π©πͺ
paissangroup
2026-06-21 11:27:18
(3 days ago)
Multiple WAF Violations
Web App Attack
π³π±
Site.eu
2026-06-19 22:28:47
(4 days ago)
Excessive multi-domain requests
Brute-Force
π©πͺ
ghostwarriors
2026-06-19 18:20:55
(5 days ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-19 15:53:51
(5 days ago)
193.37.32.29 - - [19/Jun/2026:17:53:49 +0200] "GET /wp-content/themes/twentytwentyone/content-index. ...
show more
193.37.32.29 - - [19/Jun/2026:17:53:49 +0200] "GET /wp-content/themes/twentytwentyone/content-index.php HTTP/1.1" 404 124 "-" "Go-http-client/1.1"
193.37.32.29 - - [19/Jun/2026:17:53:49 +0200] "GET /wp-includes/admin.php HTTP/1.1" 404 124 "-" "Go-http-client/1.1"
193.37.32.29 - - [19/Jun/2026:17:53:49 +0200] "GET /wp-includes/ HTTP/1.1" 404 124 "-" "Go-http-client/1.1"
193.37.32.29 - - [19/Jun/2026:17:53:50 +0200] "GET /wp-includes/theme-compat/ HTTP/1.1" 404 124 "-" "Go-http-client/1.1"
193.37.32.29 - - [19/Jun/2026:17:53:50 +0200] "GET /wp-includes/css/ HTTP/1.1" 404 124 "-" "Go-http-client/1.1"
...
show less
Brute-Force
Web App Attack
πͺπΈ
pipeline.es
2026-06-18 03:44:22
(6 days ago)
Web scanning / probing for vulnerable paths | URL: /wp-content/users.php | Evidence: 193.37.32.29 - ...
show more
Web scanning / probing for vulnerable paths | URL: /wp-content/users.php | Evidence: 193.37.32.29 - - [18/Jun/2026:05:43:55 +0200] \"GET /wp-content/users.php HTTP/1.1\" 404 16 \"http://spainbytrain.net/wp-content/users.php\" \"Go-http-client/1.1\" GEOIP_COUNTRY_CODE=SG | ASN: F.n.s. Holdings Limited | Country: SG
show less
Port Scan
Web App Attack
π«π·
masterguru
2026-06-17 09:04:02
(1 week ago)
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-195)
show less
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-06-17 07:42:04
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 193.37.32.29 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 193.37.32.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 03:41:57.275257 2026] [security2:error] [pid 14345:tid 14345] [client 193.37.32.29:42289] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "semisysteme.com"] [uri "/wp-includes/images/wp-config.php"] [unique_id "ajJPxbDSogZq9kVZXMk7DwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-12 14:15:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 193.37.32.29 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 193.37.32.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 10:15:48.209674 2026] [security2:error] [pid 6791:tid 6806] [client 193.37.32.29:32469] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.chelseyrae.com"] [uri "/wp-content/uploads/wp-config.php"] [unique_id "aiwUlP6tpiZYTiDekSmC0wAAAAw"], referer: http://chelseyrae.com/wp-content/uploads/wp-config.php
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-11 12:47:26
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 193.37.32.29 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 193.37.32.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 08:47:18.785753 2026] [security2:error] [pid 19778:tid 19778] [client 193.37.32.29:62317] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "armrms.com"] [uri "/wp-content/wp-config.php"] [unique_id "aiquVjHFd0FScrZ0pUwqIAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-11 06:46:09
(1 week ago)
Banned by Fail2Ban on server
Web App Attack
π©πͺ
LRob.fr
2026-06-04 20:45:19
(2 weeks ago)
Repeated 403 errors, blocked by Fail2ban in custom-403 jail
Bad Web Bot
π«π·
masterguru
2026-06-04 01:51:25
(2 weeks ago)
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-196)
show less
Bad Web Bot
Anonymous
2026-06-04 00:19:49
(2 weeks ago)
Banned by Fail2Ban on server
Web App Attack
πͺπΈ
masterguru
2026-06-03 13:11:39
(3 weeks ago)
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-122)
show less
Bad Web Bot
π΅π±
nfsec.pl
2026-05-31 00:22:59
(3 weeks ago)
193.37.32.29 - - [31/May/2026:00:22:56 +0000] "GET /Molla1.5.6/wp-content/users.php HTTP/2.0" 404 24 ...
show more
193.37.32.29 - - [31/May/2026:00:22:56 +0000] "GET /Molla1.5.6/wp-content/users.php HTTP/2.0" 404 24611 "http://nfsec.pl/Molla1.5.6/wp-content/users.php" "Go-http-client/2.0"
193.37.32.29 - - [31/May/2026:00:22:57 +0000] "GET /p-includes/admin.php HTTP/2.0" 404 23890 "http://nfsec.pl/p-includes/admin.php" "Go-http-client/2.0"
193.37.32.29 - - [31/May/2026:00:22:57 +0000] "GET /wp-includes/mmenu.php HTTP/2.0" 404 23876 "http://nfsec.pl/wp-includes/mmenu.php" "Go-http-client/2.0"
193.37.32.29 - - [31/May/2026:00:22:58 +0000] "GET /wp-includes/theme-compat/chosen.php HTTP/2.0" 404 24091 "http://nfsec.pl/wp-includes/theme-compat/chosen.php" "Go-http-client/2.0"
193.37.32.29 - - [31/May/2026:00:22:59 +0000] "GET /wp-content/uploads/elementor/classwithtostring.php HTTP/2.0" 404 23986 "http://nfsec.pl/wp-content/uploads/elementor/classwithtostring.php" "Go-http-client/2.0"
...
show less
Web App Attack
Exploited Host