๐ท๐บ
sms.ru
2026-06-07 14:10:55
(2 months ago)
/wp-admin/images/bootstrap.php
Web App Attack
๐ฌ๐ง
consul.to
2026-06-07 06:37:12
(2 months ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
Octopuce
2026-06-07 03:50:28
(2 months ago)
Aggressive web search of vulnerable pages: /.tmb/doc.php /wp-editor.php /wp-includes/style-engine-se ...
show more
Aggressive web search of vulnerable pages: /.tmb/doc.php /wp-editor.php /wp-includes/style-engine-session.php /images/install.php /vendor/phpun ...
show less
Web App Attack
Anonymous
2026-06-06 22:54:40
(2 months ago)
Aggressive web scan
Web App Attack
Anonymous
2026-06-05 11:35:24
(2 months ago)
"GET /wp-content/plugins/core-plugin/include.php HTTP/1.1"
Hacking
Web App Attack
๐ฌ๐ง
consul.to
2026-06-05 07:30:00
(2 months ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-06-05 05:05:23
(2 months ago)
WordPress hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ฉ๐ช
Jarda_H
2026-05-06 06:46:13
(3 months ago)
http-probing
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-04-29 22:48:50
(4 months ago)
45.154.138.23 - - [30/Apr/2026:01:48:49 +0300] "GET /wp-content/admin.php HTTP/1.1" 404 708 "-" "Go- ...
show more
45.154.138.23 - - [30/Apr/2026:01:48:49 +0300] "GET /wp-content/admin.php HTTP/1.1" 404 708 "-" "Go-http-client/1.1"
45.154.138.23 - - [30/Apr/2026:01:48:50 +0300] "GET /wp-admin/options.php HTTP/1.1" 404 708 "-" "Go-http-client/1.1"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-19 03:44:52
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.23 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 23:44:49.104269 2026] [security2:error] [pid 3887616:tid 3887616] [client 45.154.138.23:0] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||rodrigoaldecoa.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "rodrigoaldecoa.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeRPseZ7yjdM_sg6hjnF3gAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-19 01:01:48
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.23 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 21:01:41.539859 2026] [security2:error] [pid 24203:tid 24203] [client 45.154.138.23:37369] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||lusocleaningservice.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "lusocleaningservice.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeQpdcBiiwNQczhWyKqNdQAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-19 00:30:46
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.23 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 20:30:38.706293 2026] [security2:error] [pid 1213575:tid 1213575] [client 45.154.138.23:23559] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||agupgrade.net|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "agupgrade.net"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeQiLqe4JcOVPvb5MEXX7gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-19 00:11:45
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.23 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 20:11:41.889682 2026] [security2:error] [pid 313162:tid 313162] [client 45.154.138.23:58787] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||goldengatecorgis.org|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "goldengatecorgis.org"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeQdvcL5pL0rIqiqGLXs0QAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-17 05:07:48
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.23 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 17 01:07:44.294936 2026] [security2:error] [pid 1015373:tid 1015373] [client 45.154.138.23:0] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||shubil.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "shubil.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeHAIL_mq0Vio7BTe0WlIwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-17 02:11:23
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.23 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 16 22:11:16.732504 2026] [security2:error] [pid 1627266:tid 1627266] [client 45.154.138.23:52531] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.randymcelroy.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.randymcelroy.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeGWxPeWKs1cbyIxN1vZdQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack