๐ฑ๐ป
garmtech.com
2026-06-19 07:07:22
(2 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 10-07.45.154.138.3.web-spammer ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 10-07.45.154.138.3.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐ง๐ช
cmbplf
2026-06-10 12:50:12
(2 months ago)
206 requests with url.path *config.php
Brute-Force
Bad Web Bot
๐ท๐บ
sms.ru
2026-06-07 14:12:02
(2 months ago)
/wp-admin/css/colors/blue/gold.php
Web App Attack
๐ซ๐ท
Octopuce
2026-06-07 03:49:46
(2 months ago)
Aggressive web search of vulnerable pages: /small.php /wp-includes/js/tinymce/plugins/fullscreen/abo ...
show more
Aggressive web search of vulnerable pages: /small.php /wp-includes/js/tinymce/plugins/fullscreen/about.php /NewFile.php /wp-content/uploads/ind ...
show less
Web App Attack
๐ซ๐ท
dynamix
2026-06-07 00:28:08
(2 months ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-06-05 05:07:32
(2 months ago)
WordPress hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ซ๐ท
conseilgouz
2026-06-03 18:28:37
(2 months ago)
low-Joomla User : try to access forms...
Hacking
๐ซ๐ท
Octopuce
2026-05-05 20:40:48
(3 months ago)
Aggressive web search of vulnerable pages: /wp-admin/maint/index.php /wp-admin/css/index.php /classw ...
show more
Aggressive web search of vulnerable pages: /wp-admin/maint/index.php /wp-admin/css/index.php /classwithtostring.php /wp-admin/dropdown.php /aut ...
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-04-29 22:48:44
(3 months ago)
45.154.138.3 - - [30/Apr/2026:01:48:42 +0300] "GET /wp-admin/js/index.php HTTP/1.1" 404 708 "-" "Go- ...
show more
45.154.138.3 - - [30/Apr/2026:01:48:42 +0300] "GET /wp-admin/js/index.php HTTP/1.1" 404 708 "-" "Go-http-client/1.1"
45.154.138.3 - - [30/Apr/2026:01:48:43 +0300] "GET /wp-includes/assets/index.php HTTP/1.1" 404 708 "-" "Go-http-client/1.1"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-19 01:39:20
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.3 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 21:39:16.916860 2026] [security2:error] [pid 19385:tid 19385] [client 45.154.138.3:34803] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||budfromkansascitymo.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "budfromkansascitymo.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeQyRBYxauEBkZBmgf3gTAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-19 00:51:32
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.3 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 20:51:24.930050 2026] [security2:error] [pid 22409:tid 22409] [client 45.154.138.3:39109] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||electra-shield.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "electra-shield.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeQnDFjTvu7su5sGqxTE6gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-19 00:13:21
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.3 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 20:13:16.044973 2026] [security2:error] [pid 312108:tid 312108] [client 45.154.138.3:35563] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||geckoturner.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "geckoturner.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeQeHDo5Q17_9uu8JjRZawAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-17 08:57:48
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.3 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 17 04:57:42.213613 2026] [security2:error] [pid 1070738:tid 1070738] [client 45.154.138.3:0] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mail-pmg.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mail-pmg.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeH2BnuUYq1v0HUHKOQR9AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
kkwemi
2026-04-16 04:21:49
(4 months ago)
Blocked by block-exploit-paths on /vendor/phpunit/phpunit/phpunit.xsd
Bad Web Bot
๐จ๐ฆ
Mediashaker
2026-04-08 13:16:17
(4 months ago)
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 45.154.138.3 (FR/France/ ...
show more
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 45.154.138.3 (FR/France/-)
show less
Port Scan