๐บ๐ธ
octageeks.com
2026-05-03 04:09:50
(1 month ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐ซ๐ท
tecnicorioja
2026-05-02 22:00:58
(1 month ago)
wp-login attack [02/May/2026:08:37:01
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-02 01:43:46
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 68.178.145.111 (111.145.178.68.host.secureserve ...
show more
(mod_security) mod_security (id:225170) triggered by 68.178.145.111 (111.145.178.68.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 01 21:43:37.786583 2026] [security2:error] [pid 4833:tid 4833] [client 68.178.145.111:30038] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||forefrontmusic.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "forefrontmusic.com"] [uri "/wp-json/wp/v2/users"] [unique_id "afVWyS95LQZLsqjZ-Cyh8QAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-01 10:53:52
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 68.178.145.111 (111.145.178.68.host.secureserve ...
show more
(mod_security) mod_security (id:225170) triggered by 68.178.145.111 (111.145.178.68.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 01 06:53:46.017383 2026] [security2:error] [pid 15474:tid 15474] [client 68.178.145.111:13704] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||glendaleheritage.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "glendaleheritage.org"] [uri "/wp-json/wp/v2/users"] [unique_id "afSGOpwYQr0TZdcOt9VzAgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐น
Malta
2026-04-30 18:33:09
(1 month ago)
68.178.145.111 - - [30/Apr/2026:20:33:09 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Macintos ...
show more
68.178.145.111 - - [30/Apr/2026:20:33:09 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/65.0.3325.181 Safari/537.36"
show less
Hacking
Web App Attack
VPN IP
๐ฌ๐ง
sonot
2026-02-24 07:49:22
(3 months ago)
Blocked by UFW on tunneluk01 [19011/tcp]
Source port: 6
TTL: 57
Packet length: 44
TOS: 0x00
This re ...
show more
Blocked by UFW on tunneluk01 [19011/tcp]
Source port: 6
TTL: 57
Packet length: 44
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
sumnone
2026-02-24 07:05:59
(3 months ago)
Port probing on unauthorized port 9248
Port Scan
Hacking
Exploited Host
Anonymous
2026-02-24 05:57:24
(3 months ago)
Feb 23 23:20:50 localhost kernel: [100252361.269328] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:9 ...
show more
Feb 23 23:20:50 localhost kernel: [100252361.269328] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=68.178.145.111 DST=[mungedIP2] LEN=44 TOS=0x00 PREC=0x40 TTL=51 ID=23928 PROTO=TCP SPT=6 DPT=19137 WINDOW=16384 RES=0x00 ACK SYN URGP=0
Feb 23 23:20:50 localhost kernel: [100252361.269357] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=68.178.145.111 DST=[mungedIP2] LEN=44 TOS=0x00 PREC=0x40 TTL=51 ID=23928 PROTO=TCP SPT=6 DPT=19137 SEQ=44336702 ACK=1305673729 WINDOW=16384 RES=0x00 ACK SYN URGP=0 OPT (020405B4)
Feb 24 00:57:24 localhost kernel: [100258154.318871] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=68.178.145.111 DST=[mungedIP2] LEN=44 TOS=0x00 PREC=0x40 TTL=48 ID=17819 PROTO=TCP SPT=6 DPT=31633 WINDOW=16384 RES=0x00 ACK SYN URGP=0
Feb 24 00:57:24 localhost kernel: [100258154.318880] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=68.178.145.111
show less
Port Scan
๐ธ๐ฎ
cheatmaster.store
2026-02-24 04:56:50
(3 months ago)
UFW blocked IP 68.178.145.111 - Location: Singapore, SG - ISP: AS26496 GoDaddy.com, LLC - Failed SSH ...
show more
UFW blocked IP 68.178.145.111 - Location: Singapore, SG - ISP: AS26496 GoDaddy.com, LLC - Failed SSH attempts
show less
Brute-Force
SSH
๐ฉ๐ช
ger-stg-sifi1
2024-06-13 08:21:47
(2 years ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ซ๐ท
francoisunix
2024-06-11 07:13:47
(2 years ago)
68.178.145.111 - - [10/Jun/2024:15:05:19 +0000] "POST /xmlrpc.php HTTP/1.0" 401 415 "-" "Mozilla/5.0 ...
show more
68.178.145.111 - - [10/Jun/2024:15:05:19 +0000] "POST /xmlrpc.php HTTP/1.0" 401 415 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:88.0) Gecko/20100101 Firefox/88.0"
68.178.145.111 - - [10/Jun/2024:17:45:03 +0000] "POST /xmlrpc.php HTTP/1.0" 401 415 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:42.0) Gecko/20100101 Firefox/42.0"
68.178.145.111 - - [11/Jun/2024:07:13:46 +0000] "POST /xmlrpc.php HTTP/1.0" 401 415 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.121 Safari/537.36"
show less
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2024-06-11 05:56:07
(2 years ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ฉ๐ช
Ba-Yu
2024-06-08 07:08:40
(2 years ago)
WP-xmlrpc exploit
Web Spam
Blog Spam
Hacking
Exploited Host
Web App Attack
๐ฆ๐บ
weblite
2024-06-08 04:53:13
(2 years ago)
WP_XMLRPC_ABUSE
Brute-Force
Web App Attack
๐ฎ๐น
LTM
2024-06-06 06:20:01
(2 years ago)
WebServer - Attempts to exploit
Hacking
Brute-Force
Web App Attack