π«π·
Sklurk
2026-08-11 00:41:20
(2 weeks ago)
Web App Attack
Web App Attack
Anonymous
2026-07-06 06:43:37
(1 month ago)
CMS (WordPress or Joomla) brute force attempt.
Brute-Force
π§πͺ
cmbplf
2026-07-03 23:38:50
(1 month ago)
1.838 POST requests with url.path */wp-login.php
Brute-Force
Bad Web Bot
π©πͺ
FeG Deutschland
2026-06-08 02:06:16
(2 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
π©πͺ
4server
2026-04-21 14:39:38
(4 months ago)
[TueApr2116:39:33.5658522026][security2:error][pid3025243:tid3025350][client45.3.43.49:0]ModSecurity ...
show more
[TueApr2116:39:33.5658522026][security2:error][pid3025243:tid3025350][client45.3.43.49:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"gualandi.ch\"][uri\"/mysql.sql\"][unique_id\"aeeMJWR1Z2zCLsvvYp9olgAAAFU\"]
show less
Port Scan
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-11 03:30:54
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.43.49 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.43.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 10 22:30:46.829616 2025] [security2:error] [pid 28230:tid 28230] [client 45.3.43.49:45941] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alisha-vijay.com"] [uri "/.svn/wc.db"] [unique_id "aTo65nOcPEkM9sZKdtWLKAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-08 15:00:26
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.43.49 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.43.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 08 10:00:21.943687 2025] [security2:error] [pid 15292:tid 15292] [client 45.3.43.49:44499] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "legalnexuslawfirm.com"] [uri "/.env"] [unique_id "aTboBZnthSju-pfRGwuZwwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-07 16:59:29
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.43.49 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.43.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 07 11:59:21.701130 2025] [security2:error] [pid 9442:tid 9442] [client 45.3.43.49:50851] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "honorherwish.org"] [uri "/.svn/wc.db"] [unique_id "aTWyaalj07XHqOgk_DpwJQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-07 12:22:11
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.43.49 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.43.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 07 07:22:04.640955 2025] [security2:error] [pid 30278:tid 30278] [client 45.3.43.49:31149] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "behrooz.org"] [uri "/.svn/wc.db"] [unique_id "aTVxbEQ6qya-D0mEBuXDxQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-06 12:18:37
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.43.49 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.43.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 06 07:18:31.003716 2025] [security2:error] [pid 16640:tid 16640] [client 45.3.43.49:52847] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nomorenicenice.net"] [uri "/.git/HEAD"] [unique_id "aTQfF_jlVnqQhNVK8nWT2QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-05 11:12:43
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.43.49 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.43.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 06:12:37.150469 2025] [security2:error] [pid 23532:tid 23532] [client 45.3.43.49:59801] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scrunchiebuttbikini.com"] [uri "/.svn/wc.db"] [unique_id "aTK-JVJu1TINjITIvlAV_gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
cmbplf
2025-10-09 04:22:05
(10 months ago)
9.568 requests with url.path */xmlrpc.php
Brute-Force
Bad Web Bot
π©πͺ
Packets-Decreaser.NET
2025-10-07 17:13:55
(10 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
π¨π
backslash
2025-02-27 07:55:05
(1 year ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
Anonymous
2024-12-31 15:33:33
(1 year ago)
wordpress-trap
Web App Attack