๐บ๐ธ
integrantservices.com
2026-06-17 11:25:54
(1 day ago)
(wordpress) Failed wordpress login from 146.70.231.130 (RU/Russia/-)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-17 08:25:37
(2 days ago)
(mod_security) mod_security (id:240335) triggered by 146.70.231.130 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 146.70.231.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 04:25:29.619446 2026] [security2:error] [pid 25598:tid 25598] [client 146.70.231.130:62042] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 146.70.231.130 (+1 hits since last alert)|kaldaragroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "kaldaragroup.com"] [uri "/xmlrpc.php"] [unique_id "ajJZ-Wsqh8umkSiaYi_8TwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-06-13 17:25:03
(5 days ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-06 20:36:12
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 27
Exploited Host
Web App Attack
๐ฉ๐ช
Lunix
2026-06-06 19:30:37
(1 week ago)
Brute-Force
Web App Attack
๐จ๐ฆ
electronico
2026-06-06 18:54:35
(1 week ago)
146.70.231.130 - - [07/Jun/2026:05:54:33 +1100] "GET /wp-login.php HTTP/1.1" 403 5922 "-" "Mozilla/5 ...
show more
146.70.231.130 - - [07/Jun/2026:05:54:33 +1100] "GET /wp-login.php HTTP/1.1" 403 5922 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36"
146.70.231.130 - - [07/Jun/2026:05:54:34 +1100] "POST /wp-login.php HTTP/1.1" 403 2107 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36"
146.70.231.130 - - [07/Jun/2026:05:54:35 +1100] "GET /wp-admin/ HTTP/1.1" 302 443 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36"
...
show less
Brute-Force
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-04-22 05:24:26
(1 month ago)
Scanning for web/db/file exploits on www.ogen.com
SQL Injection
Bad Web Bot
Web App Attack
Anonymous
2026-04-17 19:38:47
(2 months ago)
Spam registration attempt on forum.
Web Spam
Blog Spam
๐ฉ๐ช
Packets-Decreaser.NET
2025-09-19 11:48:04
(8 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐ซ๐ท
แดสแด
2025-08-02 23:33:28
(10 months ago)
Triggered Cloudflare WAF (l7ddos) from SE.
ASN: 9009 (M247)
Protocol: HTTP/2 (GET method)
UA: Mozill ...
show more
Triggered Cloudflare WAF (l7ddos) from SE.
ASN: 9009 (M247)
Protocol: HTTP/2 (GET method)
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
DDoS Attack
Bad Web Bot
๐จ๐ณ
ThreatBook.io
2025-07-31 22:46:41
(10 months ago)
ThreatBook Intelligence: Zombie,Mobile more details on https://threatbook.io/ip/146.70.231.130
2025- ...
show more
ThreatBook Intelligence: Zombie,Mobile more details on https://threatbook.io/ip/146.70.231.130
2025-07-31 20:08:58 http://maxcdn.bootstrapcdn.com/font-awesome/4.3.0/css/font-awesome.min.css?ver=4.9.8
show less
Web App Attack
๐ซ๐ท
geot
2025-06-30 13:04:43
(11 months ago)
15 requests, including :
GET //cms/wp-includes/wlwmanifest.xml HTTP/1.1
GET //test/wp-includes/wlwm ...
show more
15 requests, including :
GET //cms/wp-includes/wlwmanifest.xml HTTP/1.1
GET //test/wp-includes/wlwmanifest.xml HTTP/1.1
GET //2021/wp-includes/wlwmanifest.xml HTTP/1.1
GET //wp/wp-includes/wlwmanifest.xml HTTP/1.1
GET //shop/wp-includes/wlwmanifest.xml HTTP/1.1
GET //site/wp-includes/wlwmanifest.xml HTTP/1.1
GET //blog/wp-includes/wlwmanifest.xml HTTP/1.1
GET //wordpress/wp-includes/wlwmanifest.xml HTTP/1.1
GET //feed/ HTTP/1.1
GET //2020/wp-includes/wlwmanifest.xml HTTP/1.1
GET //web/wp-includes/wlwmanifest.xml HTTP/1.1
show less
Web App Attack
๐ฎ๐ฉ
penjaga BRIN
2025-06-30 11:15:55
(11 months ago)
nginx-alfa-240
Web App Attack
๐บ๐ธ
WeekendWeb
2025-06-30 03:18:09
(11 months ago)
Wordpress Vunerability attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-06-30 02:16:39
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 146.70.231.130 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 146.70.231.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 29 22:16:34.446748 2025] [security2:error] [pid 855067:tid 855067] [client 146.70.231.130:56188] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.mosheimlib.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.mosheimlib.org"] [uri "/wp-json/wp/v2/users/"] [unique_id "aGHzgiDPnnn5hPl9YSBANAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack