๐บ๐ธ
TPI-Abuse
2026-06-04 12:38:10
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 185.132.187.129 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 185.132.187.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 08:38:05.961052 2026] [security2:error] [pid 24692:tid 24692] [client 185.132.187.129:24005] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stitchguild.com"] [uri "/.git/HEAD"] [unique_id "aiFxraypEGNbWsfiSMHtngAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-04 10:06:54
(2 weeks ago)
Abuse Detected (4)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 09:30:24
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 185.132.187.129 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 185.132.187.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 05:30:16.757183 2026] [security2:error] [pid 27474:tid 27474] [client 185.132.187.129:54271] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nhgrange.org"] [uri "/.git/config"] [unique_id "aiFFqIuvK7__iSImqr7nawAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 07:43:54
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 185.132.187.129 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 185.132.187.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 03:43:47.657031 2026] [security2:error] [pid 28971:tid 28971] [client 185.132.187.129:33609] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jetzilla.com"] [uri "/.git/HEAD"] [unique_id "aiEss41rk-W5bSvvr1xK4wAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 07:08:12
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 185.132.187.129 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 185.132.187.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 03:08:05.206525 2026] [security2:error] [pid 17313:tid 17313] [client 185.132.187.129:55533] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vendor21.com"] [uri "/.git/"] [unique_id "aiEkVRjMLQeFXxXiVIc8wQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
Tokolosh Hunters
2026-04-30 03:17:42
(1 month ago)
AutoBlockWindow-Known bad useragent query-2026-04-30 03:17:41
Bad Web Bot
๐บ๐ธ
mnsf
2026-04-29 18:05:25
(1 month ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
๐บ๐ธ
nyt
2026-04-29 16:57:43
(1 month ago)
404 flood (16/60s), 404 flood (17/60s)
Bad Web Bot
Web App Attack
๐ธ๐ช
www.remote24.se
2026-04-15 20:11:39
(2 months ago)
3389BruteforceStormFW22
Brute-Force
๐จ๐ญ
backslash
2026-04-03 13:33:01
(2 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐บ๐ฆ
URAN Publishing Service
2026-03-25 00:55:37
(2 months ago)
185.132.187.129 - - [25/Mar/2026:02:55:36 +0200] "GET //wp-content/plugins/WPManager/up.php HTTP/1.1 ...
show more
185.132.187.129 - - [25/Mar/2026:02:55:36 +0200] "GET //wp-content/plugins/WPManager/up.php HTTP/1.1" 404 272 "-" "Go-http-client/1.1"
185.132.187.129 - - [25/Mar/2026:02:55:37 +0200] "GET //wp-content/themes/builder-and-developer/inc/tgm/error.php HTTP/1.1" 404 272 "-" "Go-http-client/1.1"
...
show less
Web App Attack
๐บ๐ธ
Penny Packer
2026-03-19 03:51:15
(3 months ago)
Fail2Ban apache-tripwires
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-14 15:43:00
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 185.132.187.129 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 185.132.187.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 14 11:42:52.075638 2026] [security2:error] [pid 5604:tid 5604] [client 185.132.187.129:55985] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||barnesandbrower.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "barnesandbrower.com"] [uri "/restore/www.sql"] [unique_id "abWB_MyzY7hy8HcZtbFliQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐พ
armandosaucedo.me
2026-03-10 00:43:02
(3 months ago)
185.132.187.129 - - [10/Mar/2026:00:42:34 +0000] "GET /back/directory.rar HTTP/1.1" 404 196 "-" "-"
Web App Attack
๐ซ๐ท
Octopuce
2026-03-07 23:11:14
(3 months ago)
Aggressive web search of vulnerable pages: /wp-content/plugins/dzs-zoomsounds/1877.php /wp-content/p ...
show more
Aggressive web search of vulnerable pages: /wp-content/plugins/dzs-zoomsounds/1877.php /wp-content/plugins/core-plugin/include.php /wp-content/ ...
show less
Web App Attack