๐ฌ๐ง
consul.to
2026-06-14 12:42:55
(2 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
Octopuce
2026-06-12 03:34:01
(4 days ago)
Aggressive web search of vulnerable pages: /images/admin.php /db.php /.well-known/pki-validation/mar ...
show more
Aggressive web search of vulnerable pages: /images/admin.php /db.php /.well-known/pki-validation/mariju.php /mah/function.php /wp-content/plugi ...
show less
Web App Attack
๐บ๐ธ
mnsf
2026-04-26 16:05:13
(1 month ago)
Request Overload (124)
Brute-Force
Web App Attack
๐บ๐ธ
nyt
2026-04-26 14:47:26
(1 month ago)
CGI Probe, Repeated access to non-existent PHP file
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-26 07:03:57
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 85.203.36.174 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 85.203.36.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 26 03:03:54.344682 2026] [security2:error] [pid 5918:tid 5918] [client 85.203.36.174:28219] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "crescentcitycafe.net"] [uri "/wp-config.php"] [unique_id "ae242qfvt-4HyEB8nQCEtgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
afleventoffice.com.au
2026-04-25 09:58:10
(1 month ago)
GET /wp-admin/maint/ HTTP/1.1
Web App Attack
Anonymous
2026-04-25 07:33:44
(1 month ago)
85.203.36.174 - - [25/Apr/2026:09:33:43 +0200] "GET /wp-content/uploads/ast-block-templates-json/sys ...
show more
85.203.36.174 - - [25/Apr/2026:09:33:43 +0200] "GET /wp-content/uploads/ast-block-templates-json/system_core.php HTTP/1.0" 404 460 "-" "Go-http-client/1.1"
85.203.36.174 - - [25/Apr/2026:09:33:43 +0200] "GET /wp-content/uploads/ast-block-templates-json/system_core.php HTTP/1.1" 404 244 "-" "Go-http-client/1.1"
85.203.36.174 - - [25/Apr/2026:09:33:44 +0200] "GET /wp-content/uploads/astra-sites/json/system_core.php HTTP/1.0" 404 460 "-" "Go-http-client/1.1"
85.203.36.174 - - [25/Apr/2026:09:33:44 +0200] "GET /wp-content/uploads/astra-sites/json/system_core.php HTTP/1.1" 404 244 "-" "Go-http-client/1.1"
85.203.36.174 - - [25/Apr/2026:09:33:44 +0200] "GET /wp-content/uploads/cartflows-logs/system_core.php HTTP/1.0" 404 460 "-" "Go-http-client/1.1"
...
show less
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-04-20 05:52:43
(1 month ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
dynamix
2026-04-18 04:51:15
(1 month ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
Octopuce
2026-04-17 23:27:03
(1 month ago)
Aggressive web search of vulnerable pages: /wp-content/plugins/seoplugins/db.php?u /wp-content/theme ...
show more
Aggressive web search of vulnerable pages: /wp-content/plugins/seoplugins/db.php?u /wp-content/themes/pridmag/db.php?u /wp-content/plugins/link ...
show less
Web App Attack
๐ฉ๐ช
MusicLibrary
2026-03-02 08:51:33
(3 months ago)
Attempted access to non existent wordpress urls
Bad Web Bot
๐ง๐ช
cmbplf
2026-02-13 23:04:45
(4 months ago)
10.535 POST requests in 1 hour (2w4d56m)
Brute-Force
Bad Web Bot
๐ฎ๐ฉ
Burayot
2026-01-27 19:27:31
(4 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 85.203.36.174 (GB/United Kingdom/-) ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 85.203.36.174 (GB/United Kingdom/-): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
mnsf
2026-01-27 18:05:38
(4 months ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-21 14:08:49
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 85.203.36.174 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 85.203.36.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 21 09:08:43.979037 2026] [security2:error] [pid 17058:tid 17058] [client 85.203.36.174:56169] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||sailingcharterburma.com|F|2"] [data ".com.sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "sailingcharterburma.com"] [uri "/sailingcharterburma.com.sql"] [unique_id "aXDd6_iR2SQtg6gF1MQIEQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack