Anonymous
2026-09-05 18:47:57
(2 days ago)
Multiple failed login attemps RDS-Web-Access-Server
Brute-Force
Web App Attack
🇪🇸
librebit
2026-09-02 08:06:28
(6 days ago)
Brute force
Brute-Force
🇫🇷
claude CALVET
2026-08-26 13:05:37
(1 week ago)
gee-Joomla Admin : try to force the door...
Hacking
🇫🇷
claude CALVET
2026-08-19 18:42:24
(2 weeks ago)
gee-Joomla Admin : try to force the door...
Hacking
🇺🇸
nationaleventpros.com
2026-08-17 03:22:49
(3 weeks ago)
WordPress login attempt
Brute-Force
🇺🇸
rsiddall
2026-07-22 19:14:39
(1 month ago)
193.202.9.216 - - [22/Jul/2026:15:14:32 -0400] "POST /xmlrpc.php HTTP/1.1" 403 1809 "-" "Apache-Http ...
show more
193.202.9.216 - - [22/Jul/2026:15:14:32 -0400] "POST /xmlrpc.php HTTP/1.1" 403 1809 "-" "Apache-HttpClient/4.5.13 (Java/11.0.31)"
193.202.9.216 - - [22/Jul/2026:15:14:38 -0400] "POST /xmlrpc.php HTTP/1.1" 403 1809 "-" "Apache-HttpClient/4.5.13 (Java/11.0.31)"
...
show less
Brute-Force
🇺🇸
TPI-Abuse
2026-05-07 20:04:43
(4 months ago)
(mod_security) mod_security (id:210350) triggered by 193.202.9.216 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 193.202.9.216 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 16:04:36.588696 2026] [security2:error] [pid 23353:tid 23353] [client 193.202.9.216:16929] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||krislajeskiedesign.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "krislajeskiedesign.com"] [uri "/"] [unique_id "afzwVBW6ZnghVEgmTzP6cgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇪🇸
el-brujo
2026-04-27 20:35:22
(4 months ago)
Cloudflare WAF: Request Path: /xmlrpc.php Request Query: Host: elhacker.net userAgent: Apache-HttpC ...
show more
Cloudflare WAF: Request Path: /xmlrpc.php Request Query: Host: elhacker.net userAgent: Apache-HttpClient/4.5.13 (Java/11.0.30) Action: managed_challenge Source: firewallManaged ASN Description: AS QualityNetwork Country: US Method: POST Timestamp: 2026-04-27T20:35:22Z ruleId: 5de7edfa648c4d6891dc3e7f84534ffa. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
🇪🇸
el-brujo
2026-04-27 20:35:19
(4 months ago)
[Mon Apr 27 22:35:18.156153 2026] [proxy_fcgi:error] [pid 2365080:tid 2365172] [remote 193.202.9.216 ...
show more
[Mon Apr 27 22:35:18.156153 2026] [proxy_fcgi:error] [pid 2365080:tid 2365172] [remote 193.202.9.216:0] AH01071: Got error 'Primary script unknown\n', referer: https://www.google.com
[Mon Apr 27 22:35:19.221237 2026] [proxy_fcgi:error] [pid 2365080:tid 2365166] [remote 193.202.9.216:0] AH01071: Got error 'Primary script unknown\n', referer: https://www.google.com
...
show less
Hacking
Web App Attack
🇺🇸
ambor
2026-03-20 17:52:59
(5 months ago)
Honeypot access: WordPress admin access attempt. Path: /wp-login.php
Brute-Force
Web App Attack
Anonymous
2026-03-18 21:30:44
(5 months ago)
FPROCO WEBEXPLOIT 193.202.9.216 (193.202.9.216)
Web App Attack
🇺🇸
oralunal
2026-03-11 15:31:58
(5 months ago)
IP banned by Fail2Ban in jail ente-suss ente.com-ssl_log mvfnds
...
Bad Web Bot
Web App Attack
🇩🇪
kjaerulff
2026-03-11 14:34:22
(5 months ago)
Failed Wordpress login using wp-login.php
Web App Attack
🇳🇱
wlt-blocker
2026-02-02 08:48:11
(7 months ago)
Unauthorized access to webpage admin
Web App Attack
🇺🇸
TPI-Abuse
2025-03-11 05:27:31
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 193.202.9.216 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 193.202.9.216 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 11 01:27:25.980600 2025] [security2:error] [pid 1439:tid 1439] [client 193.202.9.216:9971] [client 193.202.9.216] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "patchworkprose.com"] [uri "/.env"] [unique_id "Z8_Jvd6j-s_q_X7AaMzXoAAAABI"], referer: https://tasamm.com/about/ppp12.html
show less
Brute-Force
Bad Web Bot
Web App Attack