|
๐ฉ๐ฐ
wnbhosting.dk
|
|
WP xmlrpc [2024-08-10T15:24:17+02:00]
|
Hacking
Web App Attack
|
|
|
๐ฌ๐ง
Swiptly
|
|
WordPress xmlrpc spam or enumeration
...
|
Web Spam
Bad Web Bot
Web App Attack
|
|
|
๐ฌ๐ง
Swiptly
|
|
WordPress xmlrpc spam or enumeration
...
|
Web Spam
Bad Web Bot
Web App Attack
|
|
|
๐ฉ๐ช
Dadelinux
|
|
78.46.1.162 - - [04/Aug/2024:23:18:55 +0200] "POST /xmlrpc.php HTTP/1.1" 301 354 "-" "Mozilla/5.0 (W ...
show more
78.46.1.162 - - [04/Aug/2024:23:18:55 +0200] "POST /xmlrpc.php HTTP/1.1" 301 354 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.132 Safari/537.36"
78.46.1.162 - - [04/Aug/2024:23:18:55 +0200] "POST /xmlrpc.php HTTP/1.1" 301 4640 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.132 Safari/537.36"
78.46.1.162 - - [04/Aug/2024:23:18:55 +0200] "POST /xmlrpc.php HTTP/1.1" 404 60642 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.132 Safari/537.36"
show less
|
SQL Injection
Web App Attack
|
|
|
๐บ๐ธ
nationaleventpros.com
|
|
WordPress login attempt
|
Brute-Force
|
|
|
๐ซ๐ท
tecnicorioja
|
|
POST /xmlrpc.php [01/Aug/2024:05:07:50
|
Brute-Force
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 78.46.1.162 (dedi762.your-server.de): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 78.46.1.162 (dedi762.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 01 16:24:48.115595 2024] [security2:error] [pid 17530:tid 17584] [client 78.46.1.162:60562] [client 78.46.1.162] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||worldecom.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "worldecom.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ZqvvEI6zevWSnigYCQ5cLwAAAgc"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 78.46.1.162 (dedi762.your-server.de): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 78.46.1.162 (dedi762.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 01 14:49:38.280510 2024] [security2:error] [pid 1768179:tid 1768179] [client 78.46.1.162:60356] [client 78.46.1.162] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||67ronin.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "67ronin.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZqvYwtE7lQVT0jnwkwtoHAAAAAs"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 78.46.1.162 (dedi762.your-server.de): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 78.46.1.162 (dedi762.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 01 14:20:38.531207 2024] [security2:error] [pid 20058:tid 20058] [client 78.46.1.162:56882] [client 78.46.1.162] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||brazilianbottom.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "brazilianbottom.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZqvR9pIh_JbZBDA21ctP2gAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 78.46.1.162 (dedi762.your-server.de): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 78.46.1.162 (dedi762.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 01 13:48:45.031827 2024] [security2:error] [pid 7718:tid 7718] [client 78.46.1.162:53576] [client 78.46.1.162] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ugandacleanwater.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ugandacleanwater.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZqvKffwltIYhYaEZ4qzaWQAAAAc"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 78.46.1.162 (dedi762.your-server.de): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 78.46.1.162 (dedi762.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 01 13:24:59.679078 2024] [security2:error] [pid 6966:tid 6966] [client 78.46.1.162:43718] [client 78.46.1.162] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||3penguinsdesign.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "3penguinsdesign.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZqvE65o6bxOTLeJqEJnbqAAAAB4"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 78.46.1.162 (dedi762.your-server.de): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 78.46.1.162 (dedi762.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 01 12:10:23.018491 2024] [security2:error] [pid 25324:tid 25477] [client 78.46.1.162:42080] [client 78.46.1.162] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||koalacogs.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "koalacogs.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Zquzb6IOtFJHxQgt_9aT1AAAAFQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 78.46.1.162 (dedi762.your-server.de): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 78.46.1.162 (dedi762.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 01 10:45:33.839546 2024] [security2:error] [pid 19556:tid 19556] [client 78.46.1.162:35154] [client 78.46.1.162] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||pcga.golf|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "pcga.golf"] [uri "/wp-json/wp/v2/users"] [unique_id "ZqufjV27e0Q9XGBxzA8l1QAAAA4"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 78.46.1.162 (dedi762.your-server.de): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 78.46.1.162 (dedi762.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 01 10:22:02.250693 2024] [security2:error] [pid 1971:tid 1971] [client 78.46.1.162:35030] [client 78.46.1.162] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.bzbdesigns.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.bzbdesigns.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZquaCtcUmSmx2K9iJ5abbgAAAA0"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฉ๐ฐ
wnbhosting.dk
|
|
WP xmlrpc [2024-07-31T22:09:17+02:00]
|
Hacking
Web App Attack
|
|