๐ซ๐ท
Hippoline
2026-07-23 11:57:17
(20 hours ago)
[Thu Jul 23 13:57:14.503500 2026] [authz_core:error] [pid 4103] [client 45.89.242.241:46093] AH01630 ...
show more
[Thu Jul 23 13:57:14.503500 2026] [authz_core:error] [pid 4103] [client 45.89.242.241:46093] AH01630: client denied by server configuration: /var/www/pferde.lu/web/cjfuns.php, referer: http://pferde.lu/cjfuns.php
[Thu Jul 23 13:57:15.834362 2026] [authz_core:error] [pid 4103] [client 45.89.242.241:46093] AH01630: client denied by server configuration: /var/www/pferde.lu/web/ioxi-o.php, referer: http://pferde.lu/ioxi-o.php
[Thu Jul 23 13:57:16.094817 2026] [authz_core:error] [pid 4103] [client 45.89.242.241:46093] AH01630: client denied by server configuration: /var/www/pferde.lu/web/insc.php, referer: http://pferde.lu/insc.php
[Thu Jul 23 13:57:16.495099 2026] [authz_core:error] [pid 4103] [client 45.89.242.241:46093] AH01630: client denied by server configuration: /var/www/pferde.lu/web/classwithtostring.php, referer: http://pferde.lu/classwithtostring.php
[Thu Jul 23 13:57:16.772352 2026] [authz_core:error] [pid 4103] [client 45.89.242.241:46093] AH01630: client denied by server conf
...
show less
Brute-Force
Web App Attack
๐จ๐ญ
backslash
2026-07-07 12:27:08
(2 weeks ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐ซ๐ท
SpaceHost-Server
2026-06-14 02:11:00
(1 month ago)
45.89.242.241 - - [14/Jun/2026:04:10:36 +0200] "POST /xmlrpc.php HTTP/1.1" 200 4908 "-" "WordPress.c ...
show more
45.89.242.241 - - [14/Jun/2026:04:10:36 +0200] "POST /xmlrpc.php HTTP/1.1" 200 4908 "-" "WordPress.com; https://wordpress.com"
45.89.242.241 - - [14/Jun/2026:04:10:47 +0200] "POST /xmlrpc.php HTTP/1.1" 200 4908 "-" "Jetpack/13.0; WordPress/6.1; http://site98469649.com"
45.89.242.241 - - [14/Jun/2026:04:10:57 +0200] "POST /xmlrpc.php HTTP/1.1" 200 4908 "-" "Jetpack/12.0; WordPress/6.2; http://site13104875.com"
show less
Hacking
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-06-14 01:51:27
(1 month ago)
45.89.242.241 - - [14/Jun/2026:03:51:02 +0200] "POST /xmlrpc.php HTTP/1.1" 200 4908 "-" "Jetpack/12. ...
show more
45.89.242.241 - - [14/Jun/2026:03:51:02 +0200] "POST /xmlrpc.php HTTP/1.1" 200 4908 "-" "Jetpack/12.1; WordPress/6.2; http://site84734383.com"
45.89.242.241 - - [14/Jun/2026:03:51:13 +0200] "POST /xmlrpc.php HTTP/1.1" 200 4908 "-" "Jetpack/13.0; WordPress/6.3; http://site87586645.com"
45.89.242.241 - - [14/Jun/2026:03:51:24 +0200] "POST /xmlrpc.php HTTP/1.1" 200 4908 "-" "Jetpack by WordPress.com (Jetpack 12.1; WordPress 6.3)"
show less
Hacking
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-06-13 16:49:31
(1 month ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
GB/United Kingdom/-
Web App Attack
๐ซ๐ท
dynamix
2026-02-28 22:33:42
(4 months ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-02-28 03:07:25
(4 months ago)
Blocked: Reason='Vulnerability probing โ PHP scan detected (27/60 min)'; Requests=27
Port Scan
๐ง๐ช
cmbplf
2026-02-28 01:01:30
(4 months ago)
5.562 4xx requests in 1 hour (2w6d12h)
Brute-Force
Bad Web Bot
Anonymous
2026-02-27 23:30:13
(4 months ago)
| [Normal/United Kingdom] Agressive IP 45.89.242.241 (~350 hits). Type: DoS Defender- Web server 400 ...
show more
| [Normal/United Kingdom] Agressive IP 45.89.242.241 (~350 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
mnsf
2026-01-31 21:05:08
(5 months ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
๐ณ๐ฑ
GabrielJST
2026-01-30 20:53:32
(5 months ago)
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 45.89.242.241 (GB/United ...
show more
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 45.89.242.241 (GB/United Kingdom/-)
show less
Port Scan
๐บ๐ธ
mnsf
2026-01-30 20:05:13
(5 months ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-01-28 04:38:59
(5 months ago)
45.89.242.241 - - [28/Jan/2026:06:38:58 +0200] "GET //wp-content/plugins/seoplugins/db.php?u HTTP/1. ...
show more
45.89.242.241 - - [28/Jan/2026:06:38:58 +0200] "GET //wp-content/plugins/seoplugins/db.php?u HTTP/1.1" 404 276 "-" "Go-http-client/1.1"
45.89.242.241 - - [28/Jan/2026:06:38:58 +0200] "GET //wp-content/themes/fitnessbase/inc/customizer/wp-log.php HTTP/1.1" 404 276 "-" "Go-http-client/1.1"
...
show less
Web App Attack
๐บ๐ธ
WizardsToolkit
2026-01-14 20:22:49
(6 months ago)
attempted to access /directory.rar
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-05 03:45:14
(6 months ago)
(mod_security) mod_security (id:210730) triggered by 45.89.242.241 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.89.242.241 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 04 22:45:09.907395 2026] [security2:error] [pid 14373:tid 14373] [client 45.89.242.241:21657] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||thegoldentether.com|F|2"] [data ".dat"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "thegoldentether.com"] [uri "/old/wallet.dat"] [unique_id "aVszxbX6uLplYZp74kB5kAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack