๐บ๐ธ
TPI-Abuse
2026-10-11 03:34:55
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 212.30.33.67 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 212.30.33.67 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 23:34:49.180895 2026] [security2:error] [pid 11444:tid 11460] [client 212.30.33.67:41855] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "riverwatchranch.com"] [uri "/.env"] [unique_id "assD2dw8RsieC_7GzZjzrQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-11 01:37:49
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 212.30.33.67 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 212.30.33.67 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 21:37:43.939165 2026] [security2:error] [pid 18896:tid 18896] [client 212.30.33.67:48199] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "beckersystems.net"] [uri "/.env"] [unique_id "asroZ5lsqEeav2B2QqxKzAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-11 01:19:57
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 212.30.33.67 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 212.30.33.67 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 21:19:50.802284 2026] [security2:error] [pid 23584:tid 23584] [client 212.30.33.67:35767] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jennifergiesler.com"] [uri "/.env"] [unique_id "asrkNrfcs7HR0N3BPD42zwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-10-02 00:35:03
(1 week ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐จ๐ฟ
unhfree.net
2026-08-26 06:25:31
(1 month ago)
Brute-Force
Exploited Host
๐ป๐ณ
scuslon
2026-07-21 18:03:43
(2 months ago)
RdpGuard detected brute-force attempt on RDP
Brute-Force
๐บ๐ฆ
URAN Publishing Service
2026-06-09 02:29:12
(4 months ago)
212.30.33.67 - - [09/Jun/2026:05:29:12 +0300] "GET /wp-content/languages/wp-conflg.php HTTP/1.1" 404 ...
show more
212.30.33.67 - - [09/Jun/2026:05:29:12 +0300] "GET /wp-content/languages/wp-conflg.php HTTP/1.1" 404 492 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3"
212.30.33.67 - - [09/Jun/2026:05:29:12 +0300] "GET /wp-content/themes/classwithtostring.php HTTP/1.1" 404 492 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.88 Safari/537.36"
...
show less
Web App Attack
๐ท๐บ
sms.ru
2026-06-08 23:33:05
(4 months ago)
/vendor/phpunit/phpunit/src/Util/PHP/files.php
Web App Attack
๐ซ๐ท
Octopuce
2026-06-08 21:37:56
(4 months ago)
Aggressive web search of vulnerable pages: /wp-content/plugins/classic-editor/alam.php /wordpress/wp ...
show more
Aggressive web search of vulnerable pages: /wp-content/plugins/classic-editor/alam.php /wordpress/wp-admin/includes/admin-filters.php /assets/c ...
show less
Web App Attack
Anonymous
2026-05-06 16:37:20
(5 months ago)
<comment>
Web App Attack
๐ฌ๐ง
poundawebsiteltd
2026-05-06 13:43:13
(5 months ago)
Apache 403 Forbidden Access. Evidence: [REDACTED_DOMAIN]:80 212.30.33.67 - - [06/May/2026:14:43:11 + ...
show more
Apache 403 Forbidden Access. Evidence: [REDACTED_DOMAIN]:80 212.30.33.67 - - [06/May/2026:14:43:11 +0100] GET /wp-content/uploads/elementor/index.php HTTP/1.1 403 158 - Go-http-client/1.1
show less
Web App Attack
๐ซ๐ท
Octopuce
2026-05-06 12:52:32
(5 months ago)
Aggressive web search of vulnerable pages: /wp-content/plugins/dummyyummy/wp-signup.php /wp-content/ ...
show more
Aggressive web search of vulnerable pages: /wp-content/plugins/dummyyummy/wp-signup.php /wp-content/plugins/dzs-zoomsounds/1877.php /wp-content ...
show less
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-05-06 12:50:34
(5 months ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-04-23 08:40:06
(5 months ago)
212.30.33.67 - - [23/Apr/2026:11:40:06 +0300] "GET /wp-content/plugins/dzs-zoomsounds/1877.php HTTP/ ...
show more
212.30.33.67 - - [23/Apr/2026:11:40:06 +0300] "GET /wp-content/plugins/dzs-zoomsounds/1877.php HTTP/1.1" 404 716 "-" "Go-http-client/1.1"
...
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-04-23 03:13:52
(5 months ago)
212.30.33.67 - - [23/Apr/2026:06:13:51 +0300] "GET /wp-content/plugins/wordpress-seo/src/dashboard/a ...
show more
212.30.33.67 - - [23/Apr/2026:06:13:51 +0300] "GET /wp-content/plugins/wordpress-seo/src/dashboard/application/search-rankings/about.php HTTP/1.1" 404 709 "-" "Go-http-client/1.1"
212.30.33.67 - - [23/Apr/2026:06:13:51 +0300] "GET /wp-content/plugins/Iitespeed-cache/classwithtostring.php HTTP/1.1" 404 709 "-" "Go-http-client/1.1"
...
show less
Web App Attack