Anonymous
2026-07-24 04:06:09
(1 hour ago)
Trying to access config files
Web App Attack
๐ฉ๐ช
abuse-detection
2026-07-22 22:38:11
(1 day ago)
Web security detection (http-wordpress-auth-probes); path=/wp-login.php; status=301
Brute-Force
Web App Attack
๐ซ๐ท
ELYAZ
2026-07-22 06:14:40
(1 day ago)
(wordpress) Failed wordpress login from 216.26.228.240 (US/United States/-): (CF_ENABLE)
Brute-Force
๐ซ๐ท
ELYAZ
2026-07-20 20:39:50
(3 days ago)
(wordpress) Failed wordpress login from 216.26.228.240 (US/United States/-): (CF_ENABLE)
Brute-Force
๐ฌ๐ง
PeravixGroup
2026-05-07 05:52:00
(2 months ago)
Honeypot detection: Apache CouchDB unauthorized access / exploitation attempt on port 5984. Severity ...
show more
Honeypot detection: Apache CouchDB unauthorized access / exploitation attempt on port 5984. Severity: CRITICAL. Aaran.cloud
show less
Hacking
Exploited Host
๐ฑ๐ป
garmtech.com
2026-03-05 13:56:54
(4 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 15-56.216.26.228.240.web-spamm ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 15-56.216.26.228.240.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 14:01:59
(6 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
Anonymous
2025-12-10 13:20:36
(7 months ago)
botnet
DDoS Attack
๐บ๐ธ
TPI-Abuse
2025-12-08 22:01:54
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.228.240 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.228.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 08 17:01:49.584507 2025] [security2:error] [pid 24613:tid 24613] [client 216.26.228.240:57821] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jeffersonlynn.com"] [uri "/.svn/wc.db"] [unique_id "aTdKzYGmTgH3DZWNPzrPeAAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 04:19:43
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.228.240 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.228.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 23:19:39.903168 2025] [security2:error] [pid 17651:tid 17651] [client 216.26.228.240:47849] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stitchguild.com"] [uri "/.svn/wc.db"] [unique_id "aTJdW3N_g8NYHPh24VlekgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 03:10:14
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.228.240 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.228.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 22:10:08.446703 2025] [security2:error] [pid 24566:tid 24587] [client 216.26.228.240:52903] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jofdt.com"] [uri "/.svn/wc.db"] [unique_id "aTJNENYi_dj3HxJDlx4liAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 02:43:07
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.228.240 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.228.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 21:43:02.904925 2025] [security2:error] [pid 22636:tid 22636] [client 216.26.228.240:46289] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "frank-klimas.com"] [uri "/.env"] [unique_id "aTJGtobNyYRnONzVeMdwWwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
Shaik Sai Meera
2025-12-04 10:15:08
(7 months ago)
IM360 WAF: Hidden file access
Brute-Force
๐ณ๐ฑ
homeshowdomain.nl
2025-11-24 22:59:09
(7 months ago)
Auto-ban: >3000 req/min op 2025-11-24
Hacking
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2025-11-24 09:19:22
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.228.240 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.228.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:19:18.502148 2025] [security2:error] [pid 20891:tid 20891] [client 216.26.228.240:14567] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.dentsville398.org"] [uri "/.git/HEAD"] [unique_id "aSQjFql_YaOArB2_uUBzzgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack