🇹🇷
neron
2026-09-09 00:55:33
(1 day ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
🇹🇷
neron
2026-09-07 00:55:33
(3 days ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
🇹🇷
neron
2026-09-05 00:55:34
(5 days ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
🇹🇷
neron
2026-09-03 00:48:47
(1 week ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
🇹🇷
neron
2026-08-22 03:21:51
(2 weeks ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
🇹🇷
neron
2026-08-19 04:26:22
(3 weeks ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
🇹🇷
neron
2026-08-11 03:06:50
(4 weeks ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
🇹🇷
neron
2026-07-26 11:20:48
(1 month ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
🇩🇪
rh24
2024-08-20 21:20:57
(2 years ago)
(wordpress-user-enum) Failed wordpress-user-enum trigger from 39.109.115.194 (HK/Hong Kong/-): (CF_ ...
show more
(wordpress-user-enum) Failed wordpress-user-enum trigger from 39.109.115.194 (HK/Hong Kong/-): (CF_ENABLE)
show less
Brute-Force
🇺🇸
TPI-Abuse
2024-08-20 16:10:56
(2 years ago)
(mod_security) mod_security (id:240335) triggered by 39.109.115.194 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 39.109.115.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 20 12:10:48.685445 2024] [security2:error] [pid 12105:tid 12105] [client 39.109.115.194:60671] [client 39.109.115.194] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 39.109.115.194 (+1 hits since last alert)|www.inquisitivequincie.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.inquisitivequincie.com"] [uri "/xmlrpc.php"] [unique_id "ZsTACFv-xSP6d0OKu-uq6gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
Major Hostility
2024-08-19 23:08:18
(2 years ago)
"GET /?author=3 HTTP/1.1" 404
"GET /?author=4 HTTP/1.1" 404
"GET /?author=5 HTTP/1.1" 404
"GET /?aut ...
show more
"GET /?author=3 HTTP/1.1" 404
"GET /?author=4 HTTP/1.1" 404
"GET /?author=5 HTTP/1.1" 404
"GET /?author=6 HTTP/1.1" 404
show less
Web App Attack
🇺🇦
URAN Publishing Service
2024-08-18 22:48:35
(2 years ago)
39.109.115.194 - - [19/Aug/2024:01:47:24 +0300] "GET /wp-login.php HTTP/1.1" 404 275 "-" "Apache-Htt ...
show more
39.109.115.194 - - [19/Aug/2024:01:47:24 +0300] "GET /wp-login.php HTTP/1.1" 404 275 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)"
39.109.115.194 - - [19/Aug/2024:01:48:34 +0300] "GET /xmlrpc.php HTTP/1.1" 404 275 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)"
...
show less
Web App Attack
🇹🇷
rtbh.com.tr
2024-08-18 20:55:31
(2 years ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
Anonymous
2024-08-18 09:11:01
(2 years ago)
Domain : pcaluguer.com
Rule : wp-login
2024-08-18 09:10:35 38.242.219.191 GET /wp-login.php - 80 - 3 ...
show more
Domain : pcaluguer.com
Rule : wp-login
2024-08-18 09:10:35 38.242.219.191 GET /wp-login.php - 80 - 39.109.115.194 HTTP/1.1 Apache-HttpClient/4.5.2 (Java/1.8.0_161) - pcaluguer.com 404 0 2 1459 160 849 - -
show less
Web App Attack
🇺🇸
TPI-Abuse
2024-08-15 19:08:58
(2 years ago)
(mod_security) mod_security (id:240335) triggered by 39.109.115.194 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 39.109.115.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 15 15:08:52.494181 2024] [security2:error] [pid 16522:tid 16522] [client 39.109.115.194:64159] [client 39.109.115.194] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 39.109.115.194 (+1 hits since last alert)|alpha-hk.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "alpha-hk.com"] [uri "/xmlrpc.php"] [unique_id "Zr5SRL4w7CTKWIRX69m78AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack