๐ซ๐ท
โจ
2026-06-16 02:56:15
(5 days ago)
Domain : endsolutions.net
Rule : wp-login
2026-06-16 02:55:17 ***hidden-privacy*** GET /wp-login.php ...
show more
Domain : endsolutions.net
Rule : wp-login
2026-06-16 02:55:17 ***hidden-privacy*** GET /wp-login.php - 443 - 88.218.47.64 HTTP/1.1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36 https://www.google.com www.endsolutions.net 404 0 2 12866 261 44 - -
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-28 03:43:04
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 88.218.47.64 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 88.218.47.64 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 23:43:01.125733 2026] [security2:error] [pid 28684:tid 28684] [client 88.218.47.64:41655] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bryjer.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bryjer.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahe5xSSksEKj22YD0NYGxgAAABk"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
kjaerulff
2026-05-14 18:11:49
(1 month ago)
Failed Wordpress login using wp-login.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 07:48:36
(1 month ago)
(mod_security) mod_security (id:218580) triggered by 88.218.47.64 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:218580) triggered by 88.218.47.64 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 03:48:31.782889 2026] [security2:error] [pid 27403:tid 27403] [client 88.218.47.64:62827] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:\\\\/\\\\*[!+](?:[\\\\w\\\\s=_\\\\-()]+)?\\\\*\\\\/)" at ARGS:d. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/22_SQL_SQLi.conf"] [line "76"] [id "218580"] [rev "1"] [msg "COMODO WAF: MySQL in-line comment detected.||caferutadelaseda.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "SQLi"] [hostname "caferutadelaseda.com"] [uri "/detalle.php"] [unique_id "af7mz8GHDnoFjCUz4U0JUwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-04-12 04:38:29
(2 months ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
RU/Russia/-
Web App Attack
๐ฉ๐ช
LRob.fr
2025-06-03 13:00:24
(1 year ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-30 23:19:01
(1 year ago)
(mod_security) mod_security (id:217200) triggered by 88.218.47.64 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:217200) triggered by 88.218.47.64 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 30 19:18:57.071174 2025] [security2:error] [pid 1370818:tid 1370818] [client 88.218.47.64:33873] ModSecurity: Access denied with code 403 (phase 1). Match of "endsWith /wp-cron.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "103"] [id "217200"] [rev "2"] [msg "COMODO WAF: HTTP/1.1 POST request missing Content-Length Header||www.turnofthecenturyfinearts.com|F|2"] [data "/xmlrpc.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Protocol"] [hostname "www.turnofthecenturyfinearts.com"] [uri "/xmlrpc.php"] [unique_id "aDo84RKxlVLlgy7TbAtZbQAAAAM"], referer: https://www.turnofthecenturyfinearts.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Guardian
2025-03-27 03:28:41
(1 year ago)
Scanning for installed WordPress and vulnerabilities
88.218.47.64 [27/Mar/2025:03:28:40] "GET /wp-lo ...
show more
Scanning for installed WordPress and vulnerabilities
88.218.47.64 [27/Mar/2025:03:28:40] "GET /wp-login.php HTTP/1.1"
show less
Port Scan
Web App Attack
๐จ๐ญ
backslash
2025-03-24 18:35:07
(1 year ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
Anonymous
2025-02-28 17:37:07
(1 year ago)
wordpress-trap
Web App Attack
๐ซ๐ท
Sklurk
2024-06-09 11:00:33
(2 years ago)
Web App Attack
Web App Attack
๐น๐ผ
kk_it_man
2024-06-08 20:46:04
(2 years ago)
hack
Hacking
Anonymous
2023-11-19 22:10:38
(2 years ago)
opencart admin attack from fail2ban
...
DDoS Attack
Brute-Force
SSH
๐ต๐ฑ
TI
2023-11-03 06:51:10
(2 years ago)
Scrapping website, using diffrent useragents, not wait for response, #botnet20231026
DDoS Attack
Bad Web Bot