πΊπΈ
EvilTurkey
2026-09-14 12:15:41
(4 days ago)
Web app attack against financial institution website.
Web App Attack
Hacking
π¨π
4server
2026-09-09 07:27:44
(1 week ago)
[WedSep0909:27:38.9311552026][security2:error][pid1121194:tid1121239][client45.3.55.65:0]ModSecurity ...
show more
[WedSep0909:27:38.9311552026][security2:error][pid1121194:tid1121239][client45.3.55.65:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"614\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"foodelivery.benvenutialfood.ch\"][uri\"/xmlrpc.php\"][unique_id\"aqEKakMQW3dSDxY1PsuXYAAAAVQ\"]
show less
Hacking
Web App Attack
π«π·
Sklurk
2026-08-14 09:33:30
(1 month ago)
Web App Attack
Web App Attack
π«π·
Sklurk
2026-08-02 03:15:56
(1 month ago)
Web App Attack
Web App Attack
πΊπΈ
mnsf
2026-03-15 18:05:17
(6 months ago)
Xmlrpc Caught (6)
Brute-Force
Web App Attack
Anonymous
2026-01-05 20:25:10
(8 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2026.01.05 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2026.01.05 is noted in report timestamp
show less
Hacking
Brute-Force
π¬π§
[email protected]
2026-01-04 11:45:44
(8 months ago)
aenetworks.infoaware.com:80 45.3.55.65 - - [04/Jan/2026:11:45:44 +0000] "HEAD /wp-json/ HTTP/1.1" 40 ...
show more
aenetworks.infoaware.com:80 45.3.55.65 - - [04/Jan/2026:11:45:44 +0000] "HEAD /wp-json/ HTTP/1.1" 404 261 "-" "python-requests/2.25.1"
aenetworks.infoaware.com:80 45.3.55.65 - - [04/Jan/2026:11:45:44 +0000] "HEAD /wp-includes/ HTTP/1.1" 404 261 "-" "python-requests/2.25.1"
aenetworks.infoaware.com:80 45.3.55.65 - - [04/Jan/2026:11:45:44 +0000] "HEAD /wp-content/ HTTP/1.1" 404 261 "-" "python-requests/2.25.1"
...
show less
Web App Attack
π©πͺ
ps-center
2025-12-29 20:39:36
(8 months ago)
DIS: Web Attack GET /backup/wp-config.php
Web Spam
Hacking
Bad Web Bot
Web App Attack
ππΊ
bcsaba
2025-12-26 19:17:53
(8 months ago)
Suricata: Alert - ET WEB_SERVER Tilde in URI - potential .php~ source disclosure vulnerability
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 06:15:16
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.55.65 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.55.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:15:13.035557 2025] [security2:error] [pid 7586:tid 7586] [client 45.3.55.65:56247] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.forensicwater.waterarchitecture.com"] [uri "/.svn/wc.db"] [unique_id "aSVJcbgvUdc7bESLBtHGrAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 05:27:16
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.55.65 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.55.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:26:50.329228 2025] [security2:error] [pid 25832:tid 25832] [client 45.3.55.65:45553] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.abstractorangemusic.com"] [uri "/.git/HEAD"] [unique_id "aSU-GqbmCcQTk2YSz8yxBQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 04:45:12
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.55.65 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.55.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:44:57.832968 2025] [security2:error] [pid 12120:tid 12120] [client 45.3.55.65:21659] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.walterjhoodco.com"] [uri "/.env"] [unique_id "aSU0Sc3Ut1r14AUVPho5wwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 02:57:17
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.55.65 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.55.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:57:12.295643 2025] [security2:error] [pid 24187:tid 24187] [client 45.3.55.65:60831] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.bitcoincasting.com"] [uri "/.svn/wc.db"] [unique_id "aSUbCJmTJ5O4kbOL3R2SPAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 02:41:23
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.55.65 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.55.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:41:15.656756 2025] [security2:error] [pid 7851:tid 7851] [client 45.3.55.65:45843] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "villachaya.coconut-homes.com"] [uri "/.svn/wc.db"] [unique_id "aSUXS-a4mw9oGsLwZeEZlQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 02:04:11
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.55.65 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.55.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:04:05.768935 2025] [security2:error] [pid 12565:tid 12565] [client 45.3.55.65:56695] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.benshermanguitar.com"] [uri "/.svn/wc.db"] [unique_id "aSUOlfT2wn0WWyaonftqWAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack