๐ซ๐ท
Tonga-Soa
2026-06-30 06:35:31
(3 weeks ago)
"Inject SQL SELECT ... fromcharcode..."
Hacking
SQL Injection
๐ท๐บ
sms.ru
2026-06-08 23:19:09
(1 month ago)
/wp-admin/css/wp-conflg.php
Web App Attack
๐ซ๐ท
Octopuce
2026-06-08 21:12:58
(1 month ago)
Aggressive web search of vulnerable pages: /update/ /wp-content/ /wp-admin/maint/ /themes/zMousse/ / ...
show more
Aggressive web search of vulnerable pages: /update/ /wp-content/ /wp-admin/maint/ /themes/zMousse/ /wp-content/plugins/ubh/ /wp-admin/images/ / ...
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-06-06 02:03:04
(1 month ago)
45.95.243.153 - - [06/Jun/2026:05:03:04 +0300] "GET /wp-includes/blocks/calendar/ HTTP/1.1" 404 478 ...
show more
45.95.243.153 - - [06/Jun/2026:05:03:04 +0300] "GET /wp-includes/blocks/calendar/ HTTP/1.1" 404 478 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:67.0) Gecko/20100101 Firefox/67.0"
45.95.243.153 - - [06/Jun/2026:05:03:04 +0300] "GET /wp-content/plugins/fix/ HTTP/1.1" 404 478 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36"
...
show less
Web App Attack
๐ฌ๐ง
consul.to
2026-06-05 20:59:58
(1 month ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
Skyrider
2026-06-04 12:25:37
(1 month ago)
crowdsecurity/http-crawl-non_statics
Hacking
๐บ๐ธ
TPI-Abuse
2026-05-27 10:56:10
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 45.95.243.153 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.95.243.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 06:56:02.110656 2026] [security2:error] [pid 3214:tid 3248] [client 45.95.243.153:26287] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||iamfluff.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "iamfluff.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ahbNws0HQCiH_SG_q496QQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
threatintelligence_bvc
2026-04-25 14:53:45
(2 months ago)
Brute-Force
๐ซ๐ฎ
nNordic
2026-04-24 07:12:54
(3 months ago)
Connection attempt blocked by IDS/IPS from 45.95.243.153/32
Hacking
๐บ๐ธ
threatintelligence_bvc
2026-04-16 11:04:25
(3 months ago)
Brute-Force
Anonymous
2026-03-30 06:34:05
(3 months ago)
PROTO=UDP DPT=26863
Port Scan
Hacking
๐ธ๐ช
vaia.cloud
2026-03-03 05:03:11
(4 months ago)
trying wp-login.php/xmlrpc.php 163 times in 1 minutes
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-01 20:31:17
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 45.95.243.153 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.95.243.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 01 15:31:13.528322 2026] [security2:error] [pid 29057:tid 29057] [client 45.95.243.153:43407] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/sftp-config.json" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.crypto-stamps.com"] [uri "/backup/sftp-config.json"] [unique_id "aaSiEWxMIqO0KQvwpLPnBgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-16 13:59:41
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 45.95.243.153 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.95.243.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 16 08:59:37.067650 2026] [security2:error] [pid 25465:tid 25465] [client 45.95.243.153:53081] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.spectorworld.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.spectorworld.com"] [uri "/mysql.sql"] [unique_id "aZMiyUoKL_uegVYgQ_1IyQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-02-12 05:47:44
(5 months ago)
Multiple WAF Violations
Web App Attack