πΊπΈ
WeekendWeb
2026-08-26 11:18:36
(23 minutes ago)
Wordpress Vunerability attack
Web App Attack
π¦πΊ
Klaverstyn
2026-08-26 11:11:42
(30 minutes ago)
Excessive HTTP request rate
Web App Attack
Anonymous
2026-08-26 10:04:00
(1 hour ago)
2026-08-26T12:03:58.880278+02:00 aion wordpress[2815737]: Blocked user enumeration attempt from 85.2 ...
show more
2026-08-26T12:03:58.880278+02:00 aion wordpress[2815737]: Blocked user enumeration attempt from 85.204.70.92
...
show less
Hacking
Brute-Force
π§π·
Halux
2026-08-26 08:48:50
(2 hours ago)
85.204.70.92 Web Application Firewall multiple violations
Hacking
Web App Attack
π§π·
dominioz
2026-08-26 08:35:51
(3 hours ago)
2026-08-26 08:34:58 GET /wordpress/wp-includes/wlwmanifest.xml - - 85.204.70.92 HTTP/1.1 Mozilla/5.0 ...
show more
2026-08-26 08:34:58 GET /wordpress/wp-includes/wlwmanifest.xml - - 85.204.70.92 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 24231
2026-08-26 08:34:59 GET /wordpress/xmlrpc.php rsd - 85.204.70.92 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 200 1232
2026-08-26 08:34:59 GET /wordpress/ author=1 - 85.204.70.92 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 403 2947
2026-08-26 08:34:59 GET /wordpress/ author=2 - 85.204.70.92 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 403 2947
...
show less
Web App Attack
π«π·
Baking333
2026-08-26 07:48:04
(3 hours ago)
[redacted] 85.204.70.92 - - [26/Aug/2026:08:48:00 +0100] "GET //wp-includes/[redacted] HTTP/1.1" 302 ...
show more
[redacted] 85.204.70.92 - - [26/Aug/2026:08:48:00 +0100] "GET //wp-includes/[redacted] HTTP/1.1" 302 6758 0/117818 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" [redacted] 85.204.70.92 - - [26/Aug/2026:08:48:00 +0100] "GET //[redacted]?rsd HTTP/1.1" 302 1539 0/211322 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
show less
Bad Web Bot
Web App Attack
π©πͺ
webanyone
2026-08-26 07:01:29
(4 hours ago)
Repeated 404 errors, blocked by Fail2ban in custom-404 jail
Bad Web Bot
πΉπ·
neron
2026-08-26 07:00:50
(4 hours ago)
CrowdSec blocked: ssh:bruteforce detected via OPNsense firewall
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-26 06:58:16
(4 hours ago)
(mod_security) mod_security (id:225170) triggered by 85.204.70.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 85.204.70.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 02:58:11.554227 2026] [security2:error] [pid 20070:tid 20070] [client 85.204.70.92:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||abdulhameeds.art|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "abdulhameeds.art"] [uri "/ar/wp-json/wp/v2/users/"] [unique_id "ao6Og5JZ8GhRp_cQG2teAQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπ¦
URAN Publishing Service
2026-08-26 06:28:02
(5 hours ago)
[26/Aug/2026:09:28:00 +0300] -- 85.204.70.92 Ban reason: Scanner [CMS_GENERIC] | Request: GET //wp-i ...
show more
[26/Aug/2026:09:28:00 +0300] -- 85.204.70.92 Ban reason: Scanner [CMS_GENERIC] | Request: GET //wp-includes/wlwmanifest.xml HTTP/1.1
show less
Bad Web Bot
Web App Attack
π©πͺ
IVski.com
2026-08-26 06:18:16
(5 hours ago)
IVski WAF | WordPress scanner detected - probing wp-includes/wlwmanifest.xml
Hacking
Brute-Force
Web App Attack
Anonymous
2026-08-25 20:17:00
(15 hours ago)
Excessive crawling/scraping. Vulnerable file probing.
Brute-Force
Bad Web Bot
Web App Attack
πΉπ·
neron
2026-08-25 07:21:49
(1 day ago)
CrowdSec blocked: ssh:bruteforce detected via OPNsense firewall
Hacking
Web App Attack
πΉπ·
ycoskun41
2026-08-25 05:55:17
(1 day ago)
fail2ban: plesk-modsecurity jail on genckocaeli.com
Web App Attack
π΅π±
Budyn
2026-08-24 18:58:29
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: dev.dont-eat-the-pudding.xyz | URI: /wp-admin/includes/ | UA: Unknown User-Agent | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack