|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 09:01:11
|
watchlist
|
Entity remains suspicious with medium severity, no new malicious activity detected to justify blocking, nor enough evidence to remove.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 08:56:11
|
watchlist
|
Entity remains in watchlist with a moderate AI confidence score and medium severity for continued monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 08:51:13
|
watchlist
|
IP accessed a sensitive WordPress path (wp-admin/admin-ajax.php) without triggering WAF alerts or explicit threat detections. Retaining in watchlist for further monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 08:46:14
|
watchlist
|
Accessed sensitive WordPress admin AJAX path (wp-admin/admin-ajax.php), warrants monitoring for further suspicious activity.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 08:41:12
|
ignore
|
No recent malicious activity detected, low initial AI confidence score (0.6), and no WAF or security rule hits observed since being added to the watchlist.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 08:36:15
|
watchlist
|
AI flagged low severity suspicion accessing WordPress admin-ajax path without WAF or security rule hits. Requires further monitoring.
|
0.6000000238418579
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 08:31:16
|
watchlist
|
Accessed sensitive WordPress path 'wp-admin/admin-ajax.php'. While no WAF or security rule hits were detected, this path is frequently targeted in WordPress attacks, warranting further observation.
|
0.6000000238418579
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 08:26:23
|
ignore
|
No malicious activity detected, no WAF flags, and no security rule hits. Access to wp-admin/admin-ajax.php is common and not inherently suspicious without further indicators.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 08:21:17
|
ignore
|
No new malicious activity, WAF alerts, or security rule hits detected since being added to watchlist, despite initial medium AI confidence.
|
0.800000011920929
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 08:16:12
|
watchlist
|
Accessed a sensitive WordPress path (wp-admin/admin-ajax.php) without triggering WAF or security rules, suggesting potential reconnaissance.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 08:11:16
|
ignore
|
No detected threats, WAF flags, or security rule hits observed since being added to watchlist, and initial AI confidence was low.
|
0.699999988079071
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 08:06:16
|
watchlist
|
Accessed sensitive WordPress admin path 'wp-admin/admin-ajax.php' without triggering WAF or security rules, warrants monitoring.
|
0.4000000059604645
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 08:01:15
|
ignore
|
No malicious activity observed since being added to the watchlist.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 07:56:08
|
watchlist
|
Entity shows medium confidence suspicious behavior and should remain in the watchlist for further monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 07:51:09
|
watchlist
|
Entity is currently in watchlist with medium confidence and severity. No new activity or escalated threats detected to warrant a change.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 07:46:12
|
watchlist
|
No new malicious activity, requests, or WAF alerts detected since being added to watchlist. Continued monitoring is required due to initial medium severity.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 07:41:15
|
watchlist
|
Entity previously identified with medium confidence and severity. No new malicious activity detected in this window, but retained on watchlist for continued monitoring due to access of common attack vectors like wp-admin/admin-ajax.php.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 07:36:12
|
watchlist
|
Accessed 'wp-admin/admin-ajax.php' which is a common target for reconnaissance and attack attempts on WordPress sites, warranting further monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 07:31:25
|
ignore
|
Entity accessed a common WordPress admin path (wp-admin/admin-ajax.php) but showed no malicious activity, WAF flags, or security rule hits. No current threat detected.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 07:26:27
|
ignore
|
No indicators of malicious activity detected after analysis.
|
1.0
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 07:21:13
|
ignore
|
No new activity or detected threats observed for this entity since being added to the watchlist. All request counters are zero, indicating no active malicious behavior.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 07:16:09
|
watchlist
|
Entity shows suspicious behavior with medium severity based on AI analysis; further monitoring required.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 07:11:08
|
watchlist
|
Entity shows medium suspicion with AI confidence score of 0.60. Further monitoring is required.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 07:06:11
|
watchlist
|
Accessed sensitive WordPress path 'wp-admin/admin-ajax.php' with medium AI confidence, but no explicit WAF alerts or threats detected yet. Requires further monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 07:01:13
|
watchlist
|
Accessed sensitive WordPress admin-ajax.php path with multiple requests, suggesting potential reconnaissance or vulnerability scanning.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 03:56:06
|
ignore
|
No activity detected (0 total requests, 0 threat requests) since being added to watchlist.
|
0.800000011920929
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 03:51:07
|
watchlist
|
IP accessed sensitive WordPress admin path multiple times with medium AI confidence, but no explicit WAF alerts or threat requests detected yet, requiring continued monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 03:46:07
|
watchlist
|
Accessed sensitive WordPress administrative path 'wp-admin/admin-ajax.php' with 17 requests, but no WAF flags or security rule hits detected. Requires further monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 03:41:08
|
ignore
|
No malicious activity detected and zero requests recorded since being added to watchlist.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 03:36:07
|
watchlist
|
Entity accessed suspicious WordPress admin path. Low AI confidence and no explicit threat detections or WAF flags currently observed.
|
0.4000000059604645
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 03:31:07
|
watchlist
|
Accessed common WordPress admin path (wp-admin/admin-ajax.php) without triggering WAF or security rules; warrants monitoring.
|
0.4000000059604645
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 03:26:06
|
ignore
|
No further malicious activity observed since watchlisting; low initial confidence and severity.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 03:21:07
|
watchlist
|
Accessed wp-admin/admin-ajax.php, a common target for WordPress attacks, but without WAF flags or security rule hits. Low AI confidence.
|
0.30000001192092896
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 03:16:14
|
watchlist
|
Accessed a common WordPress administration path (wp-admin/admin-ajax.php) multiple times, which is often targeted by reconnaissance and exploit attempts, warranting further observation.
|
0.30000001192092896
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 03:11:06
|
ignore
|
No malicious activity detected since being added to watchlist (0 total requests, 0 threat requests).
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 03:06:06
|
watchlist
|
Entity exhibits low confidence and low severity suspicious behavior, requiring continued monitoring.
|
0.6000000238418579
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 03:01:09
|
watchlist
|
Accessed a common WordPress admin path without triggering any WAF or security alerts, but warrants continued monitoring due to potential for abuse.
|
0.6000000238418579
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 02:56:08
|
watchlist
|
Accessed common WordPress AJAX path (/wp-admin/admin-ajax.php) without triggering WAF alerts or security rules; warrants further monitoring.
|
0.6000000238418579
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 02:51:07
|
ignore
|
No malicious activity detected and zero requests since being added to watchlist.
|
1.0
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 02:46:07
|
watchlist
|
Previous medium severity AI detection and access to sensitive WordPress path, no new immediate threats detected but requires continued monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 02:41:10
|
watchlist
|
Accessed sensitive WordPress administrative path 'wp-admin/admin-ajax.php' 17 times without triggering WAF or security rules; warrants further monitoring for suspicious patterns.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 02:36:05
|
ignore
|
No detected threat requests or WAF flags, indicating a return to benign behavior.
|
0.800000011920929
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 02:31:07
|
watchlist
|
Accessed a commonly exploited WordPress admin path (wp-admin/admin-ajax.php) without triggering WAF or security rules; warrants further monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 02:26:06
|
ignore
|
IP accessed a common WordPress AJAX path but showed no other malicious indicators or WAF flags. Low AI confidence score (0.5) and no detected threat requests.
|
0.800000011920929
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 02:21:06
|
watchlist
|
Accessed a common WordPress administration path ('wp-admin/admin-ajax.php') without triggering WAF alerts, indicating potential reconnaissance or benign activity that warrants further monitoring.
|
0.5
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 02:16:16
|
ignore
|
No detected malicious activity, WAF flags, or security rule hits. Entity shows no suspicious behavior and is not currently on the watchlist.
|
0.949999988079071
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 02:11:08
|
ignore
|
No activity observed since entity was added to the watchlist, suggesting it is no longer a current threat.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 02:06:05
|
watchlist
|
Entity shows suspicious behavior (access to admin-ajax.php) with medium AI confidence, but no new WAF flags or detected threats to warrant blocking at this time.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 02:01:06
|
watchlist
|
Access to sensitive WordPress admin path 'wp-admin/admin-ajax.php' without triggering WAF, warrants further monitoring for suspicious activity.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 01:56:05
|
ignore
|
No recent malicious activity detected for this IP since being added to the watchlist.
|
0.8999999761581421
|
severity: Severity.low
|