๐ฌ๐ง
PeravixGroup
2026-06-09 22:58:44
(6 days ago)
Honeypot detection: Apache CouchDB unauthorized access / exploitation attempt on port 5984. Severity ...
show more
Honeypot detection: Apache CouchDB unauthorized access / exploitation attempt on port 5984. Severity: MEDIUM. Aaran.cloud
show less
Hacking
Exploited Host
๐บ๐ธ
kosada.com
2026-06-01 09:47:37
(2 weeks ago)
Web vulnerability probing: /website/wp-includes/wlwmanifest.xml
Web App Attack
๐ณ๐ฑ
jjnxpct
2026-03-24 05:08:50
(2 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /index.php (Rule ID: 942540) - SQL Authentication bypass (split query) [Suspicious: '; found within ARGS:id: ';]
show less
Web App Attack
SQL Injection
Brute-Force
๐ช๐ธ
librebit
2026-03-20 06:18:26
(2 months ago)
Brute force
Brute-Force
๐ฑ๐ป
garmtech.com
2026-03-10 19:25:36
(3 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 21-25.45.3.33.57.web-spammers. ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 21-25.45.3.33.57.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
Anonymous
2025-12-31 08:24:50
(5 months ago)
"GET /.git/HEAD HTTP/1.1"
Hacking
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 14:01:38
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐บ๐ธ
TPI-Abuse
2025-12-29 05:56:22
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.33.57 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.33.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 00:56:16.335393 2025] [security2:error] [pid 24985:tid 24985] [client 45.3.33.57:39407] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "acmyles.com"] [uri "/.svn/wc.db"] [unique_id "aVIYACAimQudGogow70mfgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 03:23:19
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.33.57 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.33.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 22:23:13.940078 2025] [security2:error] [pid 20795:tid 20795] [client 45.3.33.57:30499] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cm-salon.com"] [uri "/.svn/wc.db"] [unique_id "aVH0IaD8rcVuz8POQqPfUwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2025-12-20 01:14:18
(5 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-12-04 16:07:46
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.33.57 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.33.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 11:07:38.047062 2025] [security2:error] [pid 1081:tid 1081] [client 45.3.33.57:25473] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "greenlight.us"] [uri "/.env"] [unique_id "aTGxyhyAhMGhdbucBuR2_wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:59:30
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.33.57 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.33.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:59:20.296736 2025] [security2:error] [pid 3422:tid 3422] [client 45.3.33.57:34057] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.djdharma.com"] [uri "/.svn/wc.db"] [unique_id "aSPmKMaRQYAGrzT1riOPaQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
Progetto1
2025-11-24 03:45:05
(6 months ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 03:24:58
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.33.57 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.33.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 22:24:51.064788 2025] [security2:error] [pid 12978:tid 12978] [client 45.3.33.57:55337] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.virginiabeachlovebird.com"] [uri "/.git/HEAD"] [unique_id "aSPQAzvbowoJd7XDZI4ShAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-14 01:32:56
(7 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack