|
π¦πΊ
MAGIC
|
|
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
|
DDoS Attack
Bad Web Bot
|
|
|
π«π·
SpaceHost-Server
|
|
|
Brute-Force
Web App Attack
|
|
|
Anonymous
|
|
Fail2Ban triggered
|
Web App Attack
|
|
|
π¦πΊ
screwlooseit.com.au
|
|
Blocked by CSF 13 firewall - Rule: XMLRPC
NL/Netherlands/-
|
Web App Attack
|
|
|
π©πͺ
Lino Project
|
|
45.130.81.24 - - [10/Apr/2026:11:25:11 +0200] "GET /wp-admin/post-new.php HTTP/1.1" 403 6555 "https: ...
show more
45.130.81.24 - - [10/Apr/2026:11:25:11 +0200] "GET /wp-admin/post-new.php HTTP/1.1" 403 6555 "https://www.primobio.it/mio-account/" "Mozilla/5.0 (Windows NT 6.3; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 Safari/537.36"
...
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
π«π·
Baking333
|
|
[redacted] 45.130.81.24 - - [03/Apr/2026:23:48:52 +0100] "GET //wordpress/ HTTP/1.1" 301 4333 0/502 ...
show more
[redacted] 45.130.81.24 - - [03/Apr/2026:23:48:52 +0100] "GET //wordpress/ HTTP/1.1" 301 4333 0/502 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:136.0) Gecko/20100101 Firefox/138.0" [redacted] 45.130.81.24 - - [03/Apr/2026:23:48:52 +0100] "GET /wordpress HTTP/1.1" 302 5267 0/53238 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:136.0) Gecko/20100101 Firefox/138.0"
show less
|
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 45.130.81.24 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.81.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 08 17:47:20.823434 2026] [security2:error] [pid 11168:tid 11168] [client 45.130.81.24:41419] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/sftp-config.json" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.crypto-stamps.com"] [uri "/restore/sftp-config.json"] [unique_id "aa3uaMzBZj6MFCnyfRax7gAAAAI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
π¬π§
relianoid.com
|
|
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
|
Web Spam
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 45.130.81.24 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 45.130.81.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 04:10:44.735078 2026] [security2:error] [pid 22111:tid 22132] [client 45.130.81.24:27969] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||peapage.productions|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "peapage.productions"] [uri "/backup/mysql.sql"] [unique_id "aZWCFD0UJz0XJ9yYzlW0DQAAAMU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 45.130.81.24 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.81.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 22:25:01.026828 2026] [security2:error] [pid 12840:tid 12840] [client 45.130.81.24:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eddysgroup.com"] [uri "/.env"] [unique_id "aZE8jb2TB9BhaVNflIwC-QAAAAc"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 45.130.81.24 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 45.130.81.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 11 19:04:42.316954 2026] [security2:error] [pid 10044:tid 10044] [client 45.130.81.24:41727] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||sailingcharterburma.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "sailingcharterburma.com"] [uri "/restore/sql.sql"] [unique_id "aY0ZGt4D_2tSv_OESGXe4wAAAAw"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
π«π·
mikekarl
|
|
Empty or bad user-agent.
|
Bad Web Bot
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 45.130.81.24 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 45.130.81.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 20 09:38:51.985155 2026] [security2:error] [pid 116542:tid 116568] [client 45.130.81.24:55445] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||ethniclivesmatter.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ethniclivesmatter.com"] [uri "/old/dump.sql"] [unique_id "aW-TexRBZxTPQ2bCVzHJXAAAAUs"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πͺπΈ
10dencehispahard SL
|
|
Wordpress probing for vulnerabilities
|
Hacking
Exploited Host
|
|
|
πΊπΈ
Penny Packer
|
|
Fail2Ban apache-tripwires
|
Web App Attack
|
|