๐ณ๐ฑ
Savvii
2026-07-22 02:32:18
(2 days ago)
32 attempts against mh-misbehave-ban on pavo
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-06-25 14:42:03
(4 weeks ago)
block ruleset 798ECF92F12ADC636D3520C2890AF17ADEFDE3BE
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-05 16:33:15
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 195.140.178.4 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 195.140.178.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 12:33:11.732342 2026] [security2:error] [pid 2750:tid 2750] [client 195.140.178.4:43239] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||holgerfeld.com:80|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "holgerfeld.com"] [uri "/mailto:[email protected] "] [unique_id "aiL6RzOvfjZFsg9ZQOjrqwAAAB8"], referer: http://holgerfeld.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 04:08:59
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 195.140.178.4 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 195.140.178.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 00:08:54.108067 2026] [security2:error] [pid 23602:tid 23602] [client 195.140.178.4:28331] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||schwanpaint.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "schwanpaint.com"] [uri "/mailto:[email protected] "] [unique_id "aiJL1k82wml3dalCy0HwRAAAAAY"], referer: https://schwanpaint.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-03-24 09:52:53
(3 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 11-52.195.140.178.4.web-spamme ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 11-52.195.140.178.4.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 06:37:00
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 195.140.178.4 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 195.140.178.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 02:36:56.350751 2026] [security2:error] [pid 8117:tid 8117] [client 195.140.178.4:41687] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||CapitalSwissCorp.com:80|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "capitalswisscorp.com"] [uri "/mailto:[email protected] "] [unique_id "abzrCIMzk0xLTEe3Geou3AAAAAA"], referer: http://CapitalSwissCorp.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-02-21 06:45:50
(5 months ago)
SQL Injection
๐ซ๐ท
Tilellit.PRO
2026-01-24 08:24:10
(5 months ago)
Fail2Ban banned 195.140.178.4 for security violations in jail nginx-aggressive. Log: 2026/01/24 08:2 ...
show more
Fail2Ban banned 195.140.178.4 for security violations in jail nginx-aggressive. Log: 2026/01/24 08:24:07 [crit] SSL_read() failed (SSL: error:0A00010B:SSL routines::wrong version number error:0A000139:SSL routines::record layer failure) while keepalive, client: 195.140.178.4, server: [REDACTED]
2026/01/24 08:24:10 [crit] SSL_read() failed (SSL: error:0A00010B:SSL routines::wrong version number error:0A000139:SSL routines::record layer failure) while keepalive, client: 195.140.178.4, server: [REDACTED]
...
show less
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2025-12-22 21:44:35
(7 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 23-44.195.140.178.4.web-spamme ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 23-44.195.140.178.4.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐บ๐ธ
Psycho Solutions LLC
2025-04-19 11:33:06
(1 year ago)
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-login.php - User Agent: N ...
show more
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-login.php - User Agent: N/A - Timestamp: 4/19/2025 11:33 am (UTC-6)
show less
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
Psycho Solutions LLC
2025-04-04 07:34:35
(1 year ago)
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-login.php - User Agent: N ...
show more
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-login.php - User Agent: N/A - Timestamp: 4/4/2025 7:34 am (UTC-6)
show less
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-02-24 15:30:10
(1 year ago)
WP Login Scan Activities
Web App Attack
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-02-23 11:43:20
(1 year ago)
WP Login Scan Activities
Web App Attack
๐ฉ๐ช
BestFans.com
2024-11-18 17:20:12
(1 year ago)
Credential brute-force attacks on webpage logins
Brute-Force