๐ฉ๐ช
wpadm4
2026-07-28 04:49:31
(15 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
Anonymous
2026-07-28 03:14:02
(17 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 19:17:42
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 45.132.225.94 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.132.225.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 15:17:36.331786 2026] [security2:error] [pid 3378464:tid 3378484] [client 45.132.225.94:51663] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blog2.stonyp.com"] [uri "/.git/HEAD"] [unique_id "ameu0IrxJcd0d0iSOIRIOAAAAFE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure
2026-07-27 12:08:50
(1 day ago)
csagent: score 16.7: secrets grab x2; 2 domain(s) in 1m10s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 03:11:42
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 45.132.225.94 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.132.225.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 23:11:32.122550 2026] [security2:error] [pid 1321785:tid 1321878] [client 45.132.225.94:60473] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.naiveromantic.merart.com"] [uri "/.git/HEAD"] [unique_id "ambMZKWGhpDd7B6ALvHCRwAAAgM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 22:59:25
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 45.132.225.94 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.132.225.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 18:59:17.495888 2026] [security2:error] [pid 181347:tid 181347] [client 45.132.225.94:21673] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.carlsvoice.com"] [uri "/.git/HEAD"] [unique_id "amaRRbs-0jLt9Fcc5M_bEwAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
mail.avx.gr
2026-07-26 22:44:10
(1 day ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 45.132.225.94 - - [27/Jul/2026:01:44:10 +0300] "G ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 45.132.225.94 - - [27/Jul/2026:01:44:10 +0300] "GET /.git/HEAD HTTP/1.1" 301 162 "-" "Python-urllib/3.10"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 22:34:31
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 45.132.225.94 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.132.225.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 18:34:19.225139 2026] [security2:error] [pid 3551026:tid 3551026] [client 45.132.225.94:54833] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.carinsteen.com"] [uri "/.git/HEAD"] [unique_id "amaLa8GDuPqZXFPUEM9QwgAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 17:10:59
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 45.132.225.94 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.132.225.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 13:10:49.257930 2026] [security2:error] [pid 813:tid 813] [client 45.132.225.94:49275] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.cameronwv.com"] [uri "/.git/HEAD"] [unique_id "amY_mQvno6xnkLoI3MG0tgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 13:36:31
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 45.132.225.94 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.132.225.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 09:36:08.977074 2026] [security2:error] [pid 4046252:tid 4046252] [client 45.132.225.94:32295] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.vegasweddingvacation.com"] [uri "/.env"] [unique_id "amYNSJNLzGYrwc9OinpwIgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-07-25 23:43:57
(2 days ago)
[SunJul2601:43:50.0577002026][security2:error][pid1733869:tid1734065][client45.132.225.94:0]ModSecur ...
show more
[SunJul2601:43:50.0577002026][security2:error][pid1733869:tid1734065][client45.132.225.94:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"365\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.landingswiss.ch.81-17-25-250.cpanel.site\"][uri\"/.git/HEAD\"][unique_id\"amVKNmWft5tQfQ46k-7BvwAAAJE\"]
show less
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-07-19 15:23:36
(1 week ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
dynamix
2026-07-18 07:58:06
(1 week ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฟ
Antinson
2026-07-04 03:11:21
(3 weeks ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐ซ๐ท
dynamix
2026-07-03 16:44:26
(3 weeks ago)
Multiple WAF Violations
Web App Attack