๐บ๐ธ
NXTwoThou
2026-09-21 11:49:00
(6 days ago)
/wp-includes/js/tinymce/utils/
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-09-20 18:54:41
(1 week ago)
Bad bot ignoring robot.txt
Bad Web Bot
๐ณ๐ฑ
Site.eu
2026-09-20 18:26:20
(1 week ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-20 16:50:31
(1 week ago)
(mod_security) mod_security (id:240000) triggered by 45.132.224.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240000) triggered by 45.132.224.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 12:50:25.643938 2026] [security2:error] [pid 20144:tid 20144] [client 45.132.224.13:38987] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||www.mycampingmall.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "www.mycampingmall.com"] [uri "/images/stories/themes.php"] [unique_id "arAO0RvXhXLREMunVGW75AAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-20 10:38:23
(1 week ago)
Asking over plain http and never following the redirect served โ a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served โ a crawler that reads nothing it asks for | method: GET | path: /bless.php (+1 more) | 2026-09-20 10:38 UTC
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-20 09:27:16
(1 week ago)
(mod_security) mod_security (id:240000) triggered by 45.132.224.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240000) triggered by 45.132.224.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 05:27:11.618299 2026] [security2:error] [pid 16455:tid 16455] [client 45.132.224.13:37633] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||bigchus.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "bigchus.com"] [uri "/images/stories/themes.php"] [unique_id "aq-m7wQ2Dux6nN2DsuUosAAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-18 18:18:57
(1 week ago)
IP matched detection query many 3xx errors.
Brute-Force
๐ณ๐ฑ
Site.eu
2026-09-18 03:59:01
(1 week ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-16 13:17:59
(1 week ago)
(mod_security) mod_security (id:240000) triggered by 45.132.224.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240000) triggered by 45.132.224.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 09:17:53.885116 2026] [security2:error] [pid 13274:tid 13274] [client 45.132.224.13:38189] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||www.instepdogobedience.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "www.instepdogobedience.com"] [uri "/images/stories/themes.php"] [unique_id "aqqXASkPc5u0mifRm7ePvAAAAC8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-16 09:05:59
(1 week ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-15 17:05:19
(1 week ago)
(mod_security) mod_security (id:240000) triggered by 45.132.224.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240000) triggered by 45.132.224.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 13:05:09.099196 2026] [security2:error] [pid 3699:tid 3734] [client 45.132.224.13:65399] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||secretdecoded.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "secretdecoded.com"] [uri "/images/stories/themes.php"] [unique_id "aql6xWoPXOvU9i2gw4RFuwAAAYE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-13 12:28:04
(2 weeks ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐ซ๐ท
dynamix
2026-09-11 06:35:23
(2 weeks ago)
Multiple WAF Violations
Web App Attack
๐น๐ท
neron
2026-08-15 13:06:48
(1 month ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐น๐ท
neron
2026-08-12 13:06:48
(1 month ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack