🇫🇷
SpaceHost-Server
2026-09-03 22:22:18
(1 day ago)
Brute-Force
Web App Attack
🇫🇷
SpaceHost-Server
2026-09-02 22:20:23
(2 days ago)
Brute-Force
Web App Attack
🇪🇸
masterguru
2026-08-31 07:15:28
(5 days ago)
(wplogin) Failed WordPress login from 212.119.41.39 (US/United States/-): 5 in the last 3600 secs (0 ...
show more
(wplogin) Failed WordPress login from 212.119.41.39 (US/United States/-): 5 in the last 3600 secs (0-122)
show less
Hacking
🇩🇪
MusicLibrary
2026-04-22 20:17:42
(4 months ago)
Attempted access to non existent wordpress urls
Bad Web Bot
🇪🇸
el-brujo
2026-04-14 10:40:25
(4 months ago)
Cloudflare WAF: Request Path: /xmlrpc.php Request Query: Host: foro.elhacker.net userAgent: Mozilla ...
show more
Cloudflare WAF: Request Path: /xmlrpc.php Request Query: Host: foro.elhacker.net userAgent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.14; rv:141.0) Gecko/20100101 Firefox/141.0 Action: managed_challenge Source: firewallManaged ASN Description: BTTGROUP-AS Country: US Method: POST Timestamp: 2026-04-14T10:40:25Z ruleId: 5de7edfa648c4d6891dc3e7f84534ffa. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
🇪🇸
el-brujo
2026-04-05 00:28:20
(5 months ago)
Cloudflare WAF: Request Path: /xmlrpc.php Request Query: Host: foro.elhacker.net userAgent: Chrome/ ...
show more
Cloudflare WAF: Request Path: /xmlrpc.php Request Query: Host: foro.elhacker.net userAgent: Chrome/92.2 Safari/532.52 Action: managed_challenge Source: firewallManaged ASN Description: BTTGROUP-AS Country: US Method: POST Timestamp: 2026-04-05T00:28:20Z ruleId: 5de7edfa648c4d6891dc3e7f84534ffa. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
Anonymous
2025-09-16 02:16:35
(11 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
🇺🇸
TPI-Abuse
2025-09-12 19:20:44
(11 months ago)
(mod_security) mod_security (id:210350) triggered by 212.119.41.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 212.119.41.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 12 15:20:38.849826 2025] [security2:error] [pid 31022:tid 31022] [client 212.119.41.39:17547] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.portfoliolighting.net|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.portfoliolighting.net"] [uri "/403.shtml"] [unique_id "aMRyhmPtHMTqLuNnV7fPowAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-09-06 19:22:30
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 212.119.41.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 212.119.41.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 06 15:22:26.839614 2025] [security2:error] [pid 10348:tid 10348] [client 212.119.41.39:42105] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Giovanni/Thumbs.db"] [unique_id "aLyJ8i8pfAcGk9GyBfE2HgAAAAo"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Giovanni/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-08-31 00:41:01
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-08-21 22:33:00
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-07-05 08:16:44
(1 year ago)
Ports: 2077,2078,2082,2083,2086,2087,2095,2096; Direction: 0; Trigger: LF_DISTATTACK
Brute-Force
SSH
🇩🇪
on-com
2025-07-02 10:16:22
(1 year ago)
URL scan
Brute-Force
Web App Attack
🇨🇭
backslash
2025-05-10 04:56:43
(1 year ago)
Bad Web Bot
🇺🇸
TPI-Abuse
2024-11-05 05:26:16
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 212.119.41.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 212.119.41.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 05 00:26:09.933104 2024] [security2:error] [pid 3866445:tid 3866445] [client 212.119.41.39:55801] [client 212.119.41.39] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Hudson II/Vermont Bark/Loveseat/originals/Thumbs.db"] [unique_id "Zymsca2UmextmhKiLlwo6gAAAAA"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Hudson%20II/Vermont%20Bark/Loveseat/originals/
show less
Brute-Force
Bad Web Bot
Web App Attack