๐ฉ๐ช
reznekcs
2026-06-15 03:16:15
(2 hours ago)
F2B wordpress ban. Logs: 93.47.117.82 - - [15/Jun/2026:05:16:14 +0200] "POST /xmlrpc.php HTTP/1.1" 2 ...
show more
F2B wordpress ban. Logs: 93.47.117.82 - - [15/Jun/2026:05:16:14 +0200] "POST /xmlrpc.php HTTP/1.1" 200 420 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0"
93.47.117.82 - - [15/Jun/2026:05:16:14 +0200] "POST /xmlrpc.php HTTP/1.1" 200 420 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:93.0) Gecko/20100101 Firefox/93.0"
show less
Brute-Force
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-06-14 22:32:28
(6 hours ago)
Brute-Force
Web App Attack
๐ฉ๐ช
dbmwebdesign
2026-06-14 08:25:20
(21 hours ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 08:06:56
(21 hours ago)
(mod_security) mod_security (id:225170) triggered by 93.47.117.82 (hosting6.ilger.com): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 93.47.117.82 (hosting6.ilger.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 04:06:48.536089 2026] [security2:error] [pid 20457:tid 20457] [client 93.47.117.82:47262] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||starcrestsales.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "starcrestsales.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai5hGNflmciNIhaU_gTOWAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-14 07:47:09
(21 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
bigwavedave
2026-06-14 04:17:31
(1 day ago)
Wordpress Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 03:49:39
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 93.47.117.82 (hosting6.ilger.com): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 93.47.117.82 (hosting6.ilger.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 23:49:35.380725 2026] [security2:error] [pid 3439:tid 3439] [client 93.47.117.82:36016] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.oakglenhouse.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.oakglenhouse.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai4kz2qFQLf8Q7C8ByYd8gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 02:38:54
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 93.47.117.82 (hosting6.ilger.com): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 93.47.117.82 (hosting6.ilger.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 22:38:50.389618 2026] [security2:error] [pid 20903:tid 20903] [client 93.47.117.82:35040] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.whodatnation.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.whodatnation.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai4UOl6v4X_If0lvOIZUigAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-06-13 18:51:31
(1 day ago)
(wp_login_try) srv103 WP Login Attempt 93.47.117.82 (IT/Italy/hosting6.ilger.com): 10 in the last 36 ...
show more
(wp_login_try) srv103 WP Login Attempt 93.47.117.82 (IT/Italy/hosting6.ilger.com): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-01 21:59:15
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 93.47.117.82 (hosting6.ilger.com): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 93.47.117.82 (hosting6.ilger.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 17:59:06.876471 2026] [security2:error] [pid 29965:tid 29965] [client 93.47.117.82:42492] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.egelfitness.nl|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.egelfitness.nl"] [uri "/wp-json/wp/v2/users"] [unique_id "ah4Aqiw1WhD2-NFtPXq7IQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
bigwavedave
2026-06-01 21:22:48
(1 week ago)
Wordpress Attack
Web App Attack
Anonymous
2026-06-01 16:55:24
(1 week ago)
[redacted] 93.47.117.82 - - [01/Jun/2026:18:55:07 +0200] "POST /xmlrpc.php HTTP/1.1" 200 247 "-" "Mo ...
show more
[redacted] 93.47.117.82 - - [01/Jun/2026:18:55:07 +0200] "POST /xmlrpc.php HTTP/1.1" 200 247 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:80.0) Gecko/20100101 Firefox/80.0"
[redacted] 93.47.117.82 - - [01/Jun/2026:18:55:09 +0200] "POST /xmlrpc.php HTTP/1.1" 200 247 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:54.0) Gecko/20100101 Firefox/54.0"
[redacted] 93.47.117.82 - - [01/Jun/2026:18:55:11 +0200] "POST /xmlrpc.php HTTP/1.1" 200 247 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:55.0) Gecko/20100101 Firefox/55.0"
[redacted] 93.47.117.82 - - [01/Jun/2026:18:55:12 +0200] "POST /xmlrpc.php HTTP/1.1" 200 247 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:59.0) Gecko/20100101 Firefox/59.0"
[redacted] 93.47.117.82 - - [01/Jun/2026:18:55:19 +0200] "POST /xmlrpc.php HTTP/1.1" 200 247 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:48.0) Gecko/20100101 Firefox/48.0"
[redacted] 93.47.117.82 - - [01/Jun/2026:18:55:19 +0200] "POST /xmlrp
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-01 15:50:01
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 93.47.117.82 (hosting6.ilger.com): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 93.47.117.82 (hosting6.ilger.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 11:49:57.515871 2026] [security2:error] [pid 27945:tid 27945] [client 93.47.117.82:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.yggdrasil.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.yggdrasil.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ah2qJTc_gMz2bsioH8cz1wAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-01 15:36:34
(1 week ago)
[redacted] 93.47.117.82 - - [01/Jun/2026:17:36:30 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mo ...
show more
[redacted] 93.47.117.82 - - [01/Jun/2026:17:36:30 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:74.0) Gecko/20100101 Firefox/74.0"
[redacted] 93.47.117.82 - - [01/Jun/2026:17:36:32 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:68.0) Gecko/20100101 Firefox/68.0"
[redacted] 93.47.117.82 - - [01/Jun/2026:17:36:32 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:61.0) Gecko/20100101 Firefox/61.0"
[redacted] 93.47.117.82 - - [01/Jun/2026:17:36:33 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:42.0) Gecko/20100101 Firefox/42.0"
[redacted] 93.47.117.82 - - [01/Jun/2026:17:36:33 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:74.0) Gecko/20100101 Firefox/74.0"
[redacted] 93.47.117.82 - - [01/Jun/202
...
show less
Hacking
Web App Attack
Anonymous
2026-05-31 21:24:58
(2 weeks ago)
Ports: *; Direction: 0; Trigger: CT_LIMIT
Brute-Force
SSH