๐บ๐ธ
TPI-Abuse
2026-08-15 17:31:16
(1 week ago)
(mod_security) mod_security (id:240000) triggered by 45.133.5.148 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240000) triggered by 45.133.5.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 13:31:12.103722 2026] [security2:error] [pid 21115:tid 21115] [client 45.133.5.148:59227] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||stewarttaylor.ingberinteriors.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "stewarttaylor.ingberinteriors.com"] [uri "/images/stories/themes.php"] [unique_id "aoCiYBQwgnLVC4N3eX9XbAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-08-15 15:26:19
(1 week ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
Site.eu
2026-07-10 04:46:04
(1 month ago)
Excessive 404/403 errors
Brute-Force
๐ซ๐ท
dynamix
2026-06-15 10:35:58
(2 months ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
Octopuce
2026-06-07 16:02:33
(2 months ago)
Aggressive web search of vulnerable pages: /wp-includes/rest-api/about.php /css/css.php /init.php /w ...
show more
Aggressive web search of vulnerable pages: /wp-includes/rest-api/about.php /css/css.php /init.php /wp-admin/user/wp-login.php /autoload_classma ...
show less
Web App Attack
๐บ๐ธ
mw
2026-06-05 00:01:16
(2 months ago)
GET /wp-admin/maint/bootstrap.php HTTP/1.1
Web App Attack
๐ฉ๐ช
scolastico
2026-05-30 03:11:10
(2 months ago)
[automated] IP failed to authenticate or send unauthenticated INVITE requests
Brute-Force
Fraud VoIP
๐ฉ๐ช
scolastico
2026-05-29 03:07:20
(2 months ago)
[automated] IP failed to authenticate or send unauthenticated INVITE requests
Brute-Force
Fraud VoIP
๐ฉ๐ช
scolastico
2026-05-28 03:03:02
(2 months ago)
[automated] IP failed to authenticate or send unauthenticated INVITE requests
Brute-Force
Fraud VoIP
๐ง๐ช
cmbplf
2026-05-05 20:59:38
(3 months ago)
124 requests with url.path *config.php
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-05 03:54:01
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.133.5.148 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 45.133.5.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 04 23:53:54.394268 2026] [security2:error] [pid 30187:tid 30187] [client 45.133.5.148:39615] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.integrabroadcast.com"] [uri "/wp-config.php"] [unique_id "aflp0l4UzPGY8_N1LpOhigAAABA"], referer: http://integrabroadcast.com/wp-config.php
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-05-05 03:41:57
(3 months ago)
Probing websites for vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-27 06:53:51
(3 months ago)
(mod_security) mod_security (id:240000) triggered by 45.133.5.148 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240000) triggered by 45.133.5.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 27 02:53:44.155251 2026] [security2:error] [pid 25546:tid 25546] [client 45.133.5.148:32333] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||cathayexpress.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "cathayexpress.com"] [uri "/images/stories/themes.php"] [unique_id "ae8H-APJ1hOBfeL5ukl7egAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-23 07:35:32
(4 months ago)
(mod_security) mod_security (id:240000) triggered by 45.133.5.148 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240000) triggered by 45.133.5.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 23 03:35:07.799165 2026] [security2:error] [pid 29990:tid 29990] [client 45.133.5.148:42885] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||www.fixitsmart.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "www.fixitsmart.com"] [uri "/images/stories/themes.php"] [unique_id "aenLq7l8_An-CMLE4qgNyAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
ipblock.com
2026-04-23 04:13:00
(4 months ago)
IPBlock protected site ID [4055-d][s=02].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack