Anonymous
2026-10-05 13:16:58
(51 minutes ago)
Automated report: 5 malicious HTTP request(s) blocked by WAF/IPS on public web services. Requested: ...
show more
Automated report: 5 malicious HTTP request(s) blocked by WAF/IPS on public web services. Requested: /index.php
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 12:58:33
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 31.207.7.154 (vm174563.hosted-by.qwins.co): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 31.207.7.154 (vm174563.hosted-by.qwins.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 08:58:27.900199 2026] [security2:error] [pid 22750:tid 22750] [client 31.207.7.154:60308] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||elevese.com|F|2"] [data ".pkg_sourcerer.sys.ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "elevese.com"] [uri "/language/en-GB/en-GB.pkg_sourcerer.sys.ini"] [unique_id "asOe844ppXwyF52Opx_5zQAAAA8"], referer: https://elevese.com/administrator/manifests/packages/pkg_sourcerer.xml
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-10-05 11:24:33
(2 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 127
Exploited Host
Web App Attack
๐ฉ๐ช
conseilgouz
2026-10-05 09:40:55
(4 hours ago)
lae-Joomla Admin : try to force the door...
Hacking
๐ฌ๐ง
consul.to
2026-10-05 07:56:35
(6 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 07:38:45
(6 hours ago)
(mod_security) mod_security (id:210730) triggered by 31.207.7.154 (vm174563.hosted-by.qwins.co): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 31.207.7.154 (vm174563.hosted-by.qwins.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 03:38:39.987600 2026] [security2:error] [pid 26933:tid 26933] [client 31.207.7.154:35974] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bowdens-landing.com|F|2"] [data ".pkg_sourcerer.sys.ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bowdens-landing.com"] [uri "/language/en-GB/en-GB.pkg_sourcerer.sys.ini"] [unique_id "asNT_wQfTnnnSjrJxl3wmAAAAAI"], referer: https://bowdens-landing.com/administrator/manifests/packages/pkg_sourcerer.xml
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-10-05 03:54:13
(10 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
Anonymous
2026-10-05 02:39:33
(11 hours ago)
WEB attack
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-05 01:31:02
(12 hours ago)
(mod_security) mod_security (id:210730) triggered by 31.207.7.154 (vm174563.hosted-by.qwins.co): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 31.207.7.154 (vm174563.hosted-by.qwins.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 21:30:55.626454 2026] [security2:error] [pid 24752:tid 24762] [client 31.207.7.154:37072] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||rush.piazzala.com|F|2"] [data ".pkg_sourcerer.sys.ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "rush.piazzala.com"] [uri "/language/en-GB/en-GB.pkg_sourcerer.sys.ini"] [unique_id "asL9z3xB9XPB14VMWt_kUgAAAEg"], referer: https://rush.piazzala.com/administrator/manifests/packages/pkg_sourcerer.xml
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
conseilgouz
2026-10-05 01:27:23
(12 hours ago)
coe-Joomla Admin : try to force the door...
Hacking
๐ฆ๐บ
Bay13
2026-10-05 00:50:04
(13 hours ago)
CrowdSec:custom/modsecurity
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-10-05 00:20:34
(13 hours ago)
[05/Oct/2026:03:20:33 +0300] -- 31.207.7.154 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-co ...
show more
[05/Oct/2026:03:20:33 +0300] -- 31.207.7.154 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-content/plugins/wpmudev-updates/changelog.txt HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-10-05 00:02:17
(14 hours ago)
20 attempts against mh-misbehave-ban on frost
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
conseilgouz
2026-10-04 23:41:53
(14 hours ago)
hae-Joomla Admin : try to force the door...
Hacking
๐ซ๐ท
conseilgouz
2026-10-04 22:40:39
(15 hours ago)
sce-Joomla Admin : try to force the door...
Hacking