๐ซ๐ท
tecnicorioja
2026-05-16 22:00:51
(1 month ago)
wp-login attack [16/May/2026:22:58:32
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-15 03:52:47
(1 month ago)
(mod_security) mod_security (id:218580) triggered by 193.202.8.134 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:218580) triggered by 193.202.8.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 14 23:52:40.530785 2026] [security2:error] [pid 26813:tid 26813] [client 193.202.8.134:24155] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:\\\\/\\\\*[!+](?:[\\\\w\\\\s=_\\\\-()]+)?\\\\*\\\\/)" at ARGS:calendar. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/22_SQL_SQLi.conf"] [line "76"] [id "218580"] [rev "1"] [msg "COMODO WAF: MySQL in-line comment detected.||www.3905ccn.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "SQLi"] [hostname "www.3905ccn.org"] [uri "/maintNetInstance.php"] [unique_id "agaYiHtGFJ__RUzsZMRWdQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-05-10 06:40:26
(1 month ago)
IM360 WAF: Possible SQL injection attack MV:ASC' AND AND%0D10825%02IN%0D(SELECT%03(%27~%27+(SELECT%0 ...
show more
IM360 WAF: Possible SQL injection attack MV:ASC' AND AND%0D10825%02IN%0D(SELECT%03(%27~%27+(SELECT%02(CASE%03WHEN%01(10825=10825)%0BTHEN%01%271%27%08ELSE%0E%270%27%0AEND))+%27~%27))-- -
show less
SQL Injection
๐ฎ๐น
VHosting
2026-03-26 19:57:14
(2 months ago)
Detected attack and reported by a human
Brute-Force
Web App Attack
SSH
DDoS Attack
Exploited Host
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-01-01 05:22:20
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 193.202.8.134 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 193.202.8.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 01 00:22:13.174223 2026] [security2:error] [pid 13433:tid 13433] [client 193.202.8.134:52377] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jolankagroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jolankagroup.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aVYEhYYcvIi5pxAT9W_klgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
ipblock.com
2025-12-24 12:37:00
(5 months ago)
IPBlock protected site ID [669-fx].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-09-15 23:54:38
(9 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐บ๐ธ
TPI-Abuse
2025-03-09 23:23:37
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 193.202.8.134 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 193.202.8.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 09 19:23:32.992699 2025] [security2:error] [pid 7342:tid 7342] [client 193.202.8.134:52261] [client 193.202.8.134] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "moonfest.fatlandtheplay.com"] [uri "/.env"] [unique_id "Z84i9DVbxo6hclPOLsathAAAAAE"], referer: https://tasamm.com/about/mmm185.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-04 05:32:01
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 193.202.8.134 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 193.202.8.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 04 00:31:54.216078 2025] [security2:error] [pid 20298:tid 20298] [client 193.202.8.134:51089] [client 193.202.8.134] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hopeforthefuture.africa.symbarenewables.com"] [uri "/.env"] [unique_id "Z8aQSoKZQ8DfoLfT416KAwAAAAI"], referer: https://tasamm.com/about/ggg108.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
rafix
2023-11-01 00:26:16
(2 years ago)
Scrapping website, using diffrent useragents, not wait for response, #botnet20231026
DDoS Attack
Bad Web Bot
๐ฉ๐ช
SCHAPPY
2023-07-26 14:29:39
(2 years ago)
IP was involved in L7 DDoS attack.
DDoS Attack
๐จ๐ญ
backslash
2021-02-04 08:43:22
(5 years ago)
Brute-Force