π³π΄
jad-abuse
2026-09-18 01:22:20
(4 days ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_login. ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_login. Observed by 1 sensor(s); 2 hits.
show less
Brute-Force
Web App Attack
π©πͺ
NxtGenIT
2026-09-03 10:21:30
(2 weeks ago)
CiscoASA Honeypot hit, Payload: "GET /+CSCOE+/logon.html?fcadbadd=1 HTTP/1.1" 200 -,
Brute-Force
π±π»
garmtech.com
2026-05-27 05:23:42
(3 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 08-23.216.26.227.243.web-spamm ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 08-23.216.26.227.243.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
π¦πΊ
MAGIC
2026-03-06 03:06:24
(6 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
2026-02-15 13:05:24
(7 months ago)
WAF repeated trigger detected by Fail2Ban
Web App Attack
π¬π§
consul.to
2026-02-15 12:49:33
(7 months ago)
Web attack/malicious scanning detected
Web App Attack
πΈπ¬
anotherwatcher
2026-02-15 11:34:43
(7 months ago)
bad bot
Bad Web Bot
πΊπΈ
mnsf
2026-02-15 03:05:29
(7 months ago)
Too many Status 40X (12)
Scanning/Probing (16)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-02 19:45:09
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.227.243 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.227.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 14:45:01.474838 2025] [security2:error] [pid 5663:tid 5663] [client 216.26.227.243:28465] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "serranoscoffee.com"] [uri "/.env"] [unique_id "aS9BvQsAvlPcIcOJpMCS2AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-02 10:43:04
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.227.243 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.227.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 05:42:57.855984 2025] [security2:error] [pid 18919:tid 18919] [client 216.26.227.243:54021] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flyc2c.com"] [uri "/.env"] [unique_id "aS7CsUsT7MvKPATmjA03GgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-02 05:14:16
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.227.243 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.227.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 00:14:09.122537 2025] [security2:error] [pid 3505:tid 3505] [client 216.26.227.243:31559] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flatchestedmama.com"] [uri "/.svn/wc.db"] [unique_id "aS51oXEPBXxyfJVH0PUedQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 11:54:33
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.227.243 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.227.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 06:54:29.723103 2025] [security2:error] [pid 25753:tid 25753] [client 216.26.227.243:33539] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.genescleaners.com"] [uri "/.env"] [unique_id "aSbqdZaLRazr9Sj1i8IXpgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 05:14:14
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.227.243 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.227.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:14:09.620363 2025] [security2:error] [pid 10747:tid 10754] [client 216.26.227.243:54393] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.andestravel.net"] [uri "/.env"] [unique_id "aSU7IV2GfO2s-Qdwr6d76wAAAII"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
afleventoffice.com.au
2025-11-24 14:34:52
(9 months ago)
GET /.env HTTP/1.1
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 09:19:09
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.227.243 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.227.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:19:01.274155 2025] [security2:error] [pid 16076:tid 16076] [client 216.26.227.243:12807] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.ifmamasang.com"] [uri "/.git/HEAD"] [unique_id "aSQjBZgYvk46b8X7Xg592AAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack