๐ฉ๐ช
netclix.gr
2026-08-24 03:46:12
(6 hours ago)
(bot_kill_mega) Aggressive Bot Blocked: Go-http-client 45.131.193.201 (US/United States/-): 1 in the ...
show more
(bot_kill_mega) Aggressive Bot Blocked: Go-http-client 45.131.193.201 (US/United States/-): 1 in the last 4600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 45.131.193.201 - - [24/Aug/2026:06:46:11 +0300] "GET /wp-includes/css/buttons.css HTTP/2.0" 200 2669 "http://videopress.gr/wp-includes/css/buttons.css" "Go-http-client/2.0"
show less
Port Scan
๐จ๐ฆ
Anytech
2026-08-24 01:15:34
(9 hours ago)
Blocked by Conn-Monitor: http-bad-user-agent
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-18 15:17:35
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 45.131.193.201 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.131.193.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 11:17:30.455865 2026] [security2:error] [pid 15601:tid 15601] [client 45.131.193.201:27597] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.217"] [uri "/conf/.env"] [unique_id "aoR3ir_ondO6OnP7xCkp6QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 14:23:53
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 45.131.193.201 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.131.193.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 10:23:42.878267 2026] [security2:error] [pid 1003:tid 1003] [client 45.131.193.201:50553] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.235"] [uri "/wp-content/.env"] [unique_id "aoRq7mQyEIQpkLFMDGsudQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ช
RoboSOC
2026-08-18 13:43:22
(5 days ago)
phpunit Remote Code Execution Vulnerability, PTR: PTR record not found
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-18 09:51:31
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 45.131.193.201 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.131.193.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 05:51:15.694223 2026] [security2:error] [pid 3231:tid 3231] [client 45.131.193.201:61519] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.159"] [uri "/vendor/.env"] [unique_id "aoQrE7XdRi4zOGOhXQDurgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 08:35:12
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 45.131.193.201 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.131.193.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 04:35:05.749840 2026] [security2:error] [pid 11992:tid 11992] [client 45.131.193.201:59411] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.151.37"] [uri "/conf/.env"] [unique_id "aoQZOfkETNb0I-Iv-RXOwwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-12 15:05:52
(1 week ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐ฉ๐ช
abdubhai
2026-08-12 15:01:48
(1 week ago)
45.131.193.201 - - [12/Aug/2026:
...
Brute-Force
๐ฆ๐บ
screwlooseit.com.au
2026-08-11 19:01:46
(1 week ago)
Blocked by CSF 13 firewall - Rule: WPLOGIN
NL/Netherlands/-
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-11 14:24:15
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
Anonymous
2026-08-10 10:22:02
(2 weeks ago)
Bot / scanning and/or hacking attempts: GET /wp-login.php HTTP/1.1
Hacking
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-08-10 06:56:53
(2 weeks ago)
Blocked by CSF 13 firewall - Rule: WPLOGIN
NL/Netherlands/-
Web App Attack
๐น๐ท
oalver
2026-08-10 06:41:27
(2 weeks ago)
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signa ...
show more
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signature. Sources: nginx. Details: path_signature: request to /wp-login.php (HTTP 200). First seen: 2026-08-10. Risk score: 60/100.
show less
Web App Attack
๐บ๐ธ
wordpresshosting.solutions
2026-08-10 05:28:15
(2 weeks ago)
WordPress login/xmlrpc abuse or user enumeration detected. Evidence: 45.131.193.201 - - [10/Aug/2026 ...
show more
WordPress login/xmlrpc abuse or user enumeration detected. Evidence: 45.131.193.201 - - [10/Aug/2026:05:28:09 +0000] "GET /wp-login.php HTTP/1.1" 200 8432 "https://t.co/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7; rv:120.0) Gecko/20100101 Firefox/120.0"
45.131.193.201 - - [10/Aug/2026:05:28:15 +0000] "GET /wp-login.php HTTP/1.1" 200 8432 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_6_1; rv:121.0) Gecko/20100101 Firefox/121.0"
show less
Brute-Force
Web App Attack