๐ฌ๐ง
consul.to
2026-06-03 11:11:04
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
Hippoline
2026-06-03 08:00:01
(1 day ago)
[Wed Jun 03 09:59:57.983638 2026] [authz_core:error] [pid 1650] [client 45.132.224.93:51033] AH01630 ...
show more
[Wed Jun 03 09:59:57.983638 2026] [authz_core:error] [pid 1650] [client 45.132.224.93:51033] AH01630: client denied by server configuration: /var/www/mta-sts.brandenburger.eu/web/default.php, referer: http://brandenburger.eu/default.php
[Wed Jun 03 09:59:58.726949 2026] [authz_core:error] [pid 1650] [client 45.132.224.93:51033] AH01630: client denied by server configuration: /var/www/mta-sts.brandenburger.eu/web/bypass.php, referer: http://brandenburger.eu/bypass.php
[Wed Jun 03 09:59:59.490812 2026] [authz_core:error] [pid 1650] [client 45.132.224.93:51033] AH01630: client denied by server configuration: /var/www/mta-sts.brandenburger.eu/web/inputs.php, referer: http://brandenburger.eu/inputs.php
[Wed Jun 03 10:00:00.320318 2026] [authz_core:error] [pid 1650] [client 45.132.224.93:51033] AH01630: client denied by server configuration: /var/www/mta-sts.brandenburger.eu/web/chosen.php, referer: http://brandenburger.eu/chosen.php
[Wed Jun 03 10:00:01.292148 2026] [authz_core:error] [pid
...
show less
Brute-Force
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-05-18 06:33:41
(2 weeks ago)
ccideas.com.au:443 45.132.224.93 - - [18/May/2026:16:32:05 +1000] "GET /wp-includes/themes.php HTTP/ ...
show more
ccideas.com.au:443 45.132.224.93 - - [18/May/2026:16:32:05 +1000] "GET /wp-includes/themes.php HTTP/1.1" 404 87719 "http://ccideas.com.au/wp-includes/themes.php" "Go-http-client/1.1"
ccideas.com.au:443 45.132.224.93 - - [18/May/2026:16:32:42 +1000] "GET /mini.php HTTP/1.1" 404 87675 "http://ccideas.com.au/mini.php" "Go-http-client/1.1"
ccideas.com.au:443 45.132.224.93 - - [18/May/2026:16:32:48 +1000] "GET /wp-includes/fonts/wp-conflg.php HTTP/1.1" 404 84828 "http://ccideas.com.au/wp-includes/fonts/wp-conflg.php" "Go-http-client/1.1"
ccideas.com.au:443 45.132.224.93 - - [18/May/2026:16:32:51 +1000] "GET /mah/function.php HTTP/1.1" 404 84781 "http://ccideas.com.au/mah/function.php" "Go-http-client/1.1"
ccideas.com.au:443 45.132.224.93 - - [18/May/2026:16:32:54 +1000] "GET /wp-includes/Text/Diff/ HTTP/1.1" 403 717 "http://ccideas.com.au/wp-includes/Text/Diff/" "Go-http-client/1.1"
ccideas.com.au:443 45.132.224.93 - - [18/May/2026:16:32:54 +1000] "GET /system_log.php HTTP/1.1" 404 84773 "h
...
show less
Web App Attack
๐ฟ๐ฆ
Tokolosh Hunters
2026-05-17 02:17:08
(2 weeks ago)
AutoBlockWindow-Known bad useragent query-2026-05-17 02:17:07
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-12 10:24:29
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 45.132.224.93 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.132.224.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 12 06:24:21.871756 2026] [security2:error] [pid 27205:tid 27205] [client 45.132.224.93:21777] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.newcastle91.org"] [uri "/wp-content/wp-config.php"] [unique_id "agL_1aPYIV6_sV_Wn7ePrgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-05-09 07:45:13
(3 weeks ago)
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-195)
show less
Bad Web Bot
๐ช๐ธ
masterguru
2026-05-09 00:13:32
(3 weeks ago)
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-122)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-08 09:15:06
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 45.132.224.93 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.132.224.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 05:14:59.551155 2026] [security2:error] [pid 29361:tid 29361] [client 45.132.224.93:42233] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rohanbyles.com.au"] [uri "/wp-config.php"] [unique_id "af2pk5yux7kzzS65c8j9SwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Petros Stefanakis
2026-05-07 19:22:15
(3 weeks ago)
(mod_security) mod_security triggered on hostname [redacted] 45.132.224.93 (AU/Australia/-)
SQL Injection
๐ซ๐ท
masterguru
2026-05-07 05:19:34
(4 weeks ago)
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-195)
show less
Bad Web Bot
๐ซ๐ท
Octopuce
2026-05-07 00:55:00
(4 weeks ago)
Aggressive web search of vulnerable pages: /wp-includes/js/jcrop/Jcrop.php /wp-signin.php /wp-includ ...
show more
Aggressive web search of vulnerable pages: /wp-includes/js/jcrop/Jcrop.php /wp-signin.php /wp-includes/themes.php /as.php /buy.php /wp-content/ ...
show less
Web App Attack
๐ฉ๐ช
jasperedv.de
2026-05-06 17:51:56
(4 weeks ago)
Apache Login - Brutforcing
Web App Attack
Brute-Force
๐ฉ๐ช
LRob.fr
2026-05-06 09:00:14
(4 weeks ago)
Repeated 403 errors, blocked by Fail2ban in custom-403 jail
Bad Web Bot
Anonymous
2026-03-20 04:14:43
(2 months ago)
45.132.224.93 - - [20/Mar/2026:05:14:42 +0100] "GET //wp-admin/dropdown.php HTTP/1.1" 402 765 "-" "G ...
show more
45.132.224.93 - - [20/Mar/2026:05:14:42 +0100] "GET //wp-admin/dropdown.php HTTP/1.1" 402 765 "-" "Go-http-client/1.1" ...
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2026-03-18 23:22:08
(2 months ago)
Excessive multi-domain requests
Brute-Force