Anonymous
2026-09-22 13:49:16
(6 days ago)
Malicious activity detected
Hacking
Web App Attack
๐ฉ๐ช
HandyTreff.de
2026-02-24 18:14:40
(7 months ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -40.766 (Bad < -10 / Very Bad < -20 ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -40.766 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/139.0.0.0 Sa
show less
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-12-29 17:58:37
(8 months ago)
(mod_security) mod_security (id:221260) triggered by 46.203.73.235 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:221260) triggered by 46.203.73.235 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 12:55:47.084970 2025] [security2:error] [pid 30284:tid 30618] [client 46.203.73.235:48849] ModSecurity: Access denied with code 403 (phase 1). Pattern match "^(?:\\\\'\\\\w+?=)?\\\\(\\\\)\\\\s{" at MATCHED_VAR. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "77"] [id "221260"] [rev "3"] [msg "COMODO WAF: Shellshock Command Injection Vulnerabilities in GNU Bash through 4.3 bash43-026 (CVE-2014-7187, CVE-2014-7186, CVE-2014-7169, CVE-2014-6278, CVE-2014-6277, CVE-2014-6271)||www.kettlehill.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.kettlehill.com"] [uri "/cgi-bin/test"] [unique_id "aVLAozko7uys3oTtjZtrMgAAAME"], referer: () { ignored; }; echo Content-Type: text/html; echo ; /bin/cat /etc/passwd
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-13 12:12:04
(10 months ago)
(mod_security) mod_security (id:212620) triggered by 46.203.73.235 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:212620) triggered by 46.203.73.235 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 13 07:11:57.356493 2025] [security2:error] [pid 5513:tid 5513] [client 46.203.73.235:42015] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<script\\\\b" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "65"] [id "212620"] [rev "4"] [msg "COMODO WAF: Cross-site Scripting (XSS) Attack||ftp.nbcnewsradio.com|F|2"] [data "Matched Data: <script found within REQUEST_URI: /ajax/apps/manifests?action=all&format=debug&xss=<script>alert(document.domain);</script>"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "ftp.nbcnewsradio.com"] [uri "/ajax/apps/manifests"] [unique_id "aRXLDXxgOuQi4Tm1q5geZAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-27 00:09:40
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 46.203.73.235 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 46.203.73.235 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 26 20:09:22.232125 2025] [security2:error] [pid 83761:tid 84006] [client 46.203.73.235:55795] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.kettlehill.net"] [uri "/content../.git/config"] [unique_id "aIVuMmIf-iQLocfPxyOZDAAAAVA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-30 00:03:17
(1 year ago)
(mod_security) mod_security (id:212880) triggered by 46.203.73.235 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:212880) triggered by 46.203.73.235 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 29 20:03:11.744740 2025] [security2:error] [pid 3803923:tid 3803923] [client 46.203.73.235:44745] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:<style.{0,399}?>.{0,399}?(?:@[i\\\\\\\\]|(?:[:=]|&#x?0*(?:58|3A|61|3D);?).{0,399}?(?:[(\\\\\\\\]|&#x?0*(?:40|28|92|5C);?)))" at MATCHED_VAR. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "95"] [id "212880"] [rev "4"] [msg "COMODO WAF: IE XSS Filters - Attack Detected.||mail.farmers123.com|F|2"] [data "Matched Data: 46.203.73.235 found within MATCHED_VAR: <style><j:jelly xmlns:j=\\x22jelly\\x22 xmlns:g='glide'><g:evaluate>gs.adderrormessage(1337*1337);</g:evaluate></j:jelly></style>"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "mail.farmers123.com"] [uri "/login.do"] [unique_id "aDj1v7Xc-tBk9XHcfFt4LAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-03-25 06:17:50
(1 year ago)
Ports: 2077,2078,2082,2083,2086,2087,2095,2096; Direction: 0; Trigger: LF_DISTATTACK
Brute-Force
SSH
Anonymous
2025-03-22 03:40:01
(1 year ago)
| Shellshock attack detected
Hacking
SQL Injection
Web App Attack