π§πͺ
cmbplf
2026-07-31 19:51:24
(1 day ago)
108 requests with url.path */wp-comments-post.php
Brute-Force
Bad Web Bot
Anonymous
2026-07-31 01:01:24
(1 day ago)
FREKISCOM WEBFORM SPAM 54.39.18.217 (ns556636.ip-54-39-18.net)
Web Spam
π¦πΊ
oncord
2026-07-30 22:44:07
(2 days ago)
Form spam
Web Spam
π©π°
donkzquixote
2026-07-30 16:59:29
(2 days ago)
Form submission spam detected
Web Spam
π¦πΊ
paulshipley.com.au
2026-07-29 20:01:26
(3 days ago)
[Thu Jul 30 06:01:26.011973 2026] [security2:error] [pid 430925] [client 54.39.18.217:58005] [client ...
show more
[Thu Jul 30 06:01:26.011973 2026] [security2:error] [pid 430925] [client 54.39.18.217:58005] [client 54.39.18.217] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "dance4fitness.com.au"] [uri "/"] [unique_id "ampcFmjgeC_e1GapzsnnUAAAAAI"]
...
show less
Web App Attack
π¦πΊ
oncord
2026-07-29 17:43:52
(3 days ago)
Form spam
Web Spam
π¦πΊ
paulshipley.com.au
2026-07-29 17:13:22
(3 days ago)
[Thu Jul 30 03:13:22.000791 2026] [security2:error] [pid 368574] [client 54.39.18.217:51754] [client ...
show more
[Thu Jul 30 03:13:22.000791 2026] [security2:error] [pid 368574] [client 54.39.18.217:51754] [client 54.39.18.217] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "talentaymerch.com.au"] [uri "/"] [unique_id "amo0sQcnN17jyc8fxErAfAAAABc"]
...
show less
Web App Attack
Anonymous
2026-07-29 15:51:47
(3 days ago)
ASWEEDCO WEBFORM SPAM 54.39.18.217 (ns556636.ip-54-39-18.net)
Web Spam
πΉπ·
neron
2026-07-29 00:19:38
(3 days ago)
CrowdSec blocked: http:scan detected via OPNsense firewall
Hacking
Web App Attack
π¦πΊ
paulshipley.com.au
2026-07-27 20:35:33
(5 days ago)
[Tue Jul 28 06:35:33.040424 2026] [security2:error] [pid 167643] [client 54.39.18.217:54361] [client ...
show more
[Tue Jul 28 06:35:33.040424 2026] [security2:error] [pid 167643] [client 54.39.18.217:54361] [client 54.39.18.217] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "shotbysuzanne.com.au"] [uri "/privacy-policy/"] [unique_id "amfBFTvlvvbyrvNbPBh4OwAAAAg"]
...
show less
Web App Attack
π«π·
Nicolmn
2026-07-27 19:40:03
(5 days ago)
Web form spam ( id rl-mm.l )
Web Spam
π¦πΊ
paulshipley.com.au
2026-07-27 18:26:35
(5 days ago)
[Tue Jul 28 04:26:34.759477 2026] [security2:error] [pid 132665] [client 54.39.18.217:61234] [client ...
show more
[Tue Jul 28 04:26:34.759477 2026] [security2:error] [pid 132665] [client 54.39.18.217:61234] [client 54.39.18.217] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "paulshipley.com.au"] [uri "/wines-by-design/"] [unique_id "amei2n96pLL5yE5TZbHwWgAAAAg"]
...
show less
Web App Attack
πΊπΈ
oncord
2026-07-27 15:43:19
(5 days ago)
Form spam
Web Spam
π«π·
bazter.pro
2026-07-27 13:12:56
(5 days ago)
Auto-Ban [2026-07-27 13:12:56]: CRITICAL: bot trap (soft) | host=www.geoproceso.com | route=/api/tra ...
show more
Auto-Ban [2026-07-27 13:12:56]: CRITICAL: bot trap (soft) | host=www.geoproceso.com | route=/api/trap/internal/reviews-sync | hits=1 | ua=Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko)
show less
Hacking
Web App Attack
π©πͺ
HERA - Operations
2026-07-27 08:58:31
(5 days ago)
sensobox - searching for vulnerable scripts: index.php 2026/07/27 10:58:31
Web App Attack