๐ฎ๐ฉ
securejdprop
2026-09-27 20:22:43
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET DROP Spamhaus D ...
show more
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET DROP Spamhaus DROP Listed Traffic Inbound group 66).
show less
Hacking
Web App Attack
๐จ๐ฟ
Countryman
2026-09-04 00:10:01
(3 weeks ago)
repeated unauthorized VPN login attempt, user sweep
VPN IP
Hacking
Brute-Force
๐บ๐ธ
lostswordfish.com
2026-08-09 11:54:04
(1 month ago)
Wordfence waf block on uvfousor WPIDD
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-05 07:51:35
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
๐บ๐ธ
cwytech
2026-07-30 16:12:48
(1 month ago)
Fleet-wide ban from the Ghostfleet ๐ป. Triggered by scenario: cwy/wp-us-login-only-high.
Bad Web Bot
Web App Attack
Anonymous
2026-07-29 07:00:00
(1 month ago)
Apache probe; attempts=25; exact paths: /xmlrpc.php
Web App Attack
๐ซ๐ท
Sklurk
2026-07-17 10:15:46
(2 months ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-06-20 03:37:40
(3 months ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-19 05:13:08
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.178.64 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.178.64 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 19 00:13:01.447645 2026] [security2:error] [pid 5272:tid 5272] [client 209.50.178.64:53269] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "krakowski.net"] [uri "/api/.env"] [unique_id "aZab3UHaQTVpisgFrIqlewAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-19 03:53:20
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.178.64 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.178.64 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 22:53:12.870945 2026] [security2:error] [pid 18571:tid 18571] [client 209.50.178.64:41083] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kingscruff.com"] [uri "/.git/config"] [unique_id "aZaJKMASwSbsXbvlS1L_ogAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-19 01:46:17
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.178.64 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.178.64 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 20:46:14.058716 2026] [security2:error] [pid 9110:tid 9110] [client 209.50.178.64:15117] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "karendraughon.com"] [uri "/dev/.git/config"] [unique_id "aZZrZoBXrf8xR47K1foQKgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 23:57:30
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.178.64 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.178.64 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 18:57:23.728815 2026] [security2:error] [pid 6511:tid 6511] [client 209.50.178.64:24059] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "virgen.click"] [uri "/.env.staging"] [unique_id "aZZR47mRAoobVSazzE9hZQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 23:10:14
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.178.64 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.178.64 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 18:10:10.350598 2026] [security2:error] [pid 10451:tid 10451] [client 209.50.178.64:13193] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "veneye.com"] [uri "/api/.git/config"] [unique_id "aZZG0mzXELZeo38XM-1GGAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
myagent.site
2026-02-18 20:00:42
(7 months ago)
Blocking for trying to access an exploit file: /.env.local
Hacking
๐บ๐ธ
TPI-Abuse
2026-02-18 12:11:15
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.178.64 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.178.64 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 07:11:11.420875 2026] [security2:error] [pid 23385:tid 23385] [client 209.50.178.64:10695] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wbcsnet.com"] [uri "/app/.git/config"] [unique_id "aZWsX9wPhfRQG2dw7kt8DwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack