๐ฑ๐ป
garmtech.com
2026-05-10 17:41:07
(4 weeks ago)
IM360 WAF: Possible SQL injection attack MV:ASCand/**/4720=(SeLeCT/**/UppEr(xmlTyPe(chR(60)
SQL Injection
Anonymous
2026-04-20 14:17:16
(1 month ago)
140.235.2.211 - - [20/Apr/2026:14:17:14 +0000] "GET /backup.tar HTTP/1.1" 404 3563 "-" "Mozilla/5.0 ...
show more
140.235.2.211 - - [20/Apr/2026:14:17:14 +0000] "GET /backup.tar HTTP/1.1" 404 3563 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/141.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-04-11 04:28:39
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-10 11:07:19
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 140.235.2.211 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 140.235.2.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 10 07:07:11.763055 2026] [security2:error] [pid 1659600:tid 1659600] [client 140.235.2.211:28971] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||efsews.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "efsews.com"] [uri "/wp-json/wp/v2/users"] [unique_id "adjZ3_itIYeVcBNCpeAEHgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-09 14:36:40
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 140.235.2.211 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 140.235.2.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 09 10:36:29.842716 2026] [security2:error] [pid 901106:tid 901106] [client 140.235.2.211:52099] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dalessalesandservice.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dalessalesandservice.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ade5bU47j4azK22MLlQvIAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-09 13:03:21
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 140.235.2.211 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 140.235.2.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 09 09:03:10.146035 2026] [security2:error] [pid 525458:tid 525458] [client 140.235.2.211:14257] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||customhumanrobots.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "customhumanrobots.com"] [uri "/wp-json/wp/v2/users"] [unique_id "adejjiozBnmUOdsMPTo3rQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 19:07:24
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 140.235.2.211 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 140.235.2.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 15:07:16.804711 2026] [security2:error] [pid 1493066:tid 1493066] [client 140.235.2.211:61509] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bfpsamoa.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bfpsamoa.com"] [uri "/wp-json/wp/v2/users"] [unique_id "adVV5CyRN44rGXoy9WEssgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐น๐ท
Detmach
2026-03-30 22:40:24
(2 months ago)
Security attack detected. Multiple failed attempts from 140.235.2.211. IP banned for 1440 minutes at ...
show more
Security attack detected. Multiple failed attempts from 140.235.2.211. IP banned for 1440 minutes at 31.03.2026 01:39:48. Failed attempts: 1
show less
Brute-Force
๐ช๐ธ
el-brujo
2026-03-03 01:40:42
(3 months ago)
Cloudflare WAF: Request Path: /xmlrpc.php Request Query: Host: warzone.elhacker.net userAgent: Appl ...
show more
Cloudflare WAF: Request Path: /xmlrpc.php Request Query: Host: warzone.elhacker.net userAgent: AppleWebKit/539.39 (KHTML, like Gecko111) Action: managed_challenge Source: firewallManaged ASN Description: PUREVOLTAGE-INC - PureVoltage Hosting Inc. Country: US Method: POST Timestamp: 2026-03-03T01:40:42Z ruleId: 5de7edfa648c4d6891dc3e7f84534ffa. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ช๐ธ
el-brujo
2026-02-24 12:10:49
(3 months ago)
Cloudflare WAF: Request Path: /xmlrpc.php Request Query: Host: foro.elhacker.net userAgent: Mozilla ...
show more
Cloudflare WAF: Request Path: /xmlrpc.php Request Query: Host: foro.elhacker.net userAgent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.14; rv:145.0) Gecko/20100101 Firefox/145.0 Action: managed_challenge Source: firewallManaged ASN Description: PUREVOLTAGE-INC - PureVoltage Hosting Inc. Country: US Method: POST Timestamp: 2026-02-24T12:10:49Z ruleId: 5de7edfa648c4d6891dc3e7f84534ffa. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ณ๐ฑ
i-turnradio.nl
2026-02-24 05:55:54
(3 months ago)
2026-02-24 @ 06:55:53 (CET) ~ Blocked for trying to access: /xmlrpc.php
Web App Attack
Anonymous
2026-01-23 02:55:29
(4 months ago)
Attempted brute force login to web vpn 2 time(s); last attempt for 2026.01.23 is noted in report tim ...
show more
Attempted brute force login to web vpn 2 time(s); last attempt for 2026.01.23 is noted in report timestamp
show less
Hacking
Brute-Force
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 14:01:21
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐บ๐ธ
inspectorgdgt
2025-12-18 01:06:06
(5 months ago)
Failed login invalid user bruteforce attempt
Brute-Force
SSH
๐ฑ๐ป
garmtech.com
2025-12-01 19:36:46
(6 months ago)
IM360 WAF: Attempt to upload malware
Hacking