๐ซ๐ท
claude CALVET
2026-08-26 13:06:12
(8 hours ago)
gee-Joomla Admin : try to force the door...
Hacking
๐บ๐ฆ
URAN Publishing Service
2026-08-25 11:44:29
(1 day ago)
[25/Aug/2026:14:44:28 +0300] -- 83.142.53.49 Ban reason: User-Agent curl/
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-08-25 09:05:26
(1 day ago)
[TueAug2511:05:19.9612352026][security2:error][pid2286446:tid2286529][client83.142.53.49:0]ModSecuri ...
show more
[TueAug2511:05:19.9612352026][security2:error][pid2286446:tid2286529][client83.142.53.49:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(curl\|wget\|python\|nikto\|sqlmap\|acunetix\|fimap\|dirbuster\|cmsmap\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"217\"][id\"990210\"][msg\"Suspicioususer-agentblocked\"][hostname\"ponzellini.ch\"][uri\"/wp-json/\"][unique_id\"ao1az0M_xIVhEKQhFKCK4AAAAME\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ซ๐ท
claude CALVET
2026-08-19 18:45:40
(1 week ago)
gee-Joomla Admin : try to force the door...
Hacking
๐ฉ๐ช
stinpriza
2026-06-24 08:28:59
(2 months ago)
Web App Attack
Web App Attack
๐ฑ๐ป
garmtech.com
2026-04-21 18:02:08
(4 months ago)
IM360 WAF: Attempt to upload malware
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-07 20:35:52
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 83.142.53.49 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 83.142.53.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 16:35:46.021187 2026] [security2:error] [pid 1554844:tid 1554844] [client 83.142.53.49:15273] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rendermatrix.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rendermatrix.com"] [uri "/wp-json/wp/v2/users"] [unique_id "adVqon5DPq0tITec9t6aKAAAAAA"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
Jordy
2026-03-26 18:08:52
(5 months ago)
26/Mar/2026:19:03:37.346415 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
26/Mar/2026:19:03:37.346415 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 83.142.53.49] ModSecurity: Warning. Match of "within %{tx.allowed_request_content_type}" against "TX:content_type" required. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "957"] [id "920420"] [msg "Request content type is not allowed by policy"] [data "|text/plain|"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153"] [tag "PCI/12.1"] [hostname "familievandemaat.nl"] [uri "/xmlrpc.php"] [unique_id "acV0-RTeHk8JlmHeCJbPSQAAAAE"]
26/Mar/2026:19:03:37.346415 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 83.142.53.49] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKIN
...
show less
Web App Attack
๐จ๐ฟ
ptlab
2026-03-26 04:45:17
(5 months ago)
Detected wp_login attack from WP-host.
Hacking
Web App Attack
๐บ๐ธ
ph
2026-03-25 03:06:44
(5 months ago)
Bad web bot attempting to run wp-json on non-WP site
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-24 09:15:11
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 83.142.53.49 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 83.142.53.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 24 05:15:05.862086 2026] [security2:error] [pid 13874:tid 13874] [client 83.142.53.49:27745] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||alan-ip.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "alan-ip.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acJWGa0BrGnCox5MHQ7dVwAAABI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
IROK
2026-03-21 18:40:39
(5 months ago)
Malware/WebShell Scan blocked by ModSecurity
...
Hacking
๐บ๐ธ
JCB
2026-03-21 09:00:00
(5 months ago)
wp-login.php
Brute-Force
Web App Attack
๐บ๐ธ
myagent.site
2026-03-21 05:17:44
(5 months ago)
Blocking for trying to access an exploit file: /xmlrpc.php
Hacking
๐ซ๐ท
ingroscart.it
2026-03-21 01:28:02
(5 months ago)
(mod_security) mod_security triggered on hostname [redacted] 83.142.53.49 (IL/Israel/-)
SQL Injection