๐ฉ๐ช
FeG Deutschland
2026-08-31 22:37:44
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-23 00:28:14
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 193.42.245.224 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 193.42.245.224 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 20:28:08.233512 2026] [security2:error] [pid 1840999:tid 1840999] [client 193.42.245.224:64461] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Kristin/Thumbs.db"] [unique_id "amFgGC39F8D6tMuBL4kk6QAAABg"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Kristin/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Jochen Pretli
2026-07-01 22:29:15
(2 months ago)
connection to honeypot
Email Spam
Port Scan
๐บ๐ธ
TPI-Abuse
2026-06-14 18:46:45
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 193.42.245.224 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 193.42.245.224 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 14:46:39.958263 2026] [security2:error] [pid 15418:tid 15418] [client 193.42.245.224:15113] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||norun.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "norun.net"] [uri "/wp-json/wp/v2/users"] [unique_id "ai73D5ZCJ6RoterOyc5H_QAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 09:00:36
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 193.42.245.224 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 193.42.245.224 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 05:00:27.967424 2026] [security2:error] [pid 22075:tid 22075] [client 193.42.245.224:55481] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Horizon II/Stargo Black/originals/Thumbs.db"] [unique_id "ah_tK-puXWJB0fx_A3CAKQAAAAo"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Horizon%20II/Stargo%20Black/originals/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
hermawan
2026-06-02 02:16:43
(3 months ago)
1780366592.966113 193.42.245.224 103.166.156.58 46720_2-4-8-1-3_1460_11 2026-06-02 09:16:32 WIB
...
Email Spam
Hacking
๐ฉ๐ช
HandyTreff.de
2026-05-24 20:52:59
(3 months ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -57.608 (Bad < -10 / Very Bad < -20 ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -57.608 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/116.0.63.197
show less
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-20 16:43:16
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 193.42.245.224 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 193.42.245.224 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 12:43:09.244917 2026] [security2:error] [pid 4457:tid 4457] [client 193.42.245.224:12741] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "casadelsolmexico.net"] [uri "/wp-config.php~"] [unique_id "ag3knbQC01I0jVlDNaASfgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 13:01:23
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 193.42.245.224 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 193.42.245.224 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 09:01:17.549114 2026] [security2:error] [pid 14200:tid 14200] [client 193.42.245.224:48395] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hotelausland.com"] [uri "/wp-config.php~"] [unique_id "ag2wnZaugXRsmnBzXJCTxAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-05-18 00:16:19
(3 months ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐บ๐ธ
mnsf
2026-05-15 15:05:52
(3 months ago)
Scanning/Probing (24)
Brute-Force
Web App Attack
๐จ๐ญ
4server
2026-04-30 20:10:48
(4 months ago)
[ThuApr3022:10:42.1682022026][security2:error][pid4107206:tid4107984][client193.42.245.224:0]ModSecu ...
show more
[ThuApr3022:10:42.1682022026][security2:error][pid4107206:tid4107984][client193.42.245.224:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".hg\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"mondo-it.ch\"][uri\"/.hg/store/00manifest.i\"][unique_id\"afO3QpbaoKfgp5qd3XlOFgAAAFM\"]
show less
Hacking
Web App Attack
๐จ๐ญ
backslash
2026-03-26 12:33:00
(5 months ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-03-14 10:16:47
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 193.42.245.224 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 193.42.245.224 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 14 06:16:38.603933 2026] [security2:error] [pid 15866:tid 15866] [client 193.42.245.224:62511] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Barclay/Thumbs.db"] [unique_id "abU1hstjyrzHKgjy0jhengAAAAc"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Barclay/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-01-02 12:20:08
(8 months ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot