๐ซ๐ท
Sklurk
2026-06-16 01:49:11
(2 days ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-06-11 11:15:34
(1 week ago)
Web App Attack
Web App Attack
๐ฌ๐ง
PeravixGroup
2026-05-06 19:05:56
(1 month ago)
Honeypot detection: Apache CouchDB unauthorized access / exploitation attempt on port 5984. Severity ...
show more
Honeypot detection: Apache CouchDB unauthorized access / exploitation attempt on port 5984. Severity: CRITICAL. Aaran.cloud
show less
Hacking
Exploited Host
๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(2 months ago)
"DDoS against public endpoint"
DDoS Attack
๐บ๐ธ
nowyouknow
2025-12-05 10:58:40
(6 months ago)
(From [email protected] ) Hello,
Greetings from United Electrical Contractors. ...
show more
(From [email protected] ) Hello,
Greetings from United Electrical Contractors. After reviewing your services, we are interested in sourcing materials/services from your organization for an upcoming project.
I am reaching out to confirm your companyโs current capacity, as we have a project scheduled to begin soon. Please provide a quotation for your services so we can continue with our planning.
Additionally, kindly review the attached document and let us know if you have any questions or updates regarding feasibility or capabilities. We are ready to proceed once we receive your feedback.
Regards,
Mckee Sean
show less
Phishing
Web Spam
๐บ๐ธ
TPI-Abuse
2025-11-27 10:13:10
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 27 05:13:06.237446 2025] [security2:error] [pid 4820:tid 4820] [client 209.50.164.90:38055] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.purplebikinis.com"] [uri "/.git/HEAD"] [unique_id "aSgkMqvaZjW-PbdncRjXqAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 20:04:48
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 15:04:40.229341 2025] [security2:error] [pid 4774:tid 4774] [client 209.50.164.90:27213] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.musicalmuses.com"] [uri "/.svn/wc.db"] [unique_id "aSddWJjbfgX4jhOsLyC-HAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-26 17:43:07
(6 months ago)
Probing to gain illegal access
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 09:23:30
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 04:23:24.261365 2025] [security2:error] [pid 8073:tid 8073] [client 209.50.164.90:36013] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.limegreenvinyl.com"] [uri "/.env"] [unique_id "aSbHDFl2sSYENIUhb41m8wAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 06:21:10
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:21:02.511562 2025] [security2:error] [pid 28012:tid 28012] [client 209.50.164.90:20097] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.venture2-22.org"] [uri "/.git/HEAD"] [unique_id "aSVKzq-ahMJK6BXxzHLhJgAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:32:57
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:32:49.861782 2025] [security2:error] [pid 15135:tid 15135] [client 209.50.164.90:28837] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.pakistanvision.com"] [uri "/.env"] [unique_id "aSU_gRAObKV2cEzsKo6OjgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:51:23
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:51:19.678118 2025] [security2:error] [pid 13756:tid 13857] [client 209.50.164.90:40245] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.property-management-companies-chicago.com"] [uri "/.env"] [unique_id "aSU1xy2vRx1ksuNuFaHF3wAAANM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:27:44
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:27:41.677113 2025] [security2:error] [pid 26211:tid 26211] [client 209.50.164.90:42465] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.armadillosigns.com"] [uri "/.svn/wc.db"] [unique_id "aSUwPVLSnK8x-77A5GWNtgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:46:21
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:46:13.510092 2025] [security2:error] [pid 26159:tid 26159] [client 209.50.164.90:21801] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.thrudheim.org"] [uri "/.svn/wc.db"] [unique_id "aSUmhewgtpa_qoNPiKNNzAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:25:46
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.164.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:25:42.597041 2025] [security2:error] [pid 30769:tid 30769] [client 209.50.164.90:22271] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.saldesica.com"] [uri "/.svn/wc.db"] [unique_id "aSUTpkFMETVcOHAfhK7SqwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack