Anonymous
2026-06-04 09:46:37
(2 hours ago)
Failed Wordpress Logins
Web App Attack
๐ฟ๐ฆ
slartybartfast69420blazit
2026-06-03 20:02:36
(16 hours ago)
Fail2ban picked up 108.59.12.41 attacking nginx
Web App Attack
Anonymous
2026-06-03 00:00:19
(1 day ago)
Failed Wordpress Logins
Web App Attack
๐ฟ๐ฆ
slartybartfast69420blazit
2026-06-01 20:02:40
(2 days ago)
Fail2ban picked up 108.59.12.41 attacking nginx
Web App Attack
๐ซ๐ท
DUBREUIL
2026-05-31 21:11:00
(3 days ago)
Tor exit
Fake customer
As always with leaseweb
DDoS Attack
Open Proxy
Port Scan
Brute-Force
Web App Attack
SSH
Hacking
SQL Injection
๐บ๐ธ
mnsf
2026-05-31 09:05:25
(4 days ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ฟ๐ฆ
slartybartfast69420blazit
2026-05-30 20:23:58
(4 days ago)
Fail2ban picked up 108.59.12.41 attacking nginx
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-30 16:49:37
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 108.59.12.41 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 108.59.12.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 30 12:49:32.607740 2026] [security2:error] [pid 5949:tid 5949] [client 108.59.12.41:36736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.mininoarg.com"] [uri "/.git/config"] [unique_id "ahsVHE746kPB4Qp2BEZCywAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
slartybartfast69420blazit
2026-05-29 20:19:47
(5 days ago)
Fail2ban picked up 108.59.12.41 attacking nginx
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 12:07:46
(5 days ago)
(mod_security) mod_security (id:210730) triggered by 108.59.12.41 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 108.59.12.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 29 08:07:40.501981 2026] [security2:error] [pid 23340:tid 23452] [client 108.59.12.41:39124] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||somerwiseman.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "somerwiseman.com"] [uri "/dump.sql"] [unique_id "ahmBjJdx-G-Rzif4vGwtqQAAAc8"], referer: somerwiseman.com/dump.sql
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 09:41:21
(6 days ago)
(mod_security) mod_security (id:210730) triggered by 108.59.12.41 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 108.59.12.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 29 05:41:13.252866 2026] [security2:error] [pid 29568:tid 29568] [client 108.59.12.41:45090] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||carmensaundersrussell.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "carmensaundersrussell.com"] [uri "/dump.sql"] [unique_id "ahlfOW6pyCenqkKWovr3WAAAAAk"], referer: carmensaundersrussell.com/dump.sql
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-28 23:37:00
(6 days ago)
(mod_security) mod_security (id:210730) triggered by 108.59.12.41 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 108.59.12.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 28 19:36:53.362014 2026] [security2:error] [pid 31483:tid 31483] [client 108.59.12.41:53910] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||aemcmullin.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "aemcmullin.com"] [uri "/dump.sql"] [unique_id "ahjRlZd1UdkwP-rvat0iEwAAAAA"], referer: aemcmullin.com/dump.sql
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
slartybartfast69420blazit
2026-05-28 20:16:10
(6 days ago)
Fail2ban picked up 108.59.12.41 attacking nginx
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-05-28 15:47:58
(6 days ago)
Try to access /xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 22:53:17
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 108.59.12.41 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 108.59.12.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 18:53:12.794734 2026] [security2:error] [pid 3545:tid 3545] [client 108.59.12.41:34420] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||dkdesign.click|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "dkdesign.click"] [uri "/dump.sql"] [unique_id "ahd12CqHsA_FjtM_e_oKgQAAAAU"], referer: dkdesign.click/dump.sql
show less
Brute-Force
Bad Web Bot
Web App Attack