Anonymous
2026-05-24 12:25:03
(1 week ago)
194.99.25.89 - - [24/May/2026:12:25:02 +0000] "GET /.env.dev HTTP/1.1" 302 733 "-" "Mozilla/5.0 (Win ...
show more
194.99.25.89 - - [24/May/2026:12:25:02 +0000] "GET /.env.dev HTTP/1.1" 302 733 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/141.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-13 20:31:25
(3 weeks ago)
(mod_security) mod_security (id:211030) triggered by 194.99.25.89 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:211030) triggered by 194.99.25.89 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 13 16:31:21.224632 2026] [security2:error] [pid 26922:tid 26922] [client 194.99.25.89:11649] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at ARGS. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "17"] [id "211030"] [rev "3"] [msg "COMODO WAF: LDAP Injection Attack||www.genesis-castle.com|F|2"] [data "Matched Data: ('~'||( found within ARGS: 0"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "www.genesis-castle.com"] [uri "/gallery/index.php"] [unique_id "agTfmeMDpZkQ-vmKOfhWowAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Psycho Solutions LLC
2026-02-27 22:42:20
(3 months ago)
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-login.php - User Agent: N ...
show more
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-login.php - User Agent: N/A - Timestamp: 2/27/2026 10:42 pm (UTC-6)
show less
Web App Attack
Bad Web Bot
Web Spam
Hacking
๐ช๐ธ
el-brujo
2026-02-24 12:10:48
(3 months ago)
Cloudflare WAF: Request Path: /xmlrpc.php Request Query: Host: foro.elhacker.net userAgent: Mozilla ...
show more
Cloudflare WAF: Request Path: /xmlrpc.php Request Query: Host: foro.elhacker.net userAgent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.14; rv:145.0) Gecko/20100101 Firefox/145.0 Action: managed_challenge Source: firewallManaged ASN Description: PUREVOLTAGE-INC - PureVoltage Hosting Inc. Country: US Method: POST Timestamp: 2026-02-24T12:10:48Z ruleId: 5de7edfa648c4d6891dc3e7f84534ffa. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐บ๐ธ
Penny Packer
2026-02-23 22:21:27
(3 months ago)
Fail2Ban apache-tripwires
Web App Attack
๐ง๐พ
lns.bz
2026-02-17 21:04:33
(3 months ago)
Banned for trying to access xmlrpc [BY]
Web App Attack
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2026-02-09 08:27:49
(3 months ago)
WP Login Scan Activities
Web App Attack
๐บ๐ธ
Psycho Solutions LLC
2026-02-07 08:09:30
(3 months ago)
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-login.php - User Agent: N ...
show more
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-login.php - User Agent: N/A - Timestamp: 2/7/2026 8:09 am (UTC-6)
show less
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2026-02-06 00:13:49
(3 months ago)
WP Login Scan Activities
Web App Attack
Anonymous
2026-01-23 23:22:11
(4 months ago)
wordpress-trap
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-22 09:15:24
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 194.99.25.89 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 194.99.25.89 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 22 04:15:19.071823 2026] [security2:error] [pid 23531:tid 23531] [client 194.99.25.89:35963] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||admin.turedinmobiliaria.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "admin.turedinmobiliaria.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aXHqp_JBjKpRltro0AKKoAAAAAY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ฌ
pusathosting.com
2026-01-13 19:30:13
(4 months ago)
24ds22 bruteforce
Brute-Force
Web App Attack
๐บ๐ธ
webgobe
2025-06-23 03:43:50
(11 months ago)
jow-Joomla User : try to access forms...
Hacking
๐บ๐ธ
TPI-Abuse
2025-06-21 02:37:07
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 194.99.25.89 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 194.99.25.89 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 20 22:37:00.969248 2025] [security2:error] [pid 3115807:tid 3115807] [client 194.99.25.89:30069] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Horizon II/Horizon II/Stargo Black/originals/Thumbs.db"] [unique_id "aFYazNWYdOQBJAdTTuwHLQAAABw"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Horizon%20II/Horizon%20II/Stargo%20Black/originals/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2025-06-19 00:20:09
(11 months ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot