๐บ๐ธ
interbiznw.com
2026-03-18 18:49:28
(2 months ago)
wordpress-fuzzing
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ฎ๐น
Progetto1
2026-03-13 05:25:03
(3 months ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฉ๐ช
GunsawianHosting
2026-03-12 17:08:57
(3 months ago)
Open Proxy
Open Proxy
๐ฉ๐ช
paissangroup
2026-03-08 23:14:43
(3 months ago)
Multiple WAF Violations
Web App Attack
๐ฎ๐น
Progetto1
2026-03-03 00:45:02
(3 months ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฆ๐ฑ
cheatmaster.store
2026-02-27 01:12:56
(3 months ago)
Automated report: This IP address has been identified as an active public open proxy.
Classification ...
show more
Automated report: This IP address has been identified as an active public open proxy.
Classification: Open Proxy | Spoofing | VPN/Anonymizer | Bad Web Bot.
Country: United States
Threat level: High. This host is listed across multiple public proxy databases and poses a risk of abuse, credential stuffing, scraping, and spoofed traffic.
Reported by automated threat intelligence pipeline. Do not whitelist without manual verification.
show less
Web Spam
Port Scan
Web App Attack
๐ฎ๐น
cheatmaster.store
2026-02-25 10:19:54
(3 months ago)
Automated report: This IP address has been identified as an active public open proxy.
Classification ...
show more
Automated report: This IP address has been identified as an active public open proxy.
Classification: Open Proxy | Spoofing | VPN/Anonymizer | Bad Web Bot.
Country: United States
Threat level: High. This host is listed across multiple public proxy databases and poses a risk of abuse, credential stuffing, scraping, and spoofed traffic.
Reported by automated threat intelligence pipeline. Do not whitelist without manual verification.
show less
Web Spam
Port Scan
Web App Attack
๐ช๐ธ
10dencehispahard SL
2026-02-04 02:01:34
(4 months ago)
Unauthorized login attempts [ accesslogs]
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-02-02 19:25:30
(4 months ago)
(mod_security) mod_security (id:217280) triggered by 5.161.155.252 (static.252.155.161.5.clients.you ...
show more
(mod_security) mod_security (id:217280) triggered by 5.161.155.252 (static.252.155.161.5.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 02 14:25:27.006751 2026] [security2:error] [pid 960865:tid 961004] [client 5.161.155.252:33498] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?:\\\\n|\\\\r)+(?:get|post|head|options|connect|put|delete|trace|propfind|propatch|mkcol|copy|move|lock|unlock)\\\\s+" at MATCHED_VAR. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "137"] [id "217280"] [rev "6"] [msg "COMODO WAF: HTTP Request Smuggling Attack||www.howlerrock.com|F|2"] [data "Matched Data: get found within MATCHED_VAR"] [severity "CRITICAL"] [tag "CWAF"] [tag "Protocol"] [hostname "www.howlerrock.com"] [uri "/contact/"] [unique_id "aYD6J585_GGE4rLaEGyldwAAAdM"], referer: https://www.howlerrock.com/contact/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
Progetto1
2026-01-29 03:50:02
(4 months ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-01-28 18:30:09
(4 months ago)
Forum/form spam
Web Spam
๐ณ๐ฑ
homeshowdomain.nl
2026-01-16 22:59:11
(4 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-01-15.
show less
Hacking
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2026-01-15 20:53:52
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 5.161.155.252 (static.252.155.161.5.clients.you ...
show more
(mod_security) mod_security (id:210492) triggered by 5.161.155.252 (static.252.155.161.5.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 15 15:53:48.900431 2026] [security2:error] [pid 11471:tid 11471] [client 5.161.155.252:22400] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.electricmeatgrinder.com"] [uri "/admin/.env"] [unique_id "aWlT3MV3Yh5LlFv300V96QAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-15 09:24:38
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 5.161.155.252 (static.252.155.161.5.clients.you ...
show more
(mod_security) mod_security (id:210492) triggered by 5.161.155.252 (static.252.155.161.5.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 15 04:24:35.321208 2026] [security2:error] [pid 10442:tid 10463] [client 5.161.155.252:7846] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.intro.gryphix.com"] [uri "/.git/config"] [unique_id "aWiyU9UWKrKguFFnXeU-wQAAAQY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ฌ
pusathosting.com
2026-01-15 09:18:04
(5 months ago)
2ds22 bruteforce
Brute-Force
Web App Attack