πΊπΈ
raymarron.com
2024-08-13 19:39:33
(2 years ago)
/sito/wp-includes/wlwmanifest.xml
/cms/wp-includes/wlwmanifest.xml
/site/wp-includes/wlwmanifest.x ...
show more
/sito/wp-includes/wlwmanifest.xml
/cms/wp-includes/wlwmanifest.xml
/site/wp-includes/wlwmanifest.xml
/wp2/wp-includes/wlwmanifest.xml
/test/wp-includes/wlwmanifest.xml
/wp1/wp-includes/wlwmanifest.xml
/shop/wp-includes/wlwmanifest.xml
/2019/wp-includes/wlwmanifest.xml
/2020/wp-includes/wlwmanifest.xml
/news/wp-includes/wlwmanifest.xml
/wp/wp-includes/wlwmanifest.xml
/website/wp-includes/wlwmanifest.xml
/wordpress/wp-includes/wlwmanifest.xml
/web/wp-includes/wlwmanifest.xml
/blog/wp-includes/wlwmanifest.xml
/xmlrpc.php?rsd
/wp-includes/wlwmanifest.xml
show less
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-09 06:31:16
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 91.92.247.247 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 91.92.247.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 09 02:31:12.503789 2024] [security2:error] [pid 139565:tid 139565] [client 91.92.247.247:53872] [client 91.92.247.247] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.airtechconsulting.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.airtechconsulting.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZrW3sOch275m_Es8-Ru7pQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-08-09 05:42:33
(2 years ago)
Bot / scanning and/or hacking attempts: POST //xmlrpc.php HTTP/1.1, GET / HTTP/1.1
Hacking
Web App Attack
Anonymous
2024-08-09 05:12:38
(2 years ago)
(wordpress) Failed wordpress login from 91.92.247.247 (BG/Bulgaria/-)
Brute-Force
πΊπΈ
TPI-Abuse
2024-08-08 19:01:21
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 91.92.247.247 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 91.92.247.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 08 15:01:16.249011 2024] [security2:error] [pid 28878:tid 28878] [client 91.92.247.247:54374] [client 91.92.247.247] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||muslera.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "muslera.com"] [uri "/blog/wp-json/wp/v2/users/"] [unique_id "ZrUV_O3nv62S4ghLpRXH2QAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-08-08 18:38:47
(2 years ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
πΊπΈ
TPI-Abuse
2024-08-08 17:21:23
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 91.92.247.247 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 91.92.247.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 08 13:21:19.566845 2024] [security2:error] [pid 32243:tid 32243] [client 91.92.247.247:60623] [client 91.92.247.247] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||superzilla.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "superzilla.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZrT-jxqw0h8lWu6zOR-edQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-08 10:22:25
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 91.92.247.247 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 91.92.247.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 08 06:22:20.938319 2024] [security2:error] [pid 21239:tid 21239] [client 91.92.247.247:64753] [client 91.92.247.247] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.stalbansparish.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.stalbansparish.org"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZrScXG9epAcNmuS-X2Z2swAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-08 09:30:48
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 91.92.247.247 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 91.92.247.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 08 05:30:43.883708 2024] [security2:error] [pid 27753:tid 27871] [client 91.92.247.247:50062] [client 91.92.247.247] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.tsengkwongchi.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.tsengkwongchi.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZrSQQyAATKiE3VfRhG2DPAAAANg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
cmbplf
2024-08-08 09:20:43
(2 years ago)
2.065 requests to */xmlrpc.php
202 requests to */wp-includes/wlwmanifest.xml
Brute-Force
Bad Web Bot
π΅πΉ
Subnet Shadow Specter
2024-08-08 07:06:32
(2 years ago)
Trolling for WordPress vulnerabilities. User-Agent: Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/ ...
show more
Trolling for WordPress vulnerabilities. User-Agent: Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36. Auto blocked and Banned.
show less
Hacking
Brute-Force
Web App Attack
Anonymous
2024-08-07 19:55:25
(2 years ago)
SuspiciousC Activity detected by FMBAD System 2024-08-07 22:55:25
Hacking
Bad Web Bot
Web App Attack
πΊπΈ
raymarron.com
2024-08-07 13:38:26
(2 years ago)
/wp-content/plugins/essential-addons-for-elementor-lite/readme.txt
Web App Attack
πΊπΈ
mnsf
2024-08-06 22:01:08
(2 years ago)
Too many Status 40X (276)
Request Overload (276)
Brute-Force
Web App Attack
Anonymous
2024-08-06 12:09:15
(2 years ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack