Anonymous
2026-08-13 04:43:57
(1 week ago)
denied traffic to a honeypot network. destination port 2404.
Port Scan
Hacking
Anonymous
2026-08-13 03:51:21
(1 week ago)
Port scanning: unsolicited connection probes to closed ports. Detected and blocked automatically.
Port Scan
๐ฉ๐ช
Admins@FBN
2026-08-13 02:59:49
(1 week ago)
FW-PortScan: Traffic Blocked srcport=61003 dstport=465
Port Scan
๐ฌ๐ง
Nov
2026-08-13 02:31:46
(1 week ago)
Unauthorized access attempt (tcp/2404)
Port Scan
๐บ๐ธ
MPL
2026-08-13 02:03:13
(1 week ago)
tcp/465
Port Scan
๐ซ๐ท
masterguru
2026-04-14 02:32:59
(4 months ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 64.227.123.141 (DE/Germany/-): 2 in t ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 64.227.123.141 (DE/Germany/-): 2 in the last 3600 secs (0-201)
show less
Hacking
๐บ๐ธ
MPL
2026-04-14 02:09:00
(4 months ago)
tcp/8089 (2 or more attempts)
Port Scan
๐บ๐ธ
RAP
2026-04-14 02:00:56
(4 months ago)
2026-04-14 02:00:56 UTC Unauthorized activity to TCP port 8080. Web App
Port Scan
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-03-08 22:50:56
(5 months ago)
Kingcopy(AI-IDS):IP is Probing for Wordpress vulnerabilities WTF:Banned
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-08 17:34:01
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 64.227.123.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 64.227.123.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 08 13:33:56.805886 2026] [security2:error] [pid 20663:tid 20663] [client 64.227.123.141:49479] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||citrineartstudio.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "citrineartstudio.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aa2zBIshkKSvGdFQY1XAvgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-08 15:55:16
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 64.227.123.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 64.227.123.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 08 11:55:10.835066 2026] [security2:error] [pid 9212:tid 9212] [client 64.227.123.141:59816] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.citizensforsanity.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.citizensforsanity.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aa2b3jptXudPGm9KGu4_iwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-03-08 12:58:35
(5 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 64.227.123.141 (DE/Germany/-): 1 in ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 64.227.123.141 (DE/Germany/-): 1 in the last 3600 secs
show less
Web App Attack
๐ง๐ท
Halux
2026-03-08 09:58:01
(5 months ago)
64.227.123.141 Web Application Firewall multiple violations
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-08 08:16:22
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 64.227.123.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 64.227.123.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 08 04:16:17.656988 2026] [security2:error] [pid 8732:tid 8732] [client 64.227.123.141:64751] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.circleofsound.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.circleofsound.org"] [uri "/wp-includes/id3/license.txt/wp-json/wp/v2/users/"] [unique_id "aa0wUX5LduCIzp-wPNtOGgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-08 07:46:53
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 64.227.123.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 64.227.123.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 08 03:46:44.782751 2026] [security2:error] [pid 29877:tid 29877] [client 64.227.123.141:51697] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ciptaconindotara.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ciptaconindotara.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aa0pZBrf355Q1GxNlBtmawAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack