Anonymous
2026-06-07 13:15:35
(30 minutes ago)
Botnet activity. Attribution: Angara Technologies Group / mikhail-smirnov-79830322 | Attack Signatur ...
show more
Botnet activity. Attribution: Angara Technologies Group / mikhail-smirnov-79830322 | Attack Signature Blocked: /wishlist/index/add/product/1412/form_key/rC0Wifsdx9GtIEtN/ | UA: Mozilla/5.0 (Windows NT 6.3; Win64; x64) AppleWebKit/537.36 (KHTML, like Gec...
show less
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-02-16 00:05:39
(3 months ago)
Scanning/Probing (14)
Brute-Force
Web App Attack
๐ฌ๐ง
consul.to
2026-02-15 12:49:31
(3 months ago)
Web attack/malicious scanning detected
Web App Attack
๐ฎ๐ฉ
Burayot
2026-02-15 12:13:25
(3 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 209.50.187.248 (CA/Canada/-): 1 in ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 209.50.187.248 (CA/Canada/-): 1 in the last 3600 secs
show less
Web App Attack
๐จ๐ญ
Origon
2026-02-15 12:08:19
(3 months ago)
http-sensitive-files - IP: 209.50.187.248 - time="2026-02-15T13:08:19+01:00" level=info msg="(555f6 ...
show more
http-sensitive-files - IP: 209.50.187.248 - time="2026-02-15T13:08:19+01:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 209.50.187.248 (CA/200373) : 4h ban on Ip 209.50.187.248" module=db
show less
Web App Attack
Anonymous
2026-02-15 04:31:30
(3 months ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
mnsf
2026-02-14 23:05:53
(3 months ago)
Scanning/Probing (48)
Brute-Force
Web App Attack
Anonymous
2026-01-05 20:17:53
(5 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2026.01.05 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2026.01.05 is noted in report timestamp
show less
Hacking
Brute-Force
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 14:01:31
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐บ๐ธ
TPI-Abuse
2025-12-03 05:41:11
(6 months ago)
(mod_security) mod_security (id:210740) triggered by 209.50.187.248 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210740) triggered by 209.50.187.248 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 03 00:40:42.482254 2025] [security2:error] [pid 13078:tid 13078] [client 209.50.187.248:37623] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||www.powerkiteforum.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "www.powerkiteforum.com"] [uri "/aska.cgi"] [unique_id "aS_NWmqJb5WsNRsU6Dj93AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 07:17:29
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.187.248 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.187.248 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 02:17:22.287152 2025] [security2:error] [pid 31105:tid 31105] [client 209.50.187.248:19819] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.garthp.com"] [uri "/.git/HEAD"] [unique_id "aSVYAvouzumNsMhQY1ia6gAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:28:58
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.187.248 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.187.248 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:28:35.712012 2025] [security2:error] [pid 10362:tid 10362] [client 209.50.187.248:39489] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.cafelimelight.com"] [uri "/.git/HEAD"] [unique_id "aSU-g3ZWH1XR0g5odhSqygAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:05:38
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.187.248 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.187.248 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:05:32.056939 2025] [security2:error] [pid 13735:tid 13735] [client 209.50.187.248:58025] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.cocoscabanas.com"] [uri "/.git/HEAD"] [unique_id "aSU5HIVYV4V9jzsXXXe6iAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:20:56
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.187.248 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.187.248 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:20:52.637152 2025] [security2:error] [pid 10128:tid 10128] [client 209.50.187.248:13487] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.watersideaccommodation.com"] [uri "/.svn/wc.db"] [unique_id "aSUShAIgaMxXQhUTvcGhQAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 00:54:05
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.187.248 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.187.248 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:51:51.031045 2025] [security2:error] [pid 5096:tid 5096] [client 209.50.187.248:20851] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.duckchristmascards.com"] [uri "/.git/HEAD"] [unique_id "aST9pzwYgazfnh_jWS5HZAAAADc"]
show less
Brute-Force
Bad Web Bot
Web App Attack