๐บ๐ธ
TPI-Abuse
2026-09-17 06:28:10
(6 days ago)
(mod_security) mod_security (id:243420) triggered by 78.177.140.144 (78.177.140.144.dynamic.ttnet.co ...
show more
(mod_security) mod_security (id:243420) triggered by 78.177.140.144 (78.177.140.144.dynamic.ttnet.com.tr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 02:28:05.180202 2026] [security2:error] [pid 12100:tid 12100] [client 78.177.140.144:4941] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "ARGS:redirect" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||eye7graphics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "eye7graphics.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "aquIc4XyUOaAMLWnaUeUPgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 05:29:44
(6 days ago)
(mod_security) mod_security (id:243420) triggered by 78.177.140.144 (78.177.140.144.dynamic.ttnet.co ...
show more
(mod_security) mod_security (id:243420) triggered by 78.177.140.144 (78.177.140.144.dynamic.ttnet.com.tr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 01:29:36.364729 2026] [security2:error] [pid 21849:tid 21849] [client 78.177.140.144:2681] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "ARGS:redirect" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||sharonmauldin.stardancertantra.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "sharonmauldin.stardancertantra.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "aqt6vKQzPfyfg-MgHvipSQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 04:44:32
(6 days ago)
(mod_security) mod_security (id:243420) triggered by 78.177.140.144 (78.177.140.144.dynamic.ttnet.co ...
show more
(mod_security) mod_security (id:243420) triggered by 78.177.140.144 (78.177.140.144.dynamic.ttnet.com.tr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 00:44:25.370983 2026] [security2:error] [pid 12915:tid 12931] [client 78.177.140.144:3364] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "ARGS:redirect" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||atlasrecordssearch.com.venezuelaguia.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "atlasrecordssearch.com.venezuelaguia.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "aqtv2Y5qC9PX86EkJTqLgwAAAM0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 03:20:54
(6 days ago)
(mod_security) mod_security (id:243420) triggered by 78.177.140.144 (78.177.140.144.dynamic.ttnet.co ...
show more
(mod_security) mod_security (id:243420) triggered by 78.177.140.144 (78.177.140.144.dynamic.ttnet.com.tr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 23:20:46.484778 2026] [security2:error] [pid 5613:tid 5613] [client 78.177.140.144:5474] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "ARGS:redirect" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||travelwithjenniferb.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "travelwithjenniferb.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "aqtcjaaVohignHvU7DqjcAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-17 01:48:05
(6 days ago)
"GET /wp-admin/admin-ajax.php?action=wdpsso_step1&redirect= HTTP/1.1"
Hacking
Web App Attack
๐บ๐ธ
p0tatosmash3r
2026-09-06 02:17:44
(2 weeks ago)
Honeypot-observed malicious activity: admin-panel/CMS enumeration; known exploit/admin path probe.
Web App Attack
Bad Web Bot
๐บ๐ธ
SiliSoftware
2026-09-05 15:44:10
(2 weeks ago)
/wp-admin/admin-ajax.php?action=wdpsso_step1&redirect=
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-05 15:13:20
(2 weeks ago)
(mod_security) mod_security (id:243420) triggered by 78.177.140.144 (78.177.140.144.dynamic.ttnet.co ...
show more
(mod_security) mod_security (id:243420) triggered by 78.177.140.144 (78.177.140.144.dynamic.ttnet.com.tr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 11:13:15.859977 2026] [security2:error] [pid 27787:tid 27787] [client 78.177.140.144:3084] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "ARGS:redirect" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.adona.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.adona.org"] [uri "/wp-admin/admin-ajax.php"] [unique_id "apwxiqq5c7nLvRMF1-9WBgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
p0tatosmash3r
2026-08-26 12:31:07
(4 weeks ago)
Honeypot-observed malicious activity: admin-panel/CMS enumeration; known exploit/admin path probe.
Web App Attack
Bad Web Bot
๐ฒ๐ฝ
octageeks.com
2026-08-23 04:08:53
(1 month ago)
Wordpress malicious attack:[octascan]
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-22 04:08:47
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฎ๐ฉ
Burayot
2026-08-21 21:00:34
(1 month ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 78.177.140.144 (TR/Tรผrkiye/78.177.1 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 78.177.140.144 (TR/Tรผrkiye/78.177.140.144.dynamic.ttnet.com.tr): 2 in the last 3600 secs
show less
Web App Attack
๐ฉ๐ช
NetworkOperationsTeam
2025-05-31 19:36:11
(1 year ago)
SMS Bombing. Trying to authenticate. API Abuse rate limit exceeded
Hacking
Brute-Force
Web App Attack