๐ท๐บ
DZBOT
2026-06-25 02:57:51
(2 days ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-06 22:00:18
(2 weeks ago)
Auto-ban: >3000 req/min op 2026-06-06
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-05 04:39:58
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.228 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 00:39:52.140167 2026] [security2:error] [pid 22916:tid 22916] [client 162.158.111.228:10992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lonb.org"] [uri "/.git/config"] [unique_id "aiJTGOl8bddvF1KK3gdntQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-05-31 13:37:37
(3 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 00:22:48
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 162.158.111.228 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.111.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 20:22:40.512387 2026] [security2:error] [pid 4986:tid 4986] [client 162.158.111.228:13683] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.eventosprueba.gabosoftware.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.eventosprueba.gabosoftware.com"] [uri "/db_backup.sql"] [unique_id "ahY5UBtLG4QUZniilF4z3gAAAAM"], referer: https://www.google.com/search?q=www.eventosprueba.gabosoftware.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
F242
2026-05-15 01:48:02
(1 month ago)
Wordpress Login or XMLRPC abuse
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-05-12 23:35:45
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 09:15:21
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.228 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 05:15:17.245221 2026] [security2:error] [pid 13568:tid 13568] [client 162.158.111.228:12382] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.gracebaptisthartsville.com"] [uri "/.git/config"] [unique_id "afMdpVwzdXcT5ngpE-u6UgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 08:23:35
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.228 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 04:23:28.419789 2026] [security2:error] [pid 15966:tid 15966] [client 162.158.111.228:13093] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.broneksuchanek.com"] [uri "/.git/config"] [unique_id "afMRgNUi2hiiQXlWZjGNGQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WellSpring
2026-04-29 12:57:32
(1 month ago)
wordpress scan on freeicecubes.org/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security ...
show more
wordpress scan on freeicecubes.org/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security layer
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-25 04:45:20
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.228 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 25 00:45:14.126437 2026] [security2:error] [pid 16980:tid 16980] [client 162.158.111.228:12734] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "frankklimas.com"] [uri "/.git/config"] [unique_id "aexG2rsRQjyeIQnYKbALLgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Sรฉfora Srl
2026-04-22 14:01:57
(2 months ago)
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache ...
show more
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache-badbot jail
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-08 21:57:06
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.228 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 17:57:00.834933 2026] [security2:error] [pid 1667231:tid 1667248] [client 162.158.111.228:9262] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.howiek.com"] [uri "/.git/index"] [unique_id "adbPLAymIIAn6NWMERVLIQAAAUs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 14:41:30
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.228 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 10:41:24.321233 2026] [security2:error] [pid 2272608:tid 2272608] [client 162.158.111.228:11559] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.lamineparke.com"] [uri "/.git/config"] [unique_id "adZpFF5hhg6vIZoHnlpT9AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 14:30:41
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.228 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 10:30:36.312756 2026] [security2:error] [pid 328020:tid 328024] [client 162.158.111.228:12597] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.rosicruciansociety.com"] [uri "/.git/config"] [unique_id "adPDjCUwjMx0BQ62MFzCbwAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack