๐ง๐ช
madeit
2025-09-21 20:18:14
(11 months ago)
Web App Attack
๐ฆ๐บ
clapper
2025-09-21 18:50:10
(11 months ago)
(mod_security) mod_security (id:949110) triggered by 160.191.150.39 (BD/Bangladesh/-): 5 in the last ...
show more
(mod_security) mod_security (id:949110) triggered by 160.191.150.39 (BD/Bangladesh/-): 5 in the last 3600 secs; ID: rub
show less
Brute-Force
Bad Web Bot
๐ณ๐ฑ
Site.eu
2025-09-21 13:09:43
(11 months ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-09-20 20:49:08
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 160.191.150.39 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 160.191.150.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 20 16:49:01.226267 2025] [security2:error] [pid 22551:tid 22551] [client 160.191.150.39:39228] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||skinnywheels.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "skinnywheels.com"] [uri "/config/php.ini"] [unique_id "aM8TPShtqCVMVDwNLTDIcAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
agenciahypelab.com.br
2025-09-20 02:14:50
(11 months ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2025-09-20 02:07:40
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 160.191.150.39 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 160.191.150.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 19 22:07:33.752518 2025] [security2:error] [pid 26152:tid 26152] [client 160.191.150.39:0] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||jspsf.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "jspsf.com"] [uri "/config/php.ini"] [unique_id "aM4MZS8jbQEsp4SA-x2L1AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
exxos
2025-09-19 15:05:36
(11 months ago)
Attacks with Bad user agents
Hacking
๐ง๐ช
cmbplf
2025-09-19 11:02:04
(11 months ago)
12.326 requests in 1 hour (1w1d7hfromnow)
Brute-Force
Bad Web Bot
๐ฆ๐บ
afleventoffice.com.au
2025-09-19 06:31:17
(11 months ago)
GET / HTTP/1.1
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-19 03:01:13
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 160.191.150.39 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 160.191.150.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 18 23:01:06.517403 2025] [security2:error] [pid 15224:tid 15224] [client 160.191.150.39:0] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||ard.global|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ard.global"] [uri "/config/php.ini"] [unique_id "aMzHcpm5CZMXMFvcCwaRXgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
jigas
2025-09-19 01:59:08
(11 months ago)
Domain : apolymantiki-prostasia.gr
Rule : hack
2025-09-19 01:58:08 ***hidden-privacy*** GET /config/ ...
show more
Domain : apolymantiki-prostasia.gr
Rule : hack
2025-09-19 01:58:08 ***hidden-privacy*** GET /config/php.ini - 443 - 172.69.179.113 HTTP/2 Mozilla/5.0 (iPhone; CPU iPhone OS 18_3_2 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.3.1 Mobile/15E148 Safari/604.1 - apolymantiki-prostasia.gr 301 0 0 572 647 257 - 160.191.150.39
show less
Hacking
SQL Injection
Brute-Force
๐ซ๐ท
COMAITE
2025-09-18 22:34:57
(11 months ago)
Multiple web server 400 error codes from same source ip 160.191.150.39.
Web App Attack
๐ฎ๐น
mgarofano80
2025-09-18 22:31:27
(11 months ago)
Brute-Force
Web App Attack
๐บ๐ธ
zorrigas
2025-09-18 18:51:40
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 160.191.150.39 (BD/Bangladesh/-): 5 in the last ...
show more
(mod_security) mod_security (id:210730) triggered by 160.191.150.39 (BD/Bangladesh/-): 5 in the last 3600 secs
show less
Brute-Force
๐จ๐ฆ
Not Fake
2025-09-16 18:09:38
(11 months ago)
$f2bV_matches
Web App Attack