๐ฆ๐บ
MAGIC
2026-04-26 01:45:30
(2 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ซ๐ท
COMAITE
2026-04-15 14:15:14
(2 months ago)
CMS (WordPress or Joomla) brute force attempt.
Web App Attack
๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(3 months ago)
"DDoS against public endpoint"
DDoS Attack
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2026-01-29 15:43:13
(4 months ago)
WP Login Scan Activities
Web App Attack
๐ช๐ธ
10dencehispahard SL
2026-01-26 09:39:31
(5 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
๐ฉ๐ช
LRob.fr
2026-01-17 22:04:44
(5 months ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
๐ณ๐ฑ
i-turnradio.nl
2026-01-17 04:34:37
(5 months ago)
2026-01-17 05:34:37 (CET) ~ Blocked by abusescan risk assessment
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-30 22:59:38
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.174.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.174.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 30 17:59:30.959945 2025] [security2:error] [pid 772:tid 772] [client 209.50.174.53:9769] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.vpphotoclub.org"] [uri "/.svn/wc.db"] [unique_id "aVRZUsJ4kjb3eqQV8QtTLwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-30 18:53:02
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.174.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.174.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 30 13:52:49.684895 2025] [security2:error] [pid 5476:tid 5476] [client 209.50.174.53:56333] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.allcostaricarentals.com"] [uri "/.svn/wc.db"] [unique_id "aVQfgSZ5k2TJgzLuINJEvQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 06:48:13
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.174.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.174.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 01:48:10.001615 2025] [security2:error] [pid 22565:tid 22565] [client 209.50.174.53:21347] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zezel.com"] [uri "/.env"] [unique_id "aVIkKskVTIF93FaPvHEktAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 04:24:44
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.174.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.174.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 23:24:38.291355 2025] [security2:error] [pid 4763:tid 4763] [client 209.50.174.53:19235] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bayareamustangs.com"] [uri "/.svn/wc.db"] [unique_id "aVIChqR71SQWTM8h_KbJlgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-12-11 01:16:38
(6 months ago)
botnet
DDoS Attack
๐ฎ๐ฉ
Burayot
2025-11-26 18:14:05
(7 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 209.50.174.53 (US/United States/-): ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 209.50.174.53 (US/United States/-): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 18:12:06
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.174.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.174.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 13:12:00.080226 2025] [security2:error] [pid 25391:tid 25391] [client 209.50.174.53:33711] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "laradioactivitat.com"] [uri "/.svn/wc.db"] [unique_id "aSdC8MU3ryObzCqPCoquaQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-14 17:33:42
(7 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack