๐ฉ๐ช
LRob
2026-08-31 15:06:13
(22 hours ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: /wp-login.php | 2026-08-31 15:06 UTC
show less
Hacking
Web App Attack
๐ซ๐ท
Tilellit.PRO
2026-05-07 17:45:18
(3 months ago)
Fail2Ban banned 147.78.183.107 for security violations in jail wp-armour. Log: 2026/05/07 17:45:17 [ ...
show more
Fail2Ban banned 147.78.183.107 for security violations in jail wp-armour. Log: 2026/05/07 17:45:17 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 147.78.183.107 | Target: wplogin" , client: 147.78.183.107, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
๐จ๐ฆ
polycoda
2025-06-22 11:40:14
(1 year ago)
๐ Probes for wp-login.php and other inexistent URLs
Hacking
Web App Attack
๐ช๐ธ
masterguru
2025-06-18 07:06:31
(1 year ago)
HTTP header is restricted by policy (/content-encoding/). String match within "/accept-charset/ /con ...
show more
HTTP header is restricted by policy (/content-encoding/). String match within "/accept-charset/ /content-encoding/ /proxy/ /lock-token/ /content-range/ /if/" at TX:header_name_content-encoding. (920450-123)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-03-24 09:53:43
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 147.78.183.107 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:211120) triggered by 147.78.183.107 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 24 05:53:36.029071 2025] [security2:error] [pid 3620397:tid 3620397] [client 147.78.183.107:52615] [client 147.78.183.107] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||beirutbazar.com|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/all-in-one-seo-pack/classes/aiosp.class.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "beirutbazar.com"] [uri "/wp-content/plugins/all-in-one-seo-pack/classes/aiosp.class.php"] [unique_id "Z-EroEf6sq9eZhVPxjONywAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-21 11:08:36
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 147.78.183.107 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:211120) triggered by 147.78.183.107 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 21 07:08:29.880132 2025] [security2:error] [pid 29510:tid 29510] [client 147.78.183.107:46427] [client 147.78.183.107] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||avvmarchetticollini.it|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/canto/includes/lib/download.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "avvmarchetticollini.it"] [uri "/wp-content/plugins/canto/includes/lib/download.php"] [unique_id "Z91IrbzO4NXmqyW6H4haggAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-19 06:36:04
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 147.78.183.107 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:211120) triggered by 147.78.183.107 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 19 02:36:00.158187 2025] [security2:error] [pid 15482:tid 15482] [client 147.78.183.107:51157] [client 147.78.183.107] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||ashleycroft.com|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/all-in-one-seo-pack/classes/aiosp.class.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ashleycroft.com"] [uri "/wp-content/plugins/all-in-one-seo-pack/classes/aiosp.class.php"] [unique_id "Z9pl0Bh-HY_yHUR-u6DBdAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
weblite
2025-03-14 22:29:53
(1 year ago)
WP_MALWARE_PROBE
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-13 00:14:16
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 147.78.183.107 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:211120) triggered by 147.78.183.107 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 12 20:14:08.249930 2025] [security2:error] [pid 5588:tid 5588] [client 147.78.183.107:10423] [client 147.78.183.107] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||akistech.com|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/canto/includes/lib/download.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "akistech.com"] [uri "/wp-content/plugins/canto/includes/lib/download.php"] [unique_id "Z9IjUP4JGc_zwHVhiyIkFgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-10 16:36:09
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 147.78.183.107 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:211120) triggered by 147.78.183.107 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 10 12:36:05.785985 2025] [security2:error] [pid 24405:tid 24405] [client 147.78.183.107:53217] [client 147.78.183.107] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||activethinkers.net|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/w3-total-cache/lib/w3/pager.class.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "activethinkers.net"] [uri "/wp-content/plugins/w3-total-cache/lib/W3/Pager.class.php"] [unique_id "Z88U9eJAqtkQ5FIDqzkA7AAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-02-28 07:28:22
(1 year ago)
wordpress-trap
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-26 15:18:10
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 147.78.183.107 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:211120) triggered by 147.78.183.107 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 26 10:18:01.459569 2025] [security2:error] [pid 24553:tid 24667] [client 147.78.183.107:25955] [client 147.78.183.107] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||www.triestemagica.org|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/canto/includes/lib/download.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.triestemagica.org"] [uri "/wp-content/plugins/canto/includes/lib/download.php"] [unique_id "Z78wqWceMSJ6edhl1XC01wAAAMo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
OnTheEdge
2025-01-24 04:30:32
(1 year ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
Anonymous
2024-11-27 11:38:34
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐จ๐ฆ
wil.com
2024-06-21 15:57:28
(2 years ago)
GlobalProtect login attempts with user test.
VPN IP
Brute-Force