๐ฉ๐ช
spyra.rocks
2025-05-23 18:11:40
(1 year ago)
WordPress Firewall
Web App Attack
๐ฉ๐ช
Vegascosmetics
2025-05-22 21:52:21
(1 year ago)
Kingcopy(AI-IDS): IP is wandering around the site and acting suspiciously.
Bad Web Bot
๐ฉ๐ช
spyra.rocks
2025-05-22 10:10:06
(1 year ago)
WordPress Firewall
Web App Attack
๐ฉ๐ช
Vegascosmetics
2025-05-21 21:51:57
(1 year ago)
Kingcopy(AI-IDS):IP is Probing for Wordpress vulnerabilities WTF:Banned
Hacking
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2025-05-21 20:48:47
(1 year ago)
Multiple WAF Violations
Web App Attack
๐ฆ๐บ
clapper
2025-05-21 19:21:08
(1 year ago)
(mod_security) mod_security (id:949110) triggered by 52.169.122.144 (IE/Ireland/-): 5 in the last 36 ...
show more
(mod_security) mod_security (id:949110) triggered by 52.169.122.144 (IE/Ireland/-): 5 in the last 3600 secs; ID: rub
show less
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-05-21 12:40:01
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 52.169.122.144 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 52.169.122.144 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 21 08:39:56.497182 2025] [security2:error] [pid 3921183:tid 3921302] [client 52.169.122.144:12507] [client 52.169.122.144] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nothingwithoutwater.com"] [uri "/wp-config.php"] [unique_id "aC3JnMua2jQhbyU7e3ifWgAAARQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2025-05-21 12:03:16
(1 year ago)
Excessive multi-domain requests
Brute-Force
๐ณ๐ฑ
Site.eu
2025-05-21 10:14:17
(1 year ago)
Excessive 404/403 errors
Brute-Force
๐ณ๐ฑ
CryptoYakari
2025-05-21 08:56:45
(1 year ago)
[Wed May 21 11:56:43.083206 2025] [proxy_fcgi:error] [pid 110678:tid 110714] [client 52.169.122.144: ...
show more
[Wed May 21 11:56:43.083206 2025] [proxy_fcgi:error] [pid 110678:tid 110714] [client 52.169.122.144:0] AH01071: Got error 'Primary script unknown'
[Wed May 21 11:56:43.123536 2025] [proxy_fcgi:error] [pid 110678:tid 110711] [client 52.169.122.144:0] AH01071: Got error 'Primary script unknown'
[Wed May 21 11:56:43.163972 2025] [proxy_fcgi:error] [pid 110677:tid 110699] [client 52.169.122.144:0] AH01071: Got error 'Primary script unknown'
...
show less
Web Spam
Blog Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2025-05-21 07:05:18
(1 year ago)
Too many Status 40X (13)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-21 04:34:59
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 52.169.122.144 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 52.169.122.144 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 21 00:34:51.854513 2025] [security2:error] [pid 815566:tid 815566] [client 52.169.122.144:11729] [client 52.169.122.144] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hawaiiantime.com"] [uri "/wp-config.php"] [unique_id "aC1X61z7-BSshTVc8UM8vgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2025-05-21 04:00:17
(1 year ago)
52.169.122.144 - - [21/May/2025:03:59:58 +0000] "GET /cgi-bin/ HTTP/1.1" 404 58216 "-" rt="0.107" "- ...
show more
52.169.122.144 - - [21/May/2025:03:59:58 +0000] "GET /cgi-bin/ HTTP/1.1" 404 58216 "-" rt="0.107" "-" "-" h="www.karolinashumilas.com" sn="www.karolinashumilas.com" ru="/cgi-bin/" u="/index.php" ucs="-" ua="unix:/var/run/php/karolinashumilas82.sock" us="404" uct="0.000" urt="0.107"
52.169.122.144 - - [21/May/2025:03:59:58 +0000] "GET /cgi-bin/moon.php HTTP/1.1" 404 58216 "-" rt="0.102" "-" "-" h="www.karolinashumilas.com" sn="www.karolinashumilas.com" ru="/cgi-bin/moon.php" u="/index.php" ucs="-" ua="unix:/var/run/php/karolinashumilas82.sock" us="404" uct="0.000" urt="0.101"
52.169.122.144 - - [21/May/2025:04:00:13 +0000] "GET /mail/ HTTP/1.1" 404 58216 "-" rt="0.175" "-" "-" h="www.karolinashumilas.com" sn="www.karolinashumilas.com" ru="/mail/" u="/index.php" ucs="-" ua="unix:/var/run/php/karolinashumilas82.sock" us="404" uct="0.000" urt="0.174"
52.169.122.144 - - [21/May/2025:03:59:58 +0000] "GET /cgi-bin/ HTTP/1.1" 404 58216 "-" "-" "-"
52.169.122.144 - - [21/May/2025:03:59:58 +0000
...
show less
Bad Web Bot
๐ฉ๐ช
Ba-Yu
2025-05-20 14:45:29
(1 year ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ช๐ธ
masterguru
2025-05-20 05:46:13
(1 year ago)
Too much 404 requests in 1 hour. Operator GE matched 50 at IP:block_script. (44020-123)
Hacking