๐ง๐ช
taivas.nl
2026-08-31 04:33:32
(1 day ago)
Many_bad_calls
Web App Attack
๐ง๐ช
taivas.nl
2026-08-30 09:02:12
(2 days ago)
Bad_requests
Bad Web Bot
๐ซ๐ฎ
paissangroup
2026-08-26 06:28:15
(6 days ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
fbarela
2026-08-24 04:00:17
(1 week ago)
FortiGate SSL VPN login failures.
Brute-Force
Hacking
Anonymous
2026-06-17 07:20:19
(2 months ago)
Web attack blocked by Wordfence on kernoverlegsibbe-ijzeren.nl (1 hit). Reported by CRMON.
Web App Attack
๐ฉ๐ช
LRob
2026-06-12 02:30:24
(2 months ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-11 15:56:56
(2 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
4server
2026-04-21 05:32:41
(4 months ago)
[TueApr2107:32:39.1315332026][security2:error][pid2446016:tid2446042][client104.207.35.115:0]ModSecu ...
show more
[TueApr2107:32:39.1315332026][security2:error][pid2446016:tid2446042][client104.207.35.115:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"casacarmen.ch\"][uri\"/db.sql\"][unique_id\"aecL9wWD-hB32GSVd3CW8gAAANc\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ช๐ธ
librebit
2026-04-20 15:47:12
(4 months ago)
Brute force
Brute-Force
๐ฉ๐ช
HERA - Operations
2026-04-20 15:35:00
(4 months ago)
bau-arge - searching for vulnerable scripts: database.sql 2026/04/20 17:35:00
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-02 21:54:03
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.115 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 02 16:53:45.067619 2026] [security2:error] [pid 31996:tid 31996] [client 104.207.35.115:47165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.landtug.modeltdr.com"] [uri "/.svn/wc.db"] [unique_id "aaYG6Qe5gh4_-fkigReilgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-02-28 21:51:51
(6 months ago)
"GET /.aws/credentials HTTP/1.1"
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-25 04:27:18
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 104.207.35.115 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 104.207.35.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 24 23:27:15.690048 2025] [security2:error] [pid 22967:tid 22967] [client 104.207.35.115:16675] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.phantomkennels.com|F|2"] [data "[email protected] "] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.phantomkennels.com"] [uri "/[email protected] "] [unique_id "aUy9IxJGxDfmKqH6iURswAAAAAI"], referer: https://www.phantomkennels.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2025-11-26 19:50:06
(9 months ago)
Attempted access to sensitive endpoint (/.svn/wc.db) detected. Automated scan or unauthorized probin ...
show more
Attempted access to sensitive endpoint (/.svn/wc.db) detected. Automated scan or unauthorized probing.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 06:28:00
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.115 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:27:53.695028 2025] [security2:error] [pid 19176:tid 19176] [client 104.207.35.115:44145] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.theprairiejewel.com"] [uri "/.git/HEAD"] [unique_id "aSVMaVsCgrEYpUyy9hWHKAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack