๐ฉ๐ช
rh24
2026-06-12 13:36:27
(1 week ago)
(wordpress-user-enum) Failed wordpress-user-enum trigger from 79.137.51.69 (FR/France/ip69.ip-79-137 ...
show more
(wordpress-user-enum) Failed wordpress-user-enum trigger from 79.137.51.69 (FR/France/ip69.ip-79-137-51.eu): (CF_ENABLE)
show less
Brute-Force
๐ซ๐ท
SpaceHost-Server
2026-06-11 22:33:56
(1 week ago)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 09:23:58
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 79.137.51.69 (ip69.ip-79-137-51.eu): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 79.137.51.69 (ip69.ip-79-137-51.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 05:23:53.144734 2026] [security2:error] [pid 6718:tid 6718] [client 79.137.51.69:47710] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.insidepublications.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.insidepublications.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aip-qcvmxX0e0m8o9LdGpwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-11 06:45:51
(1 week ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-11 04:11:20
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 79.137.51.69 (ip69.ip-79-137-51.eu): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 79.137.51.69 (ip69.ip-79-137-51.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 00:11:16.285993 2026] [security2:error] [pid 13937:tid 13937] [client 79.137.51.69:35219] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.nekstlevel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.nekstlevel.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aio1ZOCRttlk_ubI77U5SQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-10 23:10:29
(1 week ago)
[redacted] 79.137.51.69 - - [11/Jun/2026:01:10:24 +0200] "POST /xmlrpc.php HTTP/1.1" 200 261 "-" "Mo ...
show more
[redacted] 79.137.51.69 - - [11/Jun/2026:01:10:24 +0200] "POST /xmlrpc.php HTTP/1.1" 200 261 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:80.0) Gecko/20100101 Firefox/80.0"
[redacted] 79.137.51.69 - - [11/Jun/2026:01:10:24 +0200] "POST /xmlrpc.php HTTP/1.1" 200 261 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:56.0) Gecko/20100101 Firefox/56.0"
[redacted] 79.137.51.69 - - [11/Jun/2026:01:10:25 +0200] "POST /xmlrpc.php HTTP/1.1" 200 261 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:46.0) Gecko/20100101 Firefox/46.0"
[redacted] 79.137.51.69 - - [11/Jun/2026:01:10:26 +0200] "POST /xmlrpc.php HTTP/1.1" 200 261 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:48.0) Gecko/20100101 Firefox/48.0"
[redacted] 79.137.51.69 - - [11/Jun/2026:01:10:26 +0200] "POST /xmlrpc.php HTTP/1.1" 200 261 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:95.0) Gecko/20100101 Firefox/95.0"
[redacted] 79.137.51.69 - - [11/Jun/2026:01:10:26 +0200] "POST /xmlrpc.php HTTP/1.1" 200 261 "-" "M
...
show less
Hacking
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-10 23:06:20
(1 week ago)
Excessive 404/403 errors
Brute-Force
๐ซ๐ท
SpaceHost-Server
2026-06-10 22:32:59
(1 week ago)
Brute-Force
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-06-10 21:00:22
(1 week ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 18:16:01
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 79.137.51.69 (ip69.ip-79-137-51.eu): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 79.137.51.69 (ip69.ip-79-137-51.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 14:15:55.385216 2026] [security2:error] [pid 20977:tid 20977] [client 79.137.51.69:22850] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.jacquelineperriam.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.jacquelineperriam.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aimp2wCGwqgYHj2Uzs8ULAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 14:35:48
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 79.137.51.69 (ip69.ip-79-137-51.eu): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 79.137.51.69 (ip69.ip-79-137-51.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 10:35:40.152174 2026] [security2:error] [pid 11494:tid 11503] [client 79.137.51.69:47299] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.teritemme.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.teritemme.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ail2PNOGH3TYX4ucLSXYCwAAAQU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-10 10:06:07
(1 week ago)
Trying to access config files
Web App Attack
Anonymous
2026-06-10 09:16:15
(1 week ago)
[redacted] 79.137.51.69 - - [10/Jun/2026:11:16:14 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mo ...
show more
[redacted] 79.137.51.69 - - [10/Jun/2026:11:16:14 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0"
[redacted] 79.137.51.69 - - [10/Jun/2026:11:16:14 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:71.0) Gecko/20100101 Firefox/71.0"
[redacted] 79.137.51.69 - - [10/Jun/2026:11:16:14 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:75.0) Gecko/20100101 Firefox/75.0"
[redacted] 79.137.51.69 - - [10/Jun/2026:11:16:14 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:88.0) Gecko/20100101 Firefox/88.0"
[redacted] 79.137.51.69 - - [10/Jun/2026:11:16:14 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:59.0) Gecko/20100101 Firefox/59.0"
[redacted] 79.137.51.69 - - [10/Jun/2026:11:16:14 +0200] "POST /xmlrpc.php HTTP/1
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 08:13:53
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 79.137.51.69 (ip69.ip-79-137-51.eu): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 79.137.51.69 (ip69.ip-79-137-51.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 04:13:49.679048 2026] [security2:error] [pid 26910:tid 26910] [client 79.137.51.69:62710] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||tarekshohaieb.online|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "tarekshohaieb.online"] [uri "/wp-json/wp/v2/users"] [unique_id "aikcvbP36GmGmCkm4VcPFAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
Rexikon
2026-06-10 06:25:29
(1 week ago)
79.137.51.69 - - [10/Jun/2026:08:25:23 +0200] "POST /wp-login.php HTTP/2.0" 200 3604 "-" "Mozilla/5. ...
show more
79.137.51.69 - - [10/Jun/2026:08:25:23 +0200] "POST /wp-login.php HTTP/2.0" 200 3604 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0"
79.137.51.69 - - [10/Jun/2026:08:25:26 +0200] "POST /wp-login.php HTTP/2.0" 200 3604 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:55.0) Gecko/20100101 Firefox/55.0"
79.137.51.69 - - [10/Jun/2026:08:25:26 +0200] "POST /wp-login.php HTTP/2.0" 200 3604 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:64.0) Gecko/20100101 Firefox/64.0"
79.137.51.69 - - [10/Jun/2026:08:25:28 +0200] "POST /wp-login.php HTTP/2.0" 200 3604 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:74.0) Gecko/20100101 Firefox/74.0"
79.137.51.69 - - [10/Jun/2026:08:25:29 +0200] "POST /wp-login.php HTTP/2.0" 200 3604 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:78.0) Gecko/20100101 Firefox/78.0"
...
show less
Brute-Force