๐ณ๐ฑ
Site.eu
2026-07-27 01:43:55
(1 day ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-26 01:10:47
(2 days ago)
(mod_security) mod_security (id:240000) triggered by 45.133.6.27 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:240000) triggered by 45.133.6.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 21:10:41.938585 2026] [security2:error] [pid 3949405:tid 3949551] [client 45.133.6.27:24415] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||tristatepropertymgmt.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "tristatepropertymgmt.com"] [uri "/images/stories/themes.php"] [unique_id "amVekdi6w6nM5K-EdAMv1QAAAgc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-07-25 22:42:23
(2 days ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 19:30:38
(2 days ago)
(mod_security) mod_security (id:240000) triggered by 45.133.6.27 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:240000) triggered by 45.133.6.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 15:30:28.646329 2026] [security2:error] [pid 26888:tid 26888] [client 45.133.6.27:30369] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||oceanicpier.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "oceanicpier.com"] [uri "/images/stories/themes.php"] [unique_id "amUO1IL_K1hQqZfIRzOR6AAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 09:58:00
(3 days ago)
(mod_security) mod_security (id:240000) triggered by 45.133.6.27 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:240000) triggered by 45.133.6.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 05:57:55.681847 2026] [security2:error] [pid 4065681:tid 4065681] [client 45.133.6.27:39151] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||blackballprojects.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "blackballprojects.com"] [uri "/images/stories/themes.php"] [unique_id "amSIozcyWfVfbilOvSqVKwAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 14:27:31
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 45.133.6.27 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.133.6.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 10:27:25.444917 2026] [security2:error] [pid 932833:tid 932833] [client 45.133.6.27:55857] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "unified-dispatch.com"] [uri "/.env"] [unique_id "amDTTb0Vh6VdnZC5stPq9QAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-07-22 12:11:31
(6 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
Octopuce
2026-07-22 12:03:35
(6 days ago)
Aggressive web search of vulnerable pages: /wp-content/classwithtostring.php /.well-known/acme-chall ...
show more
Aggressive web search of vulnerable pages: /wp-content/classwithtostring.php /.well-known/acme-challenge/iR7SzrsOUEP.php /wp-includes/customize ...
show less
Web App Attack
๐ฉ๐ช
IVski
2026-07-21 20:16:21
(6 days ago)
IVski WAF | WordPress scanner detected - probing wp-content, xmlrpc or wp-login
Port Scan
Brute-Force
Web App Attack
๐ซ๐ท
Jimbo67
2026-07-21 17:12:48
(6 days ago)
Cloudflare WAF: 2 hits in 30s | action=block | abuse=suspicious_probe | categories=19 | rule_id=0189 ...
show more
Cloudflare WAF: 2 hits in 30s | action=block | abuse=suspicious_probe | categories=19 | rule_id=0189a8c2c2ab4a60bc709bad14577d18 | URIs=/wp-includes/blocks/details/,/wp-includes/images/wlw/ | confidence=0.82
show less
Bad Web Bot
๐ซ๐ท
Jimbo67
2026-07-21 16:53:48
(1 week ago)
Cloudflare WAF: 3 hits in 30s | action=block | abuse=wordpress_probe | categories=19,21 | rule_id=01 ...
show more
Cloudflare WAF: 3 hits in 30s | action=block | abuse=wordpress_probe | categories=19,21 | rule_id=0189a8c2c2ab4a60bc709bad14577d18 | URIs=/wp-admin/user/interactivity-api/,/wp-includes/blocks/pullquote/,/wp-includes/css/dist/components/ | confidence=0.82
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
nyt
2026-07-10 11:44:40
(2 weeks ago)
Web Shell Upload
Hacking
Web App Attack
๐ฌ๐ง
consul.to
2026-07-03 17:50:23
(3 weeks ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
masterguru
2026-07-03 10:11:43
(3 weeks ago)
Too much 404 requests in 1 minute. Operator GE matched 10 at IP:block_script. (46020-195)
Hacking
๐ฌ๐ง
consul.to
2026-07-02 08:52:59
(3 weeks ago)
Web attack/malicious scanning detected
Web App Attack