๐บ๐ธ
lostswordfish.com
2026-07-21 07:08:03
(15 hours ago)
Wordfence waf block on 1105merrystreet
Web App Attack
๐บ๐ธ
factor1
2026-07-21 03:12:18
(19 hours ago)
Fail2ban at saturn Reports Abuse.
Brute-Force
Web App Attack
๐ฒ๐น
Malta
2026-07-19 18:41:24
(2 days ago)
216.26.240.183 - - [19/Jul/2026:20:41:24 +0200] "POST /xmlrpc.php HTTP/1.1" "Mozilla/5.0 (Macintosh; ...
show more
216.26.240.183 - - [19/Jul/2026:20:41:24 +0200] "POST /xmlrpc.php HTTP/1.1" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_6_1; rv:118.0) Gecko/20100101 Firefox/118.0"
show less
Hacking
Web App Attack
๐บ๐ธ
SLSLLC
2026-04-29 21:46:39
(2 months ago)
216.26.240.183 - - [29/Apr/2026:21:46:39 +0000] "GET /.env HTTP/2.0" 404 401 "-" "SonyEricssonK750i/ ...
show more
216.26.240.183 - - [29/Apr/2026:21:46:39 +0000] "GET /.env HTTP/2.0" 404 401 "-" "SonyEricssonK750i/R1CA Browser/SEMC-Browser/4.2 Profile/MIDP-2.0 Configuration/CLDC-1.1"
...
show less
Brute-Force
Web App Attack
๐ฉ๐ช
4server
2026-04-29 15:04:38
(2 months ago)
[WedApr2917:04:35.3402082026][security2:error][pid1647794:tid1647869][client216.26.240.183:0]ModSecu ...
show more
[WedApr2917:04:35.3402082026][security2:error][pid1647794:tid1647869][client216.26.240.183:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"craniosacraltherapy.ch\"][uri\"/\"][unique_id\"afIeA5UwvPMnrYs4epuo-QAAAY0\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 11:35:02
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.240.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.240.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 06:34:58.013735 2025] [security2:error] [pid 9209:tid 9209] [client 216.26.240.183:57905] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.jmrlighting.com"] [uri "/.svn/wc.db"] [unique_id "aSbl4lsCb4HgZRAi82mPJgAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 00:37:33
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.240.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.240.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 19:37:29.853061 2025] [security2:error] [pid 20037:tid 20037] [client 216.26.240.183:29355] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.geriart.qu1ck.com"] [uri "/.svn/wc.db"] [unique_id "aSZLyQ1_xx9_Zb_-0pI8PQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 07:25:24
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.240.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.240.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 02:25:17.733003 2025] [security2:error] [pid 8922:tid 8922] [client 216.26.240.183:60181] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.thongtracker.com"] [uri "/.svn/wc.db"] [unique_id "aSVZ3T9msFX35L1fTx7kbgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 07:10:43
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.240.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.240.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 02:10:35.966362 2025] [security2:error] [pid 17298:tid 17298] [client 216.26.240.183:51803] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.corporatepresentation.net"] [uri "/.env"] [unique_id "aSQE647oohjfW4o7ad0rUAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 02:03:07
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.240.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.240.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 21:03:01.516803 2025] [security2:error] [pid 4202:tid 4202] [client 216.26.240.183:43103] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.thedreamcatchers.eu"] [uri "/.svn/wc.db"] [unique_id "aSO81fm6bpSj7O665LEwPwAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-23 20:14:40
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.240.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.240.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 15:14:32.656369 2025] [security2:error] [pid 4754:tid 4754] [client 216.26.240.183:21761] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.aguitas.com"] [uri "/.git/config"] [unique_id "aSNrKFKVg7JYvKs1CZXCHwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
10dencehispahard SL
2025-10-13 05:32:25
(9 months ago)
WP probing for vulnerabilities
Hacking
Exploited Host