๐ฉ๐ช
HandyTreff.de
2026-08-04 22:22:40
(3 weeks ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -56.149 (Bad < -10 / Very Bad < -20 ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -56.149 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.7738.2
show less
Web App Attack
Bad Web Bot
๐ฌ๐ง
Oakley
2026-06-10 18:21:32
(2 months ago)
(confirmed_bot_sig) Confirmed bot
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-03 04:51:05
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 45.145.128.182 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 45.145.128.182 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 00:50:58.153295 2026] [security2:error] [pid 10683:tid 10683] [client 45.145.128.182:32681] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Martinsdale 3080/Thumbs.db"] [unique_id "ah-yskaHmmj_wlHKT2fTFAAAABk"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Martinsdale%203080/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 01:03:48
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.145.128.182 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.145.128.182 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 21 21:03:44.347679 2026] [security2:error] [pid 31773:tid 31773] [client 45.145.128.182:35631] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hare.digitalsolutions.help"] [uri "/wp-config.php.orig"] [unique_id "ag-rcLwJfof6b_9xHzlfRwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
tmiland
2026-05-21 01:27:04
(3 months ago)
(wordpress_404) WordPress Plugins Honeypot Trap 45.145.128.182 (IL/Israel/-): 2 in the last 3600 sec ...
show more
(wordpress_404) WordPress Plugins Honeypot Trap 45.145.128.182 (IL/Israel/-): 2 in the last 3600 secs; IP: 45.145.128.182; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 45.145.128.182 - - [21/May/2026:03:26:59 +0200] "HEAD /wp-content/plugins/learnpress/readme.txt HTTP/1.1" 404 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/129.0.0.0 Safari/537.36" 45.145.128.182 - - [21/May/2026:03:26:59 +0200] "HEAD /wp-content/plugins/really-simple-ssl/readme.txt HTTP/1.1" 404 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/129.0.0.0 Safari/537.36"
show less
Brute-Force
๐จ๐ญ
4server
2026-05-16 23:53:30
(3 months ago)
[SunMay1701:53:26.2950282026][security2:error][pid4026977:tid4026987][client45.145.128.182:0]ModSecu ...
show more
[SunMay1701:53:26.2950282026][security2:error][pid4026977:tid4026987][client45.145.128.182:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\^/wp-content/plugins/[\^/] /\(readme\\\\\\\\.txt\|changelog\\\\\\\\.txt\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"381\"][id\"960828\"][msg\"WordPresspluginenumerationblocked\"][hostname\"salonesamire.ch\"][uri\"/wp-content/plugins/envira-gallery-lite/readme.txt\"][unique_id\"agkDdnLxptidTQf90IlC9wAAAMI\"]
show less
Hacking
Web App Attack
๐ฉ๐ช
HandyTreff.de
2026-05-08 03:25:35
(3 months ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -53.039 (Bad < -10 / Very Bad < -20 ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -53.039 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/116.0.4980.7
show less
Web App Attack
Bad Web Bot
๐บ๐ธ
NicoID
2026-05-02 00:10:13
(3 months ago)
45.145.128.182 - - [01/May/2026:00:31:40 -0600] "POST /xmlrpc.php HTTP/1.1" 200 3587 "-" "Mozilla/5. ...
show more
45.145.128.182 - - [01/May/2026:00:31:40 -0600] "POST /xmlrpc.php HTTP/1.1" 200 3587 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Brute-Force
๐จ๐ญ
backslash
2026-04-16 22:06:01
(4 months ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
๐ฉ๐ช
Lino Project
2026-04-15 02:11:08
(4 months ago)
CrowdSec abuse IP report (host SRV-2) Scenario: crowdsecurity/http-wordpress-scan
Hacking
๐ซ๐ท
masterguru
2026-04-15 01:31:49
(4 months ago)
Restricted File Access Attempt. Matched phrase "phpinfo.php" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐ซ๐ท
tecnoacquisti.com
2026-02-01 19:15:29
(6 months ago)
PrestaShop Security Module: Calls WordPress paths probing known vulnerabilities
Web App Attack
๐ง๐ช
voormedia
2026-01-10 19:54:00
(7 months ago)
Accessed trap at '/wp-login.php'
Web App Attack
๐จ๐ฆ
4everEvolving WPM
2025-10-27 16:07:00
(10 months ago)
Hacking
Brute-Force
๐ฉ๐ช
hbrks
2025-10-23 20:22:57
(10 months ago)
1 attack(s) detected, such as these: {"event":"nginx_block","ip":"45.145.128.182","host":"marche-be. ...
show more
1 attack(s) detected, such as these: {"event":"nginx_block","ip":"45.145.128.182","host":"marche-be.com","request":"GET /wp-login.php HTTP/1.1","user_agent":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.198 Safari/537.36","reason":"service:unknow","timestamp":"2025-10-23T20:22:57 00:00","logentry":"marche-be.com 45.145.128.182 - - [23/Oct/2025:20:22:57 0000] GET /wp-login.php HTTP/1.1 444 0 http://marche-be.com/wp-login.php Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.198 Safari/537.36 - matched:service:unknow"} * Report Details *: https://p4u.xyz/KZML3CLUN46/1* IP Details *: https://p4u.xyz/KZML3CLUN46/2
show less
Web Spam
Hacking
Bad Web Bot