๐ฉ๐ช
georgengelmann
2026-05-31 17:36:13
(2 weeks ago)
Brute-Force
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-28 21:59:42
(2 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-27.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-05-28 14:30:31
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 64.137.93.98 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 64.137.93.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 28 10:30:24.661762 2026] [security2:error] [pid 28348:tid 28348] [client 64.137.93.98:35225] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "legionellaexperts.org"] [uri "/wp-config.php.save"] [unique_id "ahhRgAzA3qRwgJesFOMmcwAAABU"], referer: https://www.google.com/search?q=legionellaexperts.org
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
OceanTreasure
2026-05-27 19:40:13
(3 weeks ago)
tcp/80; /.env* dotfile probe (R21): "GET /.env.local" @ 2026-05-27T19:37:41Z
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 02:57:46
(3 weeks ago)
(mod_security) mod_security (id:210730) triggered by 64.137.93.98 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 64.137.93.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 22:57:41.961224 2026] [security2:error] [pid 15169:tid 15188] [client 64.137.93.98:50961] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||riversideturners.com|F|2"] [data ".key"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "riversideturners.com"] [uri "/config/master.key"] [unique_id "ahZdpTbKxCujVc0s4ZfTEAAAAZA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-26 21:59:33
(3 weeks ago)
Auto-ban: >3000 req/min op 2026-05-26
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-05-26 18:12:17
(3 weeks ago)
(mod_security) mod_security (id:210730) triggered by 64.137.93.98 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 64.137.93.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 14:12:13.219716 2026] [security2:error] [pid 17424:tid 17424] [client 64.137.93.98:47293] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||sayhellotometamodernism.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "sayhellotometamodernism.com"] [uri "/backup.sql"] [unique_id "ahXifeYMBZH_vJocLQwXwQAAABQ"], referer: https://www.google.com/search?q=sayhellotometamodernism.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-06-23 07:47:01
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 64.137.93.98 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 64.137.93.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 23 03:46:53.136485 2024] [security2:error] [pid 6419] [client 64.137.93.98:49287] [client 64.137.93.98] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||linnardfinancial.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "linnardfinancial.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZnfS7Sr8zDsXQNrHRoxoSQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
holos.pt
2023-06-27 16:12:37
(2 years ago)
Blocked for XSS: Cross Site Scripting in query string: http://argentinglesi.com/phpinfo.php?a[]=<a h ...
show more
Blocked for XSS: Cross Site Scripting in query string: http://argentinglesi.com/phpinfo.php?a[]=<a href=http://www.janijipya.org/2023/05/22/the-worst-advice-weve-heard-about-shocking-dating-filipino-women-service-manila/>Filipino dating app</a><meta http-equiv=refresh content=0;url=https://levitra-gg.com/9-what-your-parents-taught-you-about-dating-1368-filipino-women-near-me.html />
show less
Web App Attack
๐บ๐ธ
nowyouknow
2023-05-11 02:01:33
(3 years ago)
(From [email protected] ) Hi,
Unlock a remarkable weight loss secret. Eager to learn how i ...
show more
(From [email protected] ) Hi,
Unlock a remarkable weight loss secret. Eager to learn how it can help?
more at https://jo.my/feelgreat
Regards
David Thompson
//Optout//
If you wish to discontinue communication,
please opt out at https://jo.my/optoutjangle.
show less
Phishing
Web Spam
๐จ๐ฆ
Mediashaker
2023-03-21 14:44:20
(3 years ago)
(imapd) Failed IMAP login from 64.137.93.98 (GB/United Kingdom/-)
Brute-Force