๐ช๐ธ
librebit
2026-10-05 13:27:38
(3 days ago)
Brute force
Brute-Force
๐ง๐ช
Saec
2026-10-05 10:09:29
(3 days ago)
Jarvis auto-ban: Honeypot /wp-admin/setup-config.php via simplissimo.saec.me [FR] ASN:FINE GROUP SER ...
show more
Jarvis auto-ban: Honeypot /wp-admin/setup-config.php via simplissimo.saec.me [FR] ASN:FINE GROUP SERVERS SOLUTIONS LLC
show less
Port Scan
Web App Attack
๐ช๐ธ
librebit
2026-09-15 06:43:04
(3 weeks ago)
Brute force
Brute-Force
๐ซ๐ท
claude CALVET
2026-08-19 18:42:45
(1 month ago)
gee-Joomla Admin : try to force the door...
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-29 21:16:35
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 194.99.24.208 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.99.24.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 17:16:28.873272 2026] [security2:error] [pid 450989:tid 450989] [client 194.99.24.208:23045] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ammatusk.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ammatusk.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amptrOoLO73YPuCgfpXehwAAAAc"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 09:32:49
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 194.99.24.208 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.99.24.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 05:32:42.107161 2026] [security2:error] [pid 3603060:tid 3603060] [client 194.99.24.208:22449] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rogerbrooks.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rogerbrooks.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amclum5pFhVIeLWHzgy66QAAAAQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
DRI
2026-07-17 03:37:32
(2 months ago)
Web attack/Malicious activity detected
Web App Attack
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-04-18 21:26:51
(1 year ago)
WP Login Scan Activities
Web App Attack
๐ฎ๐ฉ
Burayot
2025-04-16 22:26:03
(1 year ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 194.99.24.208 (US/United States/-): ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 194.99.24.208 (US/United States/-): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-13 12:28:56
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 194.99.24.208 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 194.99.24.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 13 07:28:49.268317 2025] [security2:error] [pid 1772:tid 1772] [client 194.99.24.208:44641] [client 194.99.24.208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "avlchem.net"] [uri "/.env"] [unique_id "Z63lgURSLyzI0q9V63J1sAAAAAs"], referer: https://a00087.tiiny.site/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2023-11-26 16:22:56
(2 years ago)
opencart admin attack from fail2ban
...
DDoS Attack
Brute-Force
SSH
๐ฆ๐บ
MAGIC
2023-11-08 05:11:17
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฒ๐น
Malta
2023-11-07 18:45:54
(2 years ago)
194.99.24.208 - - [07/Nov/2023:19:45:54 +0100] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (X11; Ubun ...
show more
194.99.24.208 - - [07/Nov/2023:19:45:54 +0100] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:109.0) Gecko/20100101 Firefox/117.0"
Brute-force password attempt
show less
Hacking
Brute-Force
Web App Attack
๐ต๐ฑ
rafix
2023-11-01 01:29:31
(2 years ago)
Scrapping website, using diffrent useragents, not wait for response, #botnet20231026
DDoS Attack
Bad Web Bot
๐ฉ๐ช
SCHAPPY
2023-07-26 20:15:43
(3 years ago)
IP was involved in L7 DDoS attack.
DDoS Attack