🇨🇳
pengpeng
2026-09-07 10:09:40
(54 minutes ago)
monitor: on VM-0-7-ubuntu | port: 55508 | ttl: 251 script: github.com/sefinek/UFW-AbuseIPDB-Reporte ...
show more
monitor: on VM-0-7-ubuntu | port: 55508 | ttl: 251 script: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
🇮🇹
matthew_eli
2026-08-14 08:45:07
(3 weeks ago)
Keenetic Firewall: Blocked Traffic (No Port Detected - likely UDP). Blocked 139 times in last 24h.
Port Scan
🇮🇱
spd.co.il
2026-05-02 20:01:37
(4 months ago)
Web application attack detected
Hacking
Web App Attack
Anonymous
2026-04-30 01:19:18
(4 months ago)
Malicious activity detected
Hacking
Web App Attack
🇮🇹
VHosting
2026-04-26 15:01:07
(4 months ago)
Detected attack and reported by a human
Brute-Force
Web App Attack
SSH
DDoS Attack
Exploited Host
Bad Web Bot
🇮🇳
liveaspankaj
2026-04-04 22:08:07
(5 months ago)
DDoS attack: 153 requests in 5m (GET / or repair.php).
DDoS Attack
🇨🇳
pengpeng
2026-03-26 16:58:25
(5 months ago)
monitor: on VM-0-7-ubuntu | port: 55544 | ttl: 251 script: github.com/sefinek/UFW-AbuseIPDB-Reporte ...
show more
monitor: on VM-0-7-ubuntu | port: 55544 | ttl: 251 script: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
🇺🇸
TPI-Abuse
2025-12-31 05:36:01
(8 months ago)
(mod_security) mod_security (id:225170) triggered by 205.147.16.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 205.147.16.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 31 00:35:55.432801 2025] [security2:error] [pid 23087:tid 23087] [client 205.147.16.40:18352] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||amespeak.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "amespeak.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aVS2Oyp0EP17MatNBub0HQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2025-12-20 22:05:11
(8 months ago)
Too many Status 40X (13)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2025-12-20 05:50:22
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 205.147.16.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 205.147.16.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 20 00:50:16.584238 2025] [security2:error] [pid 6931:tid 6931] [client 205.147.16.40:6153] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.fuentevictoria.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "aUY5GKFebOTSRyOuFV3yawAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇲🇾
Rizzy
2025-12-20 03:12:58
(8 months ago)
Multiple WAF Violations
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2025-12-20 01:53:20
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 205.147.16.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 205.147.16.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 19 20:53:14.905365 2025] [security2:error] [pid 12224:tid 12339] [client 205.147.16.40:61367] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "luxury.management"] [uri "/wp-admin/admin-ajax.php"] [unique_id "aUYBimOh_Vpt5knASQ6WHQAAAgg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-12-20 01:12:31
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 205.147.16.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 205.147.16.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 19 20:12:23.852009 2025] [security2:error] [pid 15737:tid 15737] [client 205.147.16.40:49342] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "salernospizza.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "aUX391R_ZEAE_c5T1neyrgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-12-20 00:30:12
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 205.147.16.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 205.147.16.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 19 19:30:08.379877 2025] [security2:error] [pid 13069:tid 13069] [client 205.147.16.40:27248] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.pcga.golf"] [uri "/wp-admin/admin-ajax.php"] [unique_id "aUXuEGzUpFE3ttDJIM3G0wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2025-12-19 23:38:12
(8 months ago)
Multiple WAF Violations
Web App Attack