๐ช๐ธ
librebit
2026-09-22 09:22:49
(1 day ago)
RDWeb scan
Web App Attack
Anonymous
2026-09-21 23:55:36
(1 day ago)
Multiple failed login attemps RDS-Web-Access-Server
Brute-Force
Web App Attack
๐ช๐ธ
librebit
2026-09-20 03:23:21
(3 days ago)
RDWeb scan
Web App Attack
๐ช๐ธ
librebit
2026-09-10 05:18:52
(1 week ago)
RDWeb scan
Web App Attack
๐ช๐ธ
librebit
2026-09-02 11:39:42
(3 weeks ago)
RDWeb scan
Web App Attack
Anonymous
2026-07-10 22:26:13
(2 months ago)
[osotir.org] httpd-login-spray-site: sites=www.synathlountes.agonistes.gr; logs=/var/log/httpd/domai ...
show more
[osotir.org] httpd-login-spray-site: sites=www.synathlountes.agonistes.gr; logs=/var/log/httpd/domains/agonistes.gr.synathlountes.log; samples=site_wide=true | distinct_ips=25 | /wp-login.php
show less
Hacking
Web App Attack
๐จ๐ญ
backslash
2026-07-01 09:57:00
(2 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐ช๐ธ
masterguru
2026-06-30 15:22:34
(2 months ago)
xmlrpc request blocked, no referer. Pattern match "xmlrpc.php" at REQUEST_URI. (5000900-122)
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-15 17:28:32
(10 months ago)
(mod_security) mod_security (id:210350) triggered by 185.61.222.88 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 185.61.222.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 15 12:28:24.998594 2025] [security2:error] [pid 23975:tid 23975] [client 185.61.222.88:58121] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||pyxelstudios.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "pyxelstudios.com"] [uri "/"] [unique_id "aRi4ONLH4kuHcT5lfwLH7QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-12 06:20:52
(10 months ago)
(mod_security) mod_security (id:210350) triggered by 185.61.222.88 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 185.61.222.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 12 01:20:49.023174 2025] [security2:error] [pid 26879:tid 26879] [client 185.61.222.88:47443] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||rimbey.us|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "rimbey.us"] [uri "/"] [unique_id "aRQnQVGoFMP76TQcS-tuTQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-04-18 19:50:56
(1 year ago)
WP Login Scan Activities
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-08 04:20:36
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 185.61.222.88 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 185.61.222.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 07 23:20:31.064775 2025] [security2:error] [pid 981428:tid 981428] [client 185.61.222.88:39563] [client 185.61.222.88] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kreechers.com.nixonpublishing.com"] [uri "/.env"] [unique_id "Z8vFj6GNrunhRZMKD3JCagAAABA"], referer: https://tasamm.com/about/ggg237.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-18 11:22:57
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 185.61.222.88 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 185.61.222.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 18 06:22:49.608180 2025] [security2:error] [pid 28655:tid 28669] [client 185.61.222.88:32001] [client 185.61.222.88] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "certifiedecommerceconsultant.com.aafm.us"] [uri "/.env"] [unique_id "Z7Rtia9nea_4Udo2gdgkHwAAAEw"], referer: https://tasamm.com/about/ccc30.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2025-02-10 10:40:13
(1 year ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐ฉ๐ช
Bedios GmbH
2025-02-10 10:27:08
(1 year ago)
Wordpress hacking attempt
Web App Attack