π©πͺ
Vegascosmetics
2026-06-12 21:59:14
(1 day ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after suspicious activity. Vegas Security
DDoS Attack
Hacking
Exploited Host
π«π·
tecnicorioja
2026-06-10 22:00:49
(3 days ago)
wp-login attack [10/Jun/2026:03:21:20
Brute-Force
Web App Attack
π§πͺ
taivas.nl
2026-06-10 04:32:48
(4 days ago)
Many_bad_calls
Web App Attack
π©πͺ
ghostwarriors
2026-06-10 03:50:13
(4 days ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
πΈπ¬
securejdprop
2026-06-10 03:17:21
(4 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing. crowdsecurity/http-probing
Hacking
Web App Attack
π¨π
rt
2026-06-10 03:13:08
(4 days ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-10 03:07:28
(4 days ago)
(mod_security) mod_security (id:243420) triggered by 193.17.59.66 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:243420) triggered by 193.17.59.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 23:07:24.601398 2026] [security2:error] [pid 13257:tid 13257] [client 193.17.59.66:51345] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Referer" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||truthsabouthealthcare.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "truthsabouthealthcare.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "aijU6W3ReyDHZKIO_43I2gAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
etu brutus
2026-06-10 03:05:57
(4 days ago)
193.17.59.66 has been banned for [WebApp Attack]
...
Hacking
Bad Web Bot
Web App Attack
π¬π§
consul.to
2026-06-10 02:24:06
(4 days ago)
Web attack/malicious scanning detected
Web App Attack
π©πͺ
Petros Stefanakis
2026-06-10 02:07:36
(4 days ago)
(bind,mod_security) Login failure/trigger from 193.17.59.66 (FR/France/-)
SQL Injection
πΊπΈ
TPI-Abuse
2026-06-10 01:57:16
(4 days ago)
(mod_security) mod_security (id:243420) triggered by 193.17.59.66 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:243420) triggered by 193.17.59.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 21:57:10.324452 2026] [security2:error] [pid 11306:tid 11306] [client 193.17.59.66:41017] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Referer" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||firebelly.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "firebelly.org"] [uri "/wp-admin/admin-ajax.php"] [unique_id "aijEb52tueejhbJ2u9lUZwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
ipoac.nl
2026-06-10 01:48:45
(4 days ago)
-:443 193.17.59.66 - - [10/Jun/2026:03:48:43 +0200] - "POST /wp-admin/admin-ajax.php HTTP/2.0" 404 2 ...
show more
-:443 193.17.59.66 - - [10/Jun/2026:03:48:43 +0200] - "POST /wp-admin/admin-ajax.php HTTP/2.0" 404 2206 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 Safari/537.36"
show less
Bad Web Bot
π«π·
β¨
2026-06-10 01:38:21
(4 days ago)
Domain : pleskcontrolpanel
Rule : admin
2026-06-10 01:37:17 127.0.0.1 POST /wp-admin/admin-ajax.php ...
show more
Domain : pleskcontrolpanel
Rule : admin
2026-06-10 01:37:17 127.0.0.1 POST /wp-admin/admin-ajax.php - 8880 - 127.0.0.1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 Safari/537.36 - 404 0 2 1226 1783 1357 - 193.17.59.66
show less
Exploited Host
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-10 01:29:07
(4 days ago)
(mod_security) mod_security (id:243420) triggered by 193.17.59.66 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:243420) triggered by 193.17.59.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 21:29:00.274749 2026] [security2:error] [pid 30174:tid 30174] [client 193.17.59.66:23417] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Referer" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||peterjohnsonauthor.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "peterjohnsonauthor.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "aii919aGfq68vpJPGcBl0AAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-10 01:04:15
(4 days ago)
(mod_security) mod_security (id:243420) triggered by 193.17.59.66 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:243420) triggered by 193.17.59.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 21:04:07.591263 2026] [security2:error] [pid 17482:tid 17482] [client 193.17.59.66:45935] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Referer" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6649"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||cathybermanmft.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "cathybermanmft.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "aii4A0AHtXdhWeaydvvUlgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack