๐ซ๐ฎ
JRID
2026-09-20 12:21:12
(12 hours ago)
Detected by CrowdSec + Suricata IDS: automated attack/scan against web servers.
Brute-Force
Web App Attack
๐ซ๐ฎ
JRID
2026-09-19 12:20:11
(1 day ago)
Detected by CrowdSec + Suricata IDS: automated attack/scan against web servers.
Brute-Force
Web App Attack
๐ซ๐ฎ
JRID
2026-09-18 11:50:10
(2 days ago)
Detected by CrowdSec + Suricata IDS: automated attack/scan against web servers.
Brute-Force
Web App Attack
๐ซ๐ฎ
JRID
2026-09-17 11:50:02
(3 days ago)
Detected by CrowdSec + Suricata IDS: automated attack/scan against web servers.
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-09-17 00:27:00
(4 days ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 178.128.115.179 (SG/Singapore/-): 1 i ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 178.128.115.179 (SG/Singapore/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2024-01-02 09:20:15
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 178.128.115.179 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 178.128.115.179 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 02 04:20:09.451259 2024] [security2:error] [pid 31916] [client 178.128.115.179:59457] [client 178.128.115.179] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||gslandservices.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "gslandservices.com"] [uri "/slideshow-gallery.php.bak"] [unique_id "ZZPVSQ1kT2wSKZ293z-mLQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Mediashaker
2024-01-02 07:17:16
(2 years ago)
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 178.128.115.179 (SG/Sing ...
show more
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 178.128.115.179 (SG/Singapore/-)
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2024-01-02 03:19:27
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 178.128.115.179 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 178.128.115.179 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 01 22:19:20.731565 2024] [security2:error] [pid 1907] [client 178.128.115.179:62448] [client 178.128.115.179] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||grainavi.com.menagri.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "grainavi.com.menagri.com"] [uri "/slideshow-gallery.php.bak"] [unique_id "ZZOAuJ5sLMYWyj6F22FXqAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-01 21:31:51
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 178.128.115.179 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 178.128.115.179 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 01 16:31:46.705582 2024] [security2:error] [pid 13120] [client 178.128.115.179:54244] [client 178.128.115.179] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||casalaaldehuela.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "casalaaldehuela.com"] [uri "/slideshow-gallery.php.bak"] [unique_id "ZZMvQiMvDkl66W4NHd0-ewAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-01 16:20:43
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 178.128.115.179 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 178.128.115.179 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 01 11:20:36.353845 2024] [security2:error] [pid 2061] [client 178.128.115.179:61923] [client 178.128.115.179] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||amazingerection.amazingwelding.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "amazingerection.amazingwelding.com"] [uri "/slideshow-gallery.php.bak"] [unique_id "ZZLmVHWX3GmA4gJfDgqTgAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2024-01-01 16:08:16
(2 years ago)
Scanning/Probing (61)
Request Overload (2118)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-01 15:23:15
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 178.128.115.179 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 178.128.115.179 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 01 10:23:08.294702 2024] [security2:error] [pid 864] [client 178.128.115.179:50890] [client 178.128.115.179] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||streaklesstoiletpaper.banis-associates.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "streaklesstoiletpaper.banis-associates.com"] [uri "/slideshow-gallery.php.bak"] [unique_id "ZZLY3EikEyVKJyTjgUpRYgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-01-01 12:30:02
(2 years ago)
| Suspicious URL access.
Hacking
SQL Injection
Web App Attack