๐ท๐บ
sms.ru
2026-06-07 14:11:36
(2 months ago)
/vendor/phpunit/phpunit/src/Util/PHP/as.php
Web App Attack
๐ซ๐ท
Octopuce
2026-06-07 03:49:20
(2 months ago)
Aggressive web search of vulnerable pages: /wp-content/ALFA_DATA/alfacgiapi/bypass.php /wp-admin/mai ...
show more
Aggressive web search of vulnerable pages: /wp-content/ALFA_DATA/alfacgiapi/bypass.php /wp-admin/maint/about.php /wp-admin/js/about.php /wp-con ...
show less
Web App Attack
๐ฎ๐น
A000Z
2026-06-05 12:29:57
(2 months ago)
Fail2Ban: 45.154.138.13 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5. ...
show more
Fail2Ban: 45.154.138.13 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36
show less
Bad Web Bot
๐ฌ๐ง
Oakley
2026-06-05 12:15:47
(2 months ago)
(confirmed_bot_sig) Confirmed bot
Hacking
Anonymous
2026-06-05 11:21:24
(2 months ago)
"GET /vendor/phpunit/phpunit/src/Util/PHP/kill.php HTTP/1.1"
Hacking
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-06-05 05:05:17
(2 months ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ฌ๐ง
consul.to
2026-06-05 04:08:51
(2 months ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
masterguru
2026-06-04 18:41:34
(2 months ago)
Too much 404 requests in 1 minute. Operator GE matched 10 at IP:block_script. (46020-201)
Hacking
๐ฉ๐ช
LRob
2026-04-30 00:00:38
(4 months ago)
Repeated 404 errors, blocked by Fail2ban in custom-404 jail
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-19 02:37:25
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 22:37:20.553828 2026] [security2:error] [pid 2841586:tid 2841586] [client 45.154.138.13:0] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mail-pmg.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mail-pmg.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeQ_4GhmEYkDRwCk7GDy9QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-19 00:55:21
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 20:55:16.584340 2026] [security2:error] [pid 22409:tid 22409] [client 45.154.138.13:49825] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||sharonmauldin.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "sharonmauldin.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeQn9FjTvu7su5sGqxTE8AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-19 00:30:46
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 20:30:39.322960 2026] [security2:error] [pid 1239282:tid 1239282] [client 45.154.138.13:50557] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||goikopro.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "goikopro.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeQiL44AiRIjTd047XJdNwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-19 00:11:50
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 20:11:44.474591 2026] [security2:error] [pid 312302:tid 312302] [client 45.154.138.13:28151] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.4115thewestford.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.4115thewestford.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeQdwD4F9zhz7R3_p_fBIwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-18 23:13:33
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 19:13:28.922796 2026] [security2:error] [pid 2761315:tid 2761315] [client 45.154.138.13:48029] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||smallbizreorg.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "smallbizreorg.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeQQGJuMLRa6OUL_MAJ66gAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
ago.su
2026-04-08 01:42:44
(4 months ago)
F2B blocked nginx bad bot [otd]
Hacking
Web App Attack