|
๐ซ๐ท
Sklurk
|
|
Web App Attack
|
Web App Attack
|
|
|
Anonymous
|
|
Suspicious or malicious traffic has been detected
|
Web App Attack
|
|
|
๐ซ๐ท
tecnicorioja
|
|
wp-login attack [13/Jul/2026:08:20:45
|
Brute-Force
Web App Attack
|
|
|
๐ฒ๐ฝ
octageeks.com
|
|
Wordpress malicious attack:[octaflood]
|
Web App Attack
|
|
|
๐ฎ๐ฉ
zam
|
|
45.3.45.17 - - [22/Jun/2026:10:51:15 +0000] "POST /wp-login.php HTTP/1.1" 404 27293
|
Web App Attack
|
|
|
๐ฌ๐ท
setupgr
|
|
(mod_security) mod_security (id:900001) triggered by 45.3.45.17 (IT/Italy/Lazio/Rome/-/[AS200373 DRE ...
show more
(mod_security) mod_security (id:900001) triggered by 45.3.45.17 (IT/Italy/Lazio/Rome/-/[AS200373 DREI-K-TECH-GMBH]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Mon Jun 22 12:04:43.677402 2026] [security2:error] [pid 1934813:tid 1934939] [client 45.3.45.17:43047] ModSecurity: Access denied with code 403 (phase 1). Match of "rx ^(www\\\\.)?(pankoskal\\\\.gr|sea-sound\\\\.com)$" against "REQUEST_HEADERS:Host" required. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "75"] [id "900001"] [msg "Blocked WP Login attempt on domain: ions.gr"] [severity "CRITICAL"] [tag "security"] [hostname "ions.gr"] [uri "/wp-login.php"] [unique_id "ajj6q_VHAYoCTqtXWiUkIwAAAIw"], referer: https://ions.gr/wp-login.php
show less
|
Port Scan
|
|
|
๐ฒ๐ฝ
octageeks.com
|
|
Wordpress malicious attack:[octaflood]
|
Web App Attack
|
|
|
Anonymous
|
|
[da.kdns.gr] httpd-login-spray-site: sites=vougioukas-texniki.gr; logs=/var/log/httpd/domains/vougio ...
show more
[da.kdns.gr] httpd-login-spray-site: sites=vougioukas-texniki.gr; logs=/var/log/httpd/domains/vougioukas-texniki.gr.log; samples=site_wide=true | distinct_ips=17 | /wp-login.php
show less
|
Hacking
Web App Attack
|
|
|
๐ฎ๐น
VHosting
|
|
Detected attack and reported by a human
|
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 45.3.45.17 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.45.17 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 27 15:55:10.672956 2025] [security2:error] [pid 25694:tid 25739] [client 45.3.45.17:60187] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "davidholls.com"] [uri "/.svn/wc.db"] [unique_id "aSi6rpfXD7sZGRc9q_NB2QAAAIk"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
Anonymous
|
|
suspicious request in access.log
|
Web App Attack
|
|
|
Anonymous
|
|
"GET /.env HTTP/1.1"
|
Hacking
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 45.3.45.17 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.45.17 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:35:39.956582 2025] [security2:error] [pid 15922:tid 15922] [client 45.3.45.17:43571] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "beachcitytshirts.com"] [uri "/.svn/wc.db"] [unique_id "aSQY21GIqGNPyUlWI4ixlAAAABY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 45.3.45.17 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.45.17 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:40:58.338323 2025] [security2:error] [pid 22167:tid 22167] [client 45.3.45.17:51757] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.lamariposagallery.com"] [uri "/.svn/wc.db"] [unique_id "aSP9-hOj_2OpsTvY85pkVAAAAAU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 45.3.45.17 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.45.17 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:12:32.812008 2025] [security2:error] [pid 3577:tid 3577] [client 45.3.45.17:57549] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.juca.com.mx"] [uri "/.git/HEAD"] [unique_id "aSP3UAyavIu5x73GHbrcBQAAABY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|