๐ณ๐ฑ
Site.eu
2026-08-03 04:12:51
(2 weeks ago)
Excessive 404/403 errors
Brute-Force
๐น๐ท
neron
2026-07-24 15:30:03
(3 weeks ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-07-03 10:38:48
(1 month ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-27 15:49:26
(1 month ago)
(mod_security) mod_security (id:240000) triggered by 45.133.5.30 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:240000) triggered by 45.133.5.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 27 11:49:19.361340 2026] [security2:error] [pid 31389:tid 31389] [client 45.133.5.30:58221] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||embossedweddingnapkins.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "embossedweddingnapkins.com"] [uri "/images/stories/themes.php"] [unique_id "aj_w__inT-i6Tc2iYE-wpgAAADI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-27 15:19:50
(1 month ago)
Probe hitting /wp-content/hello.php detected. Whatcha lookin for in there?!
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-26 23:01:15
(1 month ago)
(mod_security) mod_security (id:240000) triggered by 45.133.5.30 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:240000) triggered by 45.133.5.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 19:01:06.911278 2026] [security2:error] [pid 16192:tid 16192] [client 45.133.5.30:46979] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||acpb.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "acpb.net"] [uri "/images/stories/themes.php"] [unique_id "aj8EsgYwv1nQe9bkyCprMwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Octopuce
2026-06-26 17:00:03
(1 month ago)
Aggressive web search of vulnerable pages: /autoload_classmap.php /wp-includes/classwithtostring.php ...
show more
Aggressive web search of vulnerable pages: /autoload_classmap.php /wp-includes/classwithtostring.php /wp-content/blue.php /content.php /wp-cont ...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-26 12:16:00
(1 month ago)
(mod_security) mod_security (id:240000) triggered by 45.133.5.30 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:240000) triggered by 45.133.5.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 08:15:55.148660 2026] [security2:error] [pid 23223:tid 23223] [client 45.133.5.30:21797] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||primemanagementmn.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "primemanagementmn.com"] [uri "/images/stories/themes.php"] [unique_id "aj5tewgfBGtGesBDPsFanAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ณ
dineshskt4all
2026-06-20 14:39:39
(1 month ago)
[Sat Jun 20 14:39:36.295724 2026] [proxy_fcgi:error] [pid 628954:tid 136922785625792] [client 45.133 ...
show more
[Sat Jun 20 14:39:36.295724 2026] [proxy_fcgi:error] [pid 628954:tid 136922785625792] [client 45.133.5.30:0] AH01071: Got error 'Primary script unknown'
...
show less
Brute-Force
๐ฉ๐ช
LRob
2026-06-20 09:00:03
(2 months ago)
Repeated 404 errors, blocked by Fail2ban in custom-404 jail
Bad Web Bot
๐บ๐ธ
nyt
2026-06-19 19:34:02
(2 months ago)
404 flood (16/60s), 404 flood (17/60s)
Bad Web Bot
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-06-16 02:28:10
(2 months ago)
Scanning for web/db/file exploits on www.buffingoptiek.nl
SQL Injection
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-15 01:36:25
(2 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ซ๐ท
Octopuce
2026-05-06 17:47:32
(3 months ago)
Aggressive web search of vulnerable pages: /filemanager.php /cgi-bin/bypass.php /.well-known/pki-val ...
show more
Aggressive web search of vulnerable pages: /filemanager.php /cgi-bin/bypass.php /.well-known/pki-validation/admin.php /wp-includes/IXR/admin.ph ...
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2026-05-06 17:26:52
(3 months ago)
Excessive 404/403 errors
Brute-Force