π«π·
dynamix
2026-07-21 18:17:37
(4 hours ago)
Multiple WAF Violations
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-09 01:22:11
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 194.61.40.132 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.61.40.132 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 21:21:50.862572 2026] [security2:error] [pid 19177:tid 19177] [client 194.61.40.132:48165] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.staben.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.staben.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aidqrpYj1Aj8olH4YP1vDQAAAAs"], referer: https://nextvivo.bio/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
paulshipley.com.au
2026-05-26 14:49:26
(1 month ago)
shotbysuzanne.com.au:443 194.61.40.132 - - [27/May/2026:00:49:24 +1000] "GET /wp-content/plugins/pwn ...
show more
shotbysuzanne.com.au:443 194.61.40.132 - - [27/May/2026:00:49:24 +1000] "GET /wp-content/plugins/pwnd/pwnd.php HTTP/1.1" 404 52686 "http://shotbysuzanne.com.au/wp-content/plugins/pwnd/pwnd.php" "Go-http-client/1.1"
...
show less
Web App Attack
πͺπΈ
el-brujo
2026-05-23 08:57:36
(1 month ago)
Cloudflare WAF: Request Path: /phpunit/src/Util/PHP/eval-stdin.php Request Query: Host: www.elhacke ...
show more
Cloudflare WAF: Request Path: /phpunit/src/Util/PHP/eval-stdin.php Request Query: Host: www.elhacker.net userAgent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Action: block Source: firewallManaged ASN Description: GSL Networks Pty LTD Country: SG Method: GET Timestamp: 2026-05-23T08:57:36Z ruleId: db1f213645904ab9b16b227b4a6a7b3a. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
Anonymous
2026-05-23 06:50:19
(1 month ago)
(wp-php-upload-includes) Block attempt to access .php in uploads wordpress uploads or well-known 194 ...
show more
(wp-php-upload-includes) Block attempt to access .php in uploads wordpress uploads or well-known 194.61.40.132 (IN/India/-)
show less
Brute-Force
π«π·
Octopuce
2026-05-19 23:09:02
(2 months ago)
Aggressive web search of vulnerable pages: /wp-content/plugins/fix/ /wp-content/themes/twentytwentyf ...
show more
Aggressive web search of vulnerable pages: /wp-content/plugins/fix/ /wp-content/themes/twentytwentyfour/ /wp-includes/bk/ /wp-content/ALFA_DATA ...
show less
Web App Attack
π«π·
dynamix
2026-05-16 01:55:04
(2 months ago)
Multiple WAF Violations
Web App Attack
π«π·
masterguru
2026-05-14 03:55:05
(2 months ago)
Too much 404 requests in 1 minute. Operator GE matched 10 at IP:block_script. (46020-193)
Hacking
π³π±
Site.eu
2026-05-13 10:37:35
(2 months ago)
Excessive multi-domain requests
Brute-Force
πΊπΈ
Major Hostility
2026-04-21 08:50:12
(3 months ago)
"GET /wp-includes/images/wlw/ HTTP/1.1" 404
"GET /wp-includes/sodium_compat/lib/ HTTP/1.1" 404
"GET ...
show more
"GET /wp-includes/images/wlw/ HTTP/1.1" 404
"GET /wp-includes/sodium_compat/lib/ HTTP/1.1" 404
"GET /wp-content/plugins/revslider/includes/external/page/ HTTP/1.1" 404
"GET /wp-includes/blocks/code/ HTTP/1.1" 404
"GET /wp-includes/blocks/archives/ HTTP/1.1" 404
"GET /wp-includes/css/dist/components/ HTTP/1.1" 404
"GET /wp-content/plugins/js-support-ticket/ HTTP/1.1" 404
"GET /wp-content/plugins/easy-themes-manager/ HTTP/1.1" 404
"GET /wp-content/settings/ HTTP/1.1" 404
"GET /wp-includes/blocks/pullquote/ HTTP/1.1" 404
"GET /wp-includes/bk/ HTTP/1.1" 404
"GET /wp-content/plugins/shell/ HTTP/1.1" 404
"GET /wp-admin/images/html-api/ HTTP/1.1" 404
"GET /wp-includes/blocks/comments-pagination-num
show less
Web App Attack
π³π±
Site.eu
2026-04-21 00:44:33
(3 months ago)
Excessive multi-domain requests
Brute-Force
πΊπΈ
TPI-Abuse
2026-04-20 23:46:59
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 194.61.40.132 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 194.61.40.132 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 20 19:46:53.153328 2026] [security2:error] [pid 584170:tid 584170] [client 194.61.40.132:54269] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kendylcelina.com"] [uri "/.git/execute.php"] [unique_id "aea67ef6Z5vtwZu1-D6LPgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-20 08:19:02
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 194.61.40.132 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 194.61.40.132 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 20 04:18:55.641411 2026] [security2:error] [pid 1190658:tid 1190658] [client 194.61.40.132:38685] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "superiorimagestudios.jasbemarketing.com"] [uri "/.git/execute.php"] [unique_id "aeXhbxCcU0hN6Cp11M_1NwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
ConsulHosting
2026-04-19 05:20:17
(3 months ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
π«π·
dynamix
2026-04-19 04:07:00
(3 months ago)
Multiple WAF Violations
Web App Attack