|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 01:51:15
|
watchlist
|
Suspicious activity detected, remaining in watchlist for further monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 01:46:03
|
watchlist
|
Entity remains in watchlist due to previous suspicious behavior and no new data provided to warrant a change in status.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 01:41:04
|
watchlist
|
Entity remains on watchlist due to initial medium AI confidence score, with no new activity observed since last evaluation.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 01:36:03
|
watchlist
|
Entity remains suspicious with medium confidence, no new evidence to justify blocking or removal.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 01:31:05
|
watchlist
|
AI score indicates medium severity, but no security rule hits or flagged paths yet. Needs further monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 01:26:06
|
watchlist
|
Accessed 'wp-admin/admin-ajax.php' which is a common target for WordPress attacks, warrants monitoring for further suspicious activity.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 01:21:04
|
ignore
|
No recent activity or detected threats observed for this IP since being added to the watchlist.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 01:16:04
|
watchlist
|
Entity remains suspicious with medium confidence, requiring continued monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 01:11:06
|
watchlist
|
Accessing sensitive WordPress admin path 'wp-admin/admin-ajax.php' with medium AI confidence, warrants continued monitoring for potential reconnaissance or automated activity.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 01:06:06
|
watchlist
|
Accessed common WordPress admin endpoint 'wp-admin/admin-ajax.php'. No WAF flags or security rule hits detected, but warrants further monitoring for suspicious patterns.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 01:01:10
|
ignore
|
Entity has shown no detected threat requests, WAF flags, or security rule hits since being added to the watchlist. AI assessment also indicates low confidence and low severity, suggesting it's no longer a threat.
|
0.949999988079071
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 00:56:05
|
watchlist
|
Accessed common WordPress admin endpoint (wp-admin/admin-ajax.php) 17 times without WAF flags, suggesting potential reconnaissance or legitimate activity requiring further monitoring.
|
0.4000000059604645
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 00:51:04
|
ignore
|
No detected threats, WAF flags, or security rule hits observed since being added to the watchlist. AI confidence score is low.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 00:46:07
|
watchlist
|
Accessed common WordPress administration path (wp-admin/admin-ajax.php) without triggering WAF or security rules; warrants further monitoring for patterns.
|
0.4000000059604645
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 00:41:11
|
ignore
|
Entity accessed a common WordPress admin path, but showed no WAF alerts, detected threats, or security rule hits, indicating no current malicious activity.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 00:36:04
|
ignore
|
No further activity observed since being added to watchlist; zero total requests and zero security rule hits.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 00:31:02
|
watchlist
|
Entity remains on watchlist due to medium AI confidence score indicating ongoing suspicious activity.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 00:26:04
|
watchlist
|
Accessed sensitive WordPress admin path (wp-admin/admin-ajax.php) without triggering WAF alerts, requiring further monitoring for malicious patterns.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 00:21:05
|
watchlist
|
Accessed sensitive WordPress admin AJAX path without explicit WAF flags, indicating potential reconnaissance.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 00:16:03
|
ignore
|
No activity detected and no signs of malicious behavior since being added to watchlist.
|
0.699999988079071
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 00:11:04
|
watchlist
|
Entity accessed a WordPress admin AJAX path, but no WAF alerts or detected threats occurred. AI confidence and severity are low, indicating continued monitoring is appropriate.
|
0.5
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 00:06:04
|
watchlist
|
Accessed a sensitive WordPress admin path ('wp-admin/admin-ajax.php') without triggering WAF or security alerts, warranting further monitoring.
|
0.5
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 00:01:05
|
ignore
|
Entity shows no observed malicious activity since being added to watchlist (0 requests, 0 threats, no WAF hits).
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 23:56:05
|
watchlist
|
Entity accessed a sensitive WordPress admin path (wp-admin/admin-ajax.php) with medium AI confidence, but no explicit WAF flags or security rule hits were detected, warranting continued monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 23:51:03
|
watchlist
|
Accessed sensitive WordPress administrative path (wp-admin/admin-ajax.php) without triggering WAF alerts or security rules. Requires further monitoring for suspicious patterns.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 23:46:03
|
ignore
|
No new malicious activity detected since being added to watchlist.
|
0.6000000238418579
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 23:41:04
|
watchlist
|
Entity shows no new activity or threat indicators since being added to the watchlist, maintaining its current risk profile.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 23:36:02
|
watchlist
|
Entity exhibits suspicious behavior with medium confidence, requiring continued monitoring within the watchlist.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 23:31:02
|
watchlist
|
Entity still exhibits suspicious behavior, requires continued monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 23:26:03
|
watchlist
|
IP accessed WordPress admin path, AI score is medium, but no security rule hits or threat requests detected yet. Requires continued monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 23:21:05
|
watchlist
|
Accessed sensitive WordPress admin-ajax.php path with no WAF flags or security rule hits, warrants further monitoring for suspicious patterns.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 23:16:11
|
ignore
|
Entity in watchlist shows no recorded activity or threat detections since being added.
|
0.800000011920929
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 23:11:05
|
watchlist
|
Entity remains on watchlist due to initial medium severity and confidence score; no new activity detected to alter its status.
|
0.6499999761581421
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 23:06:01
|
watchlist
|
No new malicious activity or WAF alerts detected for this entity; keeping in watchlist for continued monitoring based on previous medium AI confidence.
|
0.6499999761581421
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 23:01:06
|
watchlist
|
AI previously flagged with medium confidence; however, no new explicit threat requests or WAF/security rule hits detected during current monitoring.
|
0.6499999761581421
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 22:56:04
|
watchlist
|
Accessed a sensitive WordPress admin path (wp-admin/admin-ajax.php) without triggering WAF or security rules, suggesting potential reconnaissance.
|
0.6499999761581421
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 22:51:03
|
ignore
|
Entity exhibits low AI confidence score and no detected threat requests or WAF rule hits, suggesting it is benign.
|
0.800000011920929
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 22:46:04
|
watchlist
|
Accessed sensitive WordPress admin path 'wp-admin/admin-ajax.php' with 17 requests, but no WAF flags or security alerts triggered. Requires further monitoring.
|
0.4000000059604645
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 22:41:04
|
ignore
|
No recorded activity or detected threats since being added to the watchlist, indicating it is no longer suspicious.
|
0.949999988079071
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 22:36:02
|
watchlist
|
Entity shows suspicious behavior with medium confidence and severity, requiring continued monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 22:31:10
|
watchlist
|
Entity continues to exhibit suspicious access patterns to sensitive paths (wp-admin/admin-ajax.php) with a medium AI confidence score, warranting continued monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 22:26:03
|
watchlist
|
Accessed a common WordPress administrative endpoint (wp-admin/admin-ajax.php) without triggering WAF or security rules, indicating potential reconnaissance or early-stage probing.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 22:21:03
|
ignore
|
No malicious activity detected (0 total requests, 0 detected threat requests) since being added to watchlist. Initial AI score of 0.65 without observed activity is insufficient to maintain watchlist status.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 22:16:05
|
watchlist
|
Accessed common WordPress admin path (wp-admin/admin-ajax.php) but no WAF alerts or explicit threat detections currently. AI indicates medium severity. Further monitoring required.
|
0.6499999761581421
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 22:11:05
|
watchlist
|
Repeated access to 'wp-admin/admin-ajax.php' without triggering WAF alerts, suggesting potential reconnaissance or automated behavior requiring further monitoring.
|
0.6499999761581421
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 22:06:13
|
ignore
|
No malicious activity detected, no WAF flags, and accessed a common WordPress path.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 22:01:06
|
ignore
|
No security rule hits, WAF flags, or detected threat requests observed since being added to watchlist, indicating benign activity.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 21:56:04
|
watchlist
|
Accessed sensitive WordPress admin AJAX path (wp-admin/admin-ajax.php) without triggering WAF alerts or security rules, indicating potential reconnaissance or early stage malicious activity requiring further monitoring.
|
0.6499999761581421
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 21:51:02
|
ignore
|
Entity shows no recent activity since being added to the watchlist. No further suspicious behavior observed.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-10-31 21:46:02
|
watchlist
|
Accessed common WordPress attack path 'wp-admin/admin-ajax.php' without triggering WAF or security rules; requires continued monitoring.
|
0.699999988079071
|
severity: Severity.medium
|