🇱🇻
garmtech.com
2026-08-07 22:21:55
(4 weeks ago)
IM360 WAF: WordPress wp2shell REST batch endpoint before 7.0.2 or 6.9.5 (CVE-2026-63030) MV:0
Hacking
🇫🇷
dynamix
2026-06-09 08:46:28
(2 months ago)
Multiple WAF Violations
Web App Attack
🇷🇺
sms.ru
2026-06-07 14:11:03
(2 months ago)
/wp-admin/js/index.php
Web App Attack
🇫🇷
Octopuce
2026-06-07 03:51:41
(2 months ago)
Aggressive web search of vulnerable pages: /wp-content/languages/ /wp-content/themes/ /wp-content/pl ...
show more
Aggressive web search of vulnerable pages: /wp-content/languages/ /wp-content/themes/ /wp-content/plugins/elementor/ /wp-includes/IXR/ /wp-incl ...
show less
Web App Attack
🇫🇷
dynamix
2026-06-07 00:28:56
(2 months ago)
Multiple WAF Violations
Web App Attack
🇩🇪
Ba-Yu
2026-06-05 05:03:54
(2 months ago)
WordPress hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
🇬🇧
consul.to
2026-06-05 03:08:25
(2 months ago)
Web attack/malicious scanning detected
Web App Attack
🇫🇷
Octopuce
2026-05-05 20:41:31
(3 months ago)
Aggressive web search of vulnerable pages: /wp-content/themes/twentytwentytwo/assets/fonts/index.php ...
show more
Aggressive web search of vulnerable pages: /wp-content/themes/twentytwentytwo/assets/fonts/index.php /wp-content/themes/twentytwenty/assets/fon ...
show less
Web App Attack
🇺🇦
URAN Publishing Service
2026-04-29 22:51:22
(4 months ago)
45.154.138.35 - - [30/Apr/2026:01:51:21 +0300] "GET /wp-content/themes/chillbud/inc/welcome/assets/i ...
show more
45.154.138.35 - - [30/Apr/2026:01:51:21 +0300] "GET /wp-content/themes/chillbud/inc/welcome/assets/img/index.php HTTP/1.1" 404 708 "-" "Go-http-client/1.1"
45.154.138.35 - - [30/Apr/2026:01:51:21 +0300] "GET /wp-content/themes/astra/inc/builder/type/base/dynamic-css/button/index.php HTTP/1.1" 404 708 "-" "Go-http-client/1.1"
...
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-04-19 00:57:27
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 20:57:21.728182 2026] [security2:error] [pid 25397:tid 25397] [client 45.154.138.35:23627] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vplow.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vplow.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeQocWGpZrV95BlxgFnUqQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-04-19 00:31:11
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 20:31:05.324149 2026] [security2:error] [pid 1239023:tid 1239023] [client 45.154.138.35:46465] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||makeupbyindi.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "makeupbyindi.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeQiSYvlrZ8Xy-1DZ_WnJAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-04-19 00:09:36
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 20:09:32.871409 2026] [security2:error] [pid 3792226:tid 3792226] [client 45.154.138.35:42279] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||pastorg.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "pastorg.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeQdPNWyJtK8ZmX2FMN8SgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-04-16 21:52:16
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 16 17:52:08.842903 2026] [security2:error] [pid 3213529:tid 3213529] [client 45.154.138.35:0] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||easy-byte.net|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "easy-byte.net"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeFaCA6A70KwvhFNr9E1jwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇵🇾
armandosaucedo.me
2026-04-16 09:48:18
(4 months ago)
Threat Intelligence via ARMTI, Web Attack: GET /vendor/phpunit/phpunit/phpunit.xsd
Web App Attack
🇺🇸
xmission.com
2026-03-25 04:48:05
(5 months ago)
45.154.138.35 - - [24/Mar/2026:22:48:04 -0600] "POST /wp-login.php HTTP/1.1" 200 6929 "-" "Mozilla/5 ...
show more
45.154.138.35 - - [24/Mar/2026:22:48:04 -0600] "POST /wp-login.php HTTP/1.1" 200 6929 "-" "Mozilla/5.0"
...
show less
Brute-Force