π³π±
DSCloud9
2026-08-30 06:20:30
(3 days ago)
Rce attack targeting www.humidorwebshop.nl - Severity: high
Hacking
Web App Attack
π±π»
garmtech.com
2026-08-09 11:18:39
(3 weeks ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 14-18.216.26.224.218.web-spamm ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 14-18.216.26.224.218.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
π±π»
garmtech.com
2026-08-06 00:16:58
(4 weeks ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 03-16.216.26.224.218.web-spamm ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 03-16.216.26.224.218.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
π«π·
Sklurk
2026-08-01 00:25:43
(1 month ago)
Web App Attack
Web App Attack
π±π»
garmtech.com
2026-07-09 06:28:32
(1 month ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 09-28.216.26.224.218.web-spamm ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 09-28.216.26.224.218.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
π¦πΊ
RedBear IT
2026-03-26 10:00:37
(5 months ago)
"DDoS against public endpoint"
DDoS Attack
π΅π±
sefinek.net
2026-02-18 04:39:14
(6 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (G ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (GET) | Endpoint: /genshin-stella-mod | UA: Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Vivaldi/5.3.2679.68 β’ Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
πΊπΈ
ezsystems.com
2026-02-04 09:47:24
(6 months ago)
Web Spam
π¦πΊ
MAGIC
2026-01-13 02:20:07
(7 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
πΊπΈ
TPI-Abuse
2025-12-29 08:41:32
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.224.218 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.224.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 03:41:25.234718 2025] [security2:error] [pid 8719:tid 8719] [client 216.26.224.218:21067] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "discountbusinessholidaycards.com"] [uri "/.git/HEAD"] [unique_id "aVI-tXr9E5IbjYtHsTa-agAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-29 07:53:27
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.224.218 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.224.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 02:53:23.431322 2025] [security2:error] [pid 7733:tid 7733] [client 216.26.224.218:44367] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "desertrosedoves.com"] [uri "/.git/HEAD"] [unique_id "aVIzc17Dwj9gADILlGosJAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-29 05:33:09
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.224.218 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.224.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 00:33:05.136231 2025] [security2:error] [pid 9358:tid 9358] [client 216.26.224.218:42977] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "swwpccpa.com"] [uri "/.svn/wc.db"] [unique_id "aVISkQx-F_nUa2GXLZoDxAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-29 04:48:40
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.224.218 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.224.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 23:48:34.825305 2025] [security2:error] [pid 31716:tid 31716] [client 216.26.224.218:40845] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "investorsfundingusa.com"] [uri "/.svn/wc.db"] [unique_id "aVIIIpTk83-AMdR2EhslyQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-29 04:15:40
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.224.218 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.224.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 23:15:34.760619 2025] [security2:error] [pid 5409:tid 5409] [client 216.26.224.218:56435] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "uppermotradingco.com"] [uri "/.git/HEAD"] [unique_id "aVIAZqK1Idj1HWeIdaP6HgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-12-22 13:54:19
(8 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack