Anonymous
2026-09-05 22:07:24
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ง๐ฌ
Stoyko Stoykov
2026-09-04 23:43:55
(2 days ago)
108.162.241.93 - - [05/Sep/2026:02:43:54 +0300] "GET /.vscode/sftp.json HTTP/1.1" 301 162 "-" "Mozil ...
show more
108.162.241.93 - - [05/Sep/2026:02:43:54 +0300] "GET /.vscode/sftp.json HTTP/1.1" 301 162 "-" "Mozilla/5.0 (l9scan/2.0.33e27393e2431313e2838313; +https://leakix.net)"
...
show less
Hacking
Web App Attack
๐ง๐ช
madeit
2026-09-03 23:23:01
(3 days ago)
Web App Attack
Anonymous
2026-09-02 05:24:36
(5 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
jbettigole
2026-08-29 06:29:17
(1 week ago)
MikroTik RouterOS: repeated connection attempts against non-public admin/service ports (SSH/Telnet/F ...
show more
MikroTik RouterOS: repeated connection attempts against non-public admin/service ports (SSH/Telnet/FTP/Winbox/API/WWW) triggering escalating 5m/15m/1h/1d blacklist
show less
Brute-Force
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-27 09:53:50
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 108.162.241.93 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 108.162.241.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 05:53:43.385760 2026] [security2:error] [pid 24074:tid 24074] [client 108.162.241.93:9225] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.genesis7.co"] [uri "/.git/config"] [unique_id "apAJJ80oq6ibQCN3IljlXQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 20:44:44
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 108.162.241.93 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 108.162.241.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 16:44:39.285533 2026] [security2:error] [pid 11396:tid 11396] [client 108.162.241.93:11832] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.portelizabeth.jbaycabs.com"] [uri "/.git/config"] [unique_id "ao3-tw-3gEVhqy53lQK9yAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 11:12:51
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 108.162.241.93 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 108.162.241.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 07:12:42.613582 2026] [security2:error] [pid 11449:tid 11461] [client 108.162.241.93:12381] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wallstreetglobe.com"] [uri "/.git/config"] [unique_id "ao14qlNSxEXpmTG2OAYjRgAAAUk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-19 04:46:03
(2 weeks ago)
Web App Attack
๐บ๐ธ
mawan
2026-07-07 11:24:58
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-28 05:47:05
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 108.162.241.93 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 108.162.241.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 01:46:58.243169 2026] [security2:error] [pid 20960:tid 20960] [client 108.162.241.93:12189] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.pscc.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.pscc.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "akC1UoOk4WHIwmMqFwPGMQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-10 08:06:59
(2 months ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 00:37:33
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 108.162.241.93 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 108.162.241.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 20:37:19.369185 2026] [security2:error] [pid 12133:tid 12242] [client 108.162.241.93:10253] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.dbestcarting.com|F|2"] [data "[email protected] "] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.dbestcarting.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "ah4lv2zBGZ-vdgYExPGP_gAAANc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
oncord
2026-05-08 02:12:14
(3 months ago)
Form spam
Web Spam
๐จ๐ฆ
yukon.ca
2026-04-15 09:13:17
(4 months ago)
Web Server Enforcement Violation: HTTP Webshells Activity
Port:80
Hacking
Exploited Host