๐ฉ๐ช
Vegascosmetics
2026-09-01 21:24:43
(21 hours ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after high AbuseIPDB reputation + local blo ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after high AbuseIPDB reputation + local block policy. Evidence: High Abuse + Suspicion (50, Abuse: 100)
show less
Hacking
Exploited Host
Web App Attack
๐ซ๐ท
masterguru
2026-09-01 11:54:42
(1 day ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.242.3 (US/United States/-): 1 in ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.242.3 (US/United States/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ณ๐ฑ
Site.eu
2026-08-31 20:59:45
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐ช๐ธ
librebit
2026-08-31 13:45:52
(2 days ago)
Brute force
Brute-Force
๐ณ๐ฑ
Site.eu
2026-08-30 14:56:12
(3 days ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-28 15:34:24
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 74.7.242.3 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 74.7.242.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 11:34:18.990968 2026] [security2:error] [pid 10641:tid 10641] [client 74.7.242.3:49486] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||phoboschildren.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "phoboschildren.com"] [uri "/lite/wp-json/wp/v2/users/1"] [unique_id "apGqelSjHaCYJvgINPiUuQAAAAA"], referer: https://phoboschildren.com/lite/author/danialias/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-28 10:52:38
(5 days ago)
Excessive multi-domain requests
Brute-Force
๐ซ๐ท
masterguru
2026-08-28 07:35:35
(5 days ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.242.3 (US/United States/-): 1 in ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.242.3 (US/United States/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-28 07:09:12
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 74.7.242.3 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 74.7.242.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 03:09:08.374402 2026] [security2:error] [pid 14913:tid 14913] [client 74.7.242.3:60450] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kimbrothersduluth.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kimbrothersduluth.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "apE0FLpoNdw9y6h5TY5AWQAAAAw"], referer: https://kimbrothersduluth.com/author/admin/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-28 06:38:51
(5 days ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.242.3 (US/United States/-): 2 in ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.242.3 (US/United States/-): 2 in the last 3600 secs (0-196)
show less
Hacking
๐ช๐ธ
librebit
2026-08-27 12:19:13
(6 days ago)
Brute force
Brute-Force
๐ฉ๐ช
jbcrn
2026-08-26 18:33:59
(1 week ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: OpenAI, ruleset: ai.robots.txt. Request ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: OpenAI, ruleset: ai.robots.txt. Requested honeypot path: /deflagration.afterhours/aal-outstarter/comment-erichthus/rheumatoidal-vowely/bromize-obstupefy/vindicatory/preaching-urinomancy/casern/shrimplike-carbasus/granulitize/tag-teetotum/clonus-indult/Marcionitism-empyreumatical/Ibidinae-semisociative/gynandrarchic-excerpt/forfend/citycism/coth/nock/prefixion/cupolar/flaxwort/afterfall/anastigmatic/flection-forward/voluminal/ad-annul/interoscillate/slowpoke/germinal/Osmeridae/abducent/actinoelectricity-redirect/Justicia/ango-aurify/arefact-Sangraal/wheezer/menorrhoea/morale-heterosexual/cutitis-galeeny/Eutopia/rhagionid/threnodial/privacy-rectified/Centrotus/mantal-silverfish/mudstone/scummy/microbiology/exclusive/porcated/Latinic/reforce/looby/tryptone/Juniperus-Clarkia/demigoddessship-Dargo/menstrual/gurges/orthoepy-fennel/ar
show less
Bad Web Bot
Web App Attack
Anonymous
2026-08-26 10:08:11
(1 week ago)
apache vulnerability scan
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-25 20:36:00
(1 week ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-24 17:56:14
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 74.7.242.3 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 74.7.242.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 13:56:06.138713 2026] [security2:error] [pid 4112653:tid 4112711] [client 74.7.242.3:60140] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||dasperformance.com|F|2"] [data ".das performance.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "dasperformance.com"] [uri "/tag/custom-harley-davidson/W WW.DAS performance.com"] [unique_id "aoyFttLbmzJokCnEV3NPaAAAAAg"], referer: https://dasperformance.com/tag/custom-harley-davidson/
show less
Brute-Force
Bad Web Bot
Web App Attack