๐บ๐ธ
myagent.site
2026-03-03 06:57:42
(3 months ago)
Blocking for trying to access an exploit file: /vendor/phpunit/phpunit/src/Util/PHP/
Hacking
๐ซ๐ฎ
Christopher Hughes
2026-03-03 01:46:41
(3 months ago)
[Tue Mar 03 01:46:28.969685 2026] [proxy_fcgi:error] [pid 631068:tid 139768315668032] [client 45.92. ...
show more
[Tue Mar 03 01:46:28.969685 2026] [proxy_fcgi:error] [pid 631068:tid 139768315668032] [client 45.92.229.49:64057] AH01071: Got error 'Primary script unknown'
[Tue Mar 03 01:46:32.057342 2026] [proxy_fcgi:error] [pid 631068:tid 139767798806080] [client 45.92.229.49:64057] AH01071: Got error 'Primary script unknown'
[Tue Mar 03 01:46:39.036949 2026] [proxy_fcgi:error] [pid 631068:tid 139767916238400] [client 45.92.229.49:64057] AH01071: Got error 'Primary script unknown'
[Tue Mar 03 01:46:39.982259 2026] [proxy_fcgi:error] [pid 631068:tid 139767798806080] [client 45.92.229.49:64057] AH01071: Got error 'Primary script unknown'
[Tue Mar 03 01:46:40.559865 2026] [proxy_fcgi:error] [pid 631068:tid 139767832376896] [client 45.92.229.49:64057] AH01071: Got error 'Primary script unknown'
...
show less
Web App Attack
๐ซ๐ท
dynamix
2026-03-02 22:56:37
(3 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
antlac1
2026-03-02 12:46:53
(3 months ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-03-02 03:43:12
(3 months ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ฆ๐บ
MAGIC
2026-03-02 01:01:19
(3 months ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-03-02 00:37:59
(3 months ago)
(mod_security) mod_security (id:240000) triggered by 45.92.229.49 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240000) triggered by 45.92.229.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 01 19:37:54.540945 2026] [security2:error] [pid 22826:tid 22833] [client 45.92.229.49:20353] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||cwminstitute.com.aafm.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "cwminstitute.com.aafm.us"] [uri "/images/stories/themes.php"] [unique_id "aaTb4qDPmHOQT-wFI_jLogAAAEI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-26 20:38:25
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 45.92.229.49 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.92.229.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 26 15:38:17.118439 2026] [security2:error] [pid 4056:tid 4056] [client 45.92.229.49:35129] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.wild-goose.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.wild-goose.net"] [uri "/wp-json/wp/v2/users/"] [unique_id "aaCvORyvrttqi2HcboD6_gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-02-26 19:19:14
(3 months ago)
(wordpress) Apache: Failed WordPress login from 45.92.229.49 (US/United States/-): 10 in the last 36 ...
show more
(wordpress) Apache: Failed WordPress login from 45.92.229.49 (US/United States/-): 10 in the last 3600 secs (0-193)
show less
Hacking
Anonymous
2026-02-26 15:05:10
(3 months ago)
CMS login brute force detected by Fail2Ban
Brute-Force
Web App Attack
๐ฉ๐ช
Marc
2026-02-26 13:40:33
(3 months ago)
Brute-Force
Web App Attack
๐ธ๐ฌ
pusathosting.com
2026-02-05 12:50:04
(3 months ago)
24ds22 bruteforce
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-01 11:01:34
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 45.92.229.49 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.92.229.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 01 06:01:28.197655 2026] [security2:error] [pid 25750:tid 25750] [client 45.92.229.49:31313] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||enriquejezik.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "enriquejezik.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aX8yiEnLdklubYAOTC83CQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-01 00:14:48
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 45.92.229.49 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.92.229.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 31 19:14:45.698821 2026] [security2:error] [pid 14316:tid 14316] [client 45.92.229.49:29889] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||firebelly.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "firebelly.org"] [uri "/wp-json/wp/v2/users/"] [unique_id "aX6a9V3UaN2KpBgxat1rygAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Apache
2026-01-30 09:54:16
(4 months ago)
(mod_security) mod_security (id:210410) triggered by 45.92.229.49 (US/United States/-): 5 in the las ...
show more
(mod_security) mod_security (id:210410) triggered by 45.92.229.49 (US/United States/-): 5 in the last 300 secs
show less
Brute-Force
Web App Attack