Anonymous
2026-07-24 11:46:49
(1 week ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
Anonymous
2026-07-12 06:36:36
(2 weeks ago)
Aggressive web scan
Web App Attack
๐ท๐บ
DZBOT
2026-06-22 01:53:26
(1 month ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-06-21 04:12:12
(1 month ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐น๐ท
Mmm Gun
2026-06-11 17:46:00
(1 month ago)
Attack Hits
SERVER-WEBAPP /etc/passwd file access attempt 3316
SQL use of sleep function with sele ...
show more
Attack Hits
SERVER-WEBAPP /etc/passwd file access attempt 3316
SQL use of sleep function with select - likely SQL inj 1958
SERVER-OTHER Ghost CMS static-theme.js CVE-2023-32235 Path Traversal 828
SERVER-OTHER Multiple products UNIX platform backslash dir traversal attempt 519
SERVER-APACHE Apache Tomcat AllowLinking URIencoding CVE-2008-2938 dir Traversal Attempt 378
SQL url ending in comment char - possible sql injection attempt 305
SERVER-WEBAPP SolarWinds Storage Manager dir traversal attempt 259
SERVER-OTHER Zimbra XML External Entity Info Disclosure 164
61071 VID22518 Exe File download over HTTP from dotted-quad Host 155
SERVER-WEBAPP TVT NVMS-1000 CVE-2019-20085 dir Traversal 104
SERVER-ORACLE Oracle MySQL sql_auth Integer Overflow 27
show less
Web App Attack
๐บ๐ธ
mnsf
2026-06-06 10:05:07
(1 month ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐จ๐ญ
TheCoon
2026-06-06 07:45:01
(1 month ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-03 22:40:29
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.68.192.202 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.192.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 18:40:22.815425 2026] [security2:error] [pid 32232:tid 32232] [client 172.68.192.202:9246] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "asiaan.net"] [uri "/.git/config"] [unique_id "aiCtVnOFKHCczxIAT4-_BQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-02 17:05:37
(1 month ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ณ๐ฑ
COMPLEX
2026-05-27 01:06:59
(2 months ago)
Unsolicited TCP traffic | Action: DROP | Port 443
Phishing
Anonymous
2026-05-25 02:04:36
(2 months ago)
Aggressive web scan
Web App Attack
๐ท๐บ
DZBOT
2026-05-20 18:49:14
(2 months ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 09:35:57
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.68.192.202 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.192.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 05:35:50.318277 2026] [security2:error] [pid 27769:tid 27769] [client 172.68.192.202:10687] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bernsteinip.com"] [uri "/.git/config"] [unique_id "ag2AdhzWpsxYH4_a8sALwwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-10 18:59:49
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 172.68.192.202 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 172.68.192.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 10 14:59:41.027492 2026] [security2:error] [pid 20581:tid 20581] [client 172.68.192.202:9801] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||antcanada.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "antcanada.com"] [uri "/backup.sql"] [unique_id "agDVndSbI1KGChJt4u6sGwAAAAE"], referer: https://www.google.com/search?q=antcanada.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 16:59:07
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.68.192.202 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.192.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 12:59:02.634690 2026] [security2:error] [pid 32107:tid 32107] [client 172.68.192.202:11086] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stortfordmedical.com"] [uri "/.git/config"] [unique_id "af4WVjBQSeKLUhz2XHi2nQAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack