๐ช๐ธ
masterguru
2026-06-22 05:50:35
(12 hours ago)
xmlrpc request blocked, no referer. Pattern match "xmlrpc.php" at REQUEST_URI. (5000900-122)
Web App Attack
๐ช๐ธ
librebit
2026-06-18 04:44:35
(4 days ago)
Brute force
Brute-Force
๐จ๐ฟ
ptlab
2026-06-16 06:45:16
(6 days ago)
Detected wp_login attack from WP-host.
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 02:17:03
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 77.220.194.111 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 77.220.194.111 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:16:58.599664 2026] [security2:error] [pid 21431:tid 21453] [client 77.220.194.111:30617] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||coloradospringsdermatology.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "coloradospringsdermatology.com"] [uri "/"] [unique_id "ai9gmuOFffrT3dgPM6oFdgAAABI"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
stinpriza
2026-06-12 05:22:36
(1 week ago)
Web App Attack
Web App Attack
๐ฉ๐ช
LRob.fr
2026-06-10 00:15:31
(1 week ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
Anonymous
2026-05-17 10:27:04
(1 month ago)
2026-05-17T12:27:04.246523+02:00 aion wordpress[395390]: Blocked authentication attempt for admin fr ...
show more
2026-05-17T12:27:04.246523+02:00 aion wordpress[395390]: Blocked authentication attempt for admin from 77.220.194.111
...
show less
Hacking
Brute-Force
๐ณ๐ฟ
billyborsht
2026-05-17 01:43:07
(1 month ago)
2026-05-17T13:43:06.335498+12:00 southern wordpress(poetryinhell.org)[962297]: Authentication attemp ...
show more
2026-05-17T13:43:06.335498+12:00 southern wordpress(poetryinhell.org)[962297]: Authentication attempt for unknown user [email protected] from 77.220.194.111
...
show less
Hacking
Web App Attack
๐ซ๐ท
solution.it
2026-05-16 23:03:34
(1 month ago)
[Sun May 17 01:03:34.281844 2026] [php7:error] [pid 4136732:tid 4136732] [client 77.220.194.111:5601 ...
show more
[Sun May 17 01:03:34.281844 2026] [php7:error] [pid 4136732:tid 4136732] [client 77.220.194.111:56013] script '/var/www/html/wp-login.php' not found or unable to stat
show less
Web App Attack
๐ท๐ด
clauss
2026-02-20 07:32:25
(4 months ago)
IP reached maximum auth failures for a one day block
Brute-Force
Anonymous
2026-02-18 11:18:33
(4 months ago)
wordpress-trap
Web App Attack
๐ฉ๐ช
LRob.fr
2025-12-09 13:01:31
(6 months ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-23 00:12:18
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 77.220.194.111 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:211120) triggered by 77.220.194.111 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 22 20:12:13.054898 2025] [security2:error] [pid 30573:tid 30573] [client 77.220.194.111:25593] [client 77.220.194.111] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||barecreationsaz.com|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/wp-super-cache/js/cache-loader.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barecreationsaz.com"] [uri "/wp-content/plugins/wp-super-cache/js/cache-loader.php"] [unique_id "Z99R3Xi9IjfrOc2YcQDBYgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-20 02:20:18
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 77.220.194.111 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:211120) triggered by 77.220.194.111 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 19 22:20:14.213659 2025] [security2:error] [pid 1879480:tid 1879480] [client 77.220.194.111:39409] [client 77.220.194.111] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "11"] [msg "COMODO WAF: Remote File Inclusion Attack||atidysort.com|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/canto/includes/lib/download.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "atidysort.com"] [uri "/wp-content/plugins/canto/includes/lib/download.php"] [unique_id "Z9t7Xu6qmy6bORbcMIGfngAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-11 07:30:53
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 77.220.194.111 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:211120) triggered by 77.220.194.111 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 11 03:30:49.030331 2025] [security2:error] [pid 13869:tid 13869] [client 77.220.194.111:32029] [client 77.220.194.111] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||advantagesystemsgroup.com|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/wp-super-cache/js/cache-loader.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "advantagesystemsgroup.com"] [uri "/wp-content/plugins/wp-super-cache/js/cache-loader.php"] [unique_id "Z8_mqcfkWNuG9O4FlQt1VQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack