๐ง๐ท
Black_Brazil
2026-06-26 16:56:00
(4 hours ago)
Blocked IP: 173.239.196.58; User-Agent - Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:79.0) Gecko/201001 ...
show more
Blocked IP: 173.239.196.58; User-Agent - Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:79.0) Gecko/20100101 Firefox/79.0; Blocked by - Cloudflare WAF, managed challenge; Number of blocked requests - 288; Detected source operating systems: Windows - 202, Linux - 44, Mac OSX - 28; Incident date: 2026-06-26; UTC time: 15:35; automated malicious attack โ reconnaissance scanner/botnet searching for exposed directories, suspicious plugins, and potential backdoors: GET URL paths: /modules/; /wp-includes/js/codemirror/; /wp-includes/js/tinymce/langs/; /wordpress/wp-content/uploads/; /include/; /blog/; /wp-content/themes/twentytwent; /templates/beez5/; /upload/bilder/; /wp-includes/js/imgareaselect/; /wp-content/uploads/2021/; /wp-includes/block-bindings/; /assets/js/; /wp-includes/Requests/library/; /rest-api/fields/; /js/tinymce/utils/%20; /wp-includes/js/plupload/; /wp-includes/rest-api/fields/; /wp-admin/images/html-api/;
show less
Brute-Force
Bad Web Bot
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-26 14:27:18
(7 hours ago)
(mod_security) mod_security (id:240000) triggered by 173.239.196.58 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240000) triggered by 173.239.196.58 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 10:27:13.514463 2026] [security2:error] [pid 9432:tid 9432] [client 173.239.196.58:23729] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||gogitzit.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "gogitzit.com"] [uri "/images/stories/themes.php"] [unique_id "aj6MQQhT09YBlbXNvF5SBQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-26 10:44:49
(11 hours ago)
Too much 404 requests in 1 minute. Operator GE matched 10 at IP:block_script. (46020-197)
Hacking
๐ง๐ฌ
HighWay
2026-06-25 08:35:50
(1 day ago)
173.239.196.58 - - [25/Jun/2026:08:24:40 +0000] "DELETE http://check.wn-cdn.net/?file=../../../../et ...
show more
173.239.196.58 - - [25/Jun/2026:08:24:40 +0000] "DELETE http://check.wn-cdn.net/?file=../../../../etc/passwd%00 HTTP/1.1" 403 498 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_4_1) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.4 Safari/605.1.15"
173.239.196.58 - - [25/Jun/2026:08:28:03 +0000] "DELETE http://check.wn-cdn.net/?id=1/*!50000UNION*//*!50000SELECT*/1,2 HTTP/1.1" 403 498 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
173.239.196.58 - - [25/Jun/2026:08:35:49 +0000] "POST http://check.wn-cdn.net/?search=%3Cscript%3Ealert('WAF_TEST')%3C/script%3E HTTP/1.1" 403 498 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
...
show less
Hacking
Port Scan
๐ฌ๐ง
consul.to
2026-06-24 12:40:22
(2 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ฌ๐ง
consul.to
2026-06-23 04:45:57
(3 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-21 04:25:22
(5 days ago)
Excessive 404/403 errors
Brute-Force
๐ฌ๐ง
consul.to
2026-06-20 12:38:47
(6 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-19 08:07:39
(1 week ago)
Excessive 404/403 errors
Brute-Force
๐ฉ๐ช
Admin-Gito
2026-06-18 04:33:16
(1 week ago)
173.239.196.58 - - [18/Jun/2026:06:19:36 +0200] "GET /wp-includes/widgets/class-wp-widget-pages.php ...
show more
173.239.196.58 - - [18/Jun/2026:06:19:36 +0200] "GET /wp-includes/widgets/class-wp-widget-pages.php HTTP/1.1" 500 373 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36"
173.239.196.58 - - [18/Jun/2026:06:19:37 +0200] "GET /wp-includes/widgets/class-wp-widget-recent-comments.php HTTP/1.1" 500 373 "-" "Mozilla/5.0 (Windows NT 6.3; Win64; x64; rv:73.0) Gecko/20100101 Firefox/73.0"
173.239.196.58 - - [18/Jun/2026:06:19:39 +0200] "GET /wp-includes/widgets/class-wp-widget-rss.php HTTP/1.1" 500 373 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.149 Safari/537.36"
173.239.196.58 - - [18/Jun/2026:06:20:00 +0200] "GET /wp-includes/block-supports/colors.php HTTP/1.1" 500 373 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3"
173.239.196.58 - - [18/Jun/2026:06:20:07 +0200] "GET /wp-includes/block-supports
...
show less
Web App Attack
๐บ๐ธ
nowyouknow
2026-04-09 09:04:48
(2 months ago)
(From [email protected] ) Hi there,
Iโm Frances with Virtual Ease Service, and we he ...
show more
(From [email protected] ) Hi there,
Iโm Frances with Virtual Ease Service, and we help business owners secure more booked appointments using our Lead Found system. On average, our clients see 10 new appointments every day.
Would you be interested in bringing in more qualified leads for your business?
Frances
show less
Phishing
Web Spam
๐ฎ๐ณ
liveaspankaj
2026-04-04 22:08:14
(2 months ago)
DDoS attack: 133 requests in 5m (GET / or repair.php).
DDoS Attack
๐ซ๐ท
dynamix
2026-02-23 02:34:02
(4 months ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-02-23 02:13:15
(4 months ago)
[redacted] 173.239.196.58 - - [23/Feb/2026:03:13:05 +0100] "GET /wp-admin/css/colors/blue/rk2.php HT ...
show more
[redacted] 173.239.196.58 - - [23/Feb/2026:03:13:05 +0100] "GET /wp-admin/css/colors/blue/rk2.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36"
[redacted] 173.239.196.58 - - [23/Feb/2026:03:13:06 +0100] "GET /wp-admin/css/colors/light/profile.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3"
[redacted] 173.239.196.58 - - [23/Feb/2026:03:13:08 +0100] "GET /wp-admin/user/wp-login.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; Trident/6.0)"
[redacted] 173.239.196.58 - - [23/Feb/2026:03:13:09 +0100] "GET /wp-content/uploads/admin.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36 OPR/70.0.3728.95"
[redacted] 173.239.196.58 - - [23/Feb/2026:03:13:
...
show less
Hacking
Web App Attack
Anonymous
2026-02-22 23:02:02
(4 months ago)
[redacted] 173.239.196.58 - - [23/Feb/2026:00:01:52 +0100] "GET /wp-admin/css/colors/light/profile.p ...
show more
[redacted] 173.239.196.58 - - [23/Feb/2026:00:01:52 +0100] "GET /wp-admin/css/colors/light/profile.php HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Linux x86_64; rv:79.0) Gecko/20100101 Firefox/79.0"
[redacted] 173.239.196.58 - - [23/Feb/2026:00:01:54 +0100] "GET /wp-admin/user/wp-login.php HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.79 Safari/537.36"
[redacted] 173.239.196.58 - - [23/Feb/2026:00:01:55 +0100] "GET /wp-content/uploads/admin.php HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36 OPR/70.0.3728.95"
[redacted] 173.239.196.58 - - [23/Feb/2026:00:01:55 +0100] "GET /css/admin.php HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Windows NT 6.3; Win64; x64; rv:73.0) Gecko/20100101 Firefox/73.0"
[redacted] 173.239.196.58 - - [23/Feb/2026:00:01:55 +0100
...
show less
Hacking
Web App Attack