2026-09-01 03:13:14
(1 hour ago)
Multiple WP Login Attack
Hacking
Exploited Host
Web App Attack
๐บ๐ธ
www.winos.me
2026-09-01 03:13:09
(1 hour ago)
Scanning for sensitive files/paths: /wp-login.php
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 03:09:53
(1 hour ago)
(mod_security) mod_security (id:225170) triggered by 66.116.232.29 (server.jaikvik.com): 1 in the la ...
show more
(mod_security) mod_security (id:225170) triggered by 66.116.232.29 (server.jaikvik.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 23:09:47.665914 2026] [security2:error] [pid 13390:tid 13390] [client 66.116.232.29:50752] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||3beeze.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "3beeze.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apZB-zFR_6c2a8cpo4Y93QAAAEI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
spamverify.com
2026-09-01 03:04:41
(1 hour ago)
Honeypot Hit: WordPress Login
Web Spam
Blog Spam
Bad Web Bot
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-09-01 02:49:13
(1 hour ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack