Anonymous
2026-04-28 09:07:11
(1 month ago)
Forum/form spam
Web Spam
๐ช๐ธ
librebit
2026-04-10 12:44:19
(1 month ago)
Brute force
Brute-Force
๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(2 months ago)
"DDoS against public endpoint"
DDoS Attack
Anonymous
2026-03-22 22:27:50
(2 months ago)
Forum/form spam
Web Spam
Anonymous
2026-03-02 12:55:30
(3 months ago)
Forum/form spam
Web Spam
Anonymous
2026-02-11 22:45:09
(3 months ago)
Infected user bad webscan
Exploited Host
๐ช๐ธ
10dencehispahard SL
2026-01-26 07:20:48
(4 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
๐บ๐ธ
nowyouknow
2025-12-29 16:15:03
(5 months ago)
(From [email protected] ) Hello,
My name is Charlotte Douglas, and I re ...
show more
(From [email protected] ) Hello,
My name is Charlotte Douglas, and I represent Coastal Electric Services. We are currently evaluating potential partners for an upcoming opportunity and would like to confirm the following:
โข Your availability to support new projects in Q1 2026
โข Your interest in receiving additional project details
Once we have confirmed both availability and interest, we will provide the project scope and further information.
Thank you for your time. We look forward to hearing from you.
Best regards,
Charlotte Douglas
Project Executive
show less
Phishing
Web Spam
Anonymous
2025-12-12 07:22:44
(5 months ago)
botnet
DDoS Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 15:03:28
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.25.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.25.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 10:03:24.098197 2025] [security2:error] [pid 16826:tid 16826] [client 104.167.25.228:53913] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aantariaconstructions.com"] [uri "/.env"] [unique_id "aS7_vJ8I6TZ4Fx-iinW2LQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 06:03:41
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.25.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.25.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 01:03:37.578392 2025] [security2:error] [pid 448:tid 448] [client 104.167.25.228:34445] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "georgewmartin.com"] [uri "/.svn/wc.db"] [unique_id "aS6BObbaafxHTEk_EEPbjAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 05:20:20
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.25.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.25.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 00:20:14.975246 2025] [security2:error] [pid 28009:tid 28009] [client 104.167.25.228:21675] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fitzmail.com"] [uri "/.svn/wc.db"] [unique_id "aS53DpQNGguZdDhZXtG2AQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2025-11-24 23:01:56
(6 months ago)
Auto-ban: >3000 req/min op 2025-11-24
Hacking
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2025-11-24 03:49:45
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.25.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.25.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 22:49:39.731422 2025] [security2:error] [pid 3965261:tid 3965298] [client 104.167.25.228:28841] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.kerrfamilyassociation.com"] [uri "/.git/HEAD"] [unique_id "aSPV0x7XGNzpCBYjvUvR7gAAAkA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-02 14:56:56
(7 months ago)
This IP was involved in an brute force and password spray attack on 2025/11/02 06:49:07
Port Scan
Brute-Force
Exploited Host
Web App Attack