๐ฉ๐ช
FeG Deutschland
2026-08-23 01:15:27
(1 hour ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 27
Exploited Host
Web App Attack
Anonymous
2026-08-22 20:23:25
(6 hours ago)
[UserAgent] Suspicious User-Agent detected: Generic bot/crawler/scanner indicator in User-Agent
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-22 18:58:15
(7 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.238.114.235 (static.235.114.238.62.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 62.238.114.235 (static.235.114.238.62.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 14:58:09.854433 2026] [security2:error] [pid 16843:tid 16843] [client 62.238.114.235:41730] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cloudex.link|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cloudex.link"] [uri "/wp-json/wp/v2/users"] [unique_id "aonxQZPuemgewqBnq-ZFHAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
CK_beats
2026-08-22 18:45:07
(7 hours ago)
Blocked by os-abuseipdb on OPNsense firewall KN-FW01; 8 hits, proto=tcp, ports=80
Port Scan
Hacking
๐ฉ๐ช
LRob
2026-08-22 18:26:46
(8 hours ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: /wp-json/wp/v2/users
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 17:09:44
(9 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.238.114.235 (static.235.114.238.62.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 62.238.114.235 (static.235.114.238.62.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 13:09:40.290671 2026] [security2:error] [pid 12570:tid 12570] [client 62.238.114.235:52518] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||brazilianbottom.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "brazilianbottom.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aonX1A_wkGC3NrLXKDe4jAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 14:36:57
(12 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.238.114.235 (static.235.114.238.62.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 62.238.114.235 (static.235.114.238.62.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 10:36:52.105382 2026] [security2:error] [pid 22758:tid 22774] [client 62.238.114.235:48586] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||arizonasolutionsgroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "arizonasolutionsgroup.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aom0BOCUicNFigKX63ZXqAAAAQ4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 14:19:24
(12 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.238.114.235 (static.235.114.238.62.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 62.238.114.235 (static.235.114.238.62.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 10:19:16.739145 2026] [security2:error] [pid 24022:tid 24045] [client 62.238.114.235:48498] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||annacaird.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "annacaird.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aomv5P5lurlKG69zwfY2UQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 09:07:57
(17 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.238.114.235 (static.235.114.238.62.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 62.238.114.235 (static.235.114.238.62.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 05:07:50.125998 2026] [security2:error] [pid 4369:tid 4369] [client 62.238.114.235:36694] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||braintechsoftwaresolutions.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "braintechsoftwaresolutions.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aolm5jD-nNLD8o1OIYzNsQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-08-22 07:02:57
(19 hours ago)
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 62.238.114.235 (FI/Finland/static.235.114.238. ...
show more
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 62.238.114.235 (FI/Finland/static.235.114.238.62.clients.your-server.de): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 62.238.114.235 - - [22/Aug/2026:09:02:54 +0200] "GET /wp-json/wp/v2/users?per_page=100 HTTP/1.1" 200 973 "-" "Mozilla/5.0 (compatible; osentix-crawler/1.0; +https://osentix.com/bot)" "-" host=maylynlopez.com
show less
Port Scan
๐ฉ๐ช
maxpower
2026-08-22 05:55:51
(20 hours ago)
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 62.238.114.235 (FI/Finland/static.235.114.238. ...
show more
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 62.238.114.235 (FI/Finland/static.235.114.238.62.clients.your-server.de): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 62.238.114.235 - - [22/Aug/2026:07:55:49 +0200] "GET /wp-json/wp/v2/users?per_page=100 HTTP/1.1" 200 768 "-" "Mozilla/5.0 (compatible; osentix-crawler/1.0; +https://osentix.com/bot)" "-" host=iampieriarredamenti.it
show less
Port Scan
Anonymous
2026-08-22 03:42:03
(23 hours ago)
ModSecurity rejected a query
Bad Web Bot
Web App Attack
๐ซ๐ท
โจ
2026-08-22 01:07:19
(1 day ago)
Domain : resultsoftware.co.uk
Rule : UserAgent
2026-08-22 01:06:21 217.194.212.6 GET /App_Themes/Sta ...
show more
Domain : resultsoftware.co.uk
Rule : UserAgent
2026-08-22 01:06:21 217.194.212.6 GET /App_Themes/Standard_Theme/ResultStamp.gif - 443 - 62.238.114.235 HTTP/1.1 Mozilla/5.0 (compatible; osentix-crawler/1.0; https://osentix.com/bot) - resultsoftware.co.uk 200 0 0 7026 332 112 - -
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-08-22 00:27:03
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 62.238.114.235 (static.235.114.238.62.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 62.238.114.235 (static.235.114.238.62.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 20:27:00.159985 2026] [security2:error] [pid 28076:tid 28076] [client 62.238.114.235:39002] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fiestadj.com.mx|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fiestadj.com.mx"] [uri "/wp-json/wp/v2/users"] [unique_id "aojs1B7wg8YrPHeQ2XAoeAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
Bay13
2026-08-21 23:45:20
(1 day ago)
CrowdSec:custom/http-probing
Web App Attack