Anonymous
2026-01-09 12:09:02
(5 months ago)
Malicious activity detected
Hacking
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 14:01:40
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐ฉ๐ช
HandyTreff.de
2025-12-19 12:52:56
(5 months ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -49.48 (Bad < -10 / Very Bad < -20 / ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -49.48 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Sa
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
Swiptly
2025-11-25 20:50:52
(6 months ago)
Bot scanning for environment files .env .env/\*
...
Web App Attack
๐ซ๐ฎ
Shaik Sai Meera
2025-11-25 18:20:06
(6 months ago)
IM360 WAF: Hidden file access
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-11-25 07:33:25
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.89 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.89 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 02:33:22.219397 2025] [security2:error] [pid 976549:tid 976549] [client 104.207.37.89:43187] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fibw.com"] [uri "/.git/HEAD"] [unique_id "aSVbwgDO94_8KKEm2eXyiwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 06:28:22
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.89 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.89 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:28:15.348776 2025] [security2:error] [pid 8678:tid 8678] [client 104.207.37.89:52387] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.liftreading.com"] [uri "/.svn/wc.db"] [unique_id "aSVMfzeOKmULIEdSTtFAggAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:24:30
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.89 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.89 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:24:27.893719 2025] [security2:error] [pid 29476:tid 29476] [client 104.207.37.89:14759] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "savingspools.savingshvac.com"] [uri "/.svn/wc.db"] [unique_id "aSUve8T7xgN31TdfwqrANAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:41:58
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.89 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.89 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:41:54.532751 2025] [security2:error] [pid 625:tid 625] [client 104.207.37.89:38809] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.africanwisdominimageandproverb.com"] [uri "/.env"] [unique_id "aSUlgm66dmIltbASAySMRQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:27:28
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.89 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.89 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:27:21.094609 2025] [security2:error] [pid 21115:tid 21115] [client 104.207.37.89:31275] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.fsbmens.com"] [uri "/.git/HEAD"] [unique_id "aSUF-SWRYjDIkNKT8WfhCQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-14 13:11:00
(7 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
๐บ๐ธ
octageeks.com
2025-10-18 04:07:25
(7 months ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐จ๐ฆ
wil.com
2025-10-17 11:14:31
(7 months ago)
GlobalProtect login attempts with user wkoritzer.
VPN IP
Brute-Force
Anonymous
2025-10-14 10:17:56
(8 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.10.14 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.10.14 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-10-07 13:00:18
(8 months ago)
Attempted brute force login to web vpn 3 time(s); last attempt for 2025.10.07 is noted in report tim ...
show more
Attempted brute force login to web vpn 3 time(s); last attempt for 2025.10.07 is noted in report timestamp
show less
Hacking
Brute-Force