๐บ๐ธ
TPI-Abuse
2026-05-22 11:20:24
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 64.49.38.13 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 64.49.38.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 07:20:15.104473 2026] [security2:error] [pid 23490:tid 23512] [client 64.49.38.13:50833] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.tomrachman.com"] [uri "/wp-config.php.save"] [unique_id "ahA770Xe-nDmh8qXv8PKWgAAAVM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-05-21 07:05:15
(4 weeks ago)
Scanning/Probing (34)
Brute-Force
Web App Attack
Anonymous
2026-05-18 12:41:00
(4 weeks ago)
Exceeded the maximum global requests per minute for crawlers or humans.
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-05-16 09:26:06
(1 month ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐บ๐ธ
mnsf
2026-05-15 15:06:00
(1 month ago)
Scanning/Probing (34)
Brute-Force
Web App Attack
๐จ๐ฟ
ptlab
2026-05-14 12:45:41
(1 month ago)
Detected wp_login attack from WP-host.
Hacking
Web App Attack
Anonymous
2026-05-04 08:10:26
(1 month ago)
64.49.38.13 - - [04/May/2026:16:10:25 +0800] "GET /wp-config.php.old HTTP/1.1" 301 - "-" "Mozilla/5. ...
show more
64.49.38.13 - - [04/May/2026:16:10:25 +0800] "GET /wp-config.php.old HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-29 06:47:00
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 64.49.38.13 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210350) triggered by 64.49.38.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 29 02:46:52.930787 2026] [security2:error] [pid 11910:tid 11910] [client 64.49.38.13:47873] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||backstore.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "backstore.com"] [uri "/Human-Touch-Perfect-Chair-Recliner/Human-Touch-PC-610-Power-Omni-Motion-Perfect-Chair-Recliner-Black-SofHyde-Dark-Walnut-Wood.htm"] [unique_id "afGpXJ3a6AvcBxFyvrSM6QAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-04-17 04:02:11
(2 months ago)
Too much 404 requests in 1 minute. Operator GE matched 10 at IP:block_script. (46020-201)
Hacking
๐บ๐ธ
oralunal
2026-03-19 06:16:33
(2 months ago)
IP banned by Fail2Ban in jail ente-suss ente.com-ssl_log mvfnds
...
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-12 20:03:32
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 64.49.38.13 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210350) triggered by 64.49.38.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 12 16:03:08.570921 2026] [security2:error] [pid 12615:tid 12615] [client 64.49.38.13:55225] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||diceknobs.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "diceknobs.com"] [uri "/"] [unique_id "abMb_BxhnoXEXe4Zen9y6AAAABs"], referer: https://www.facebook.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐น
Malta
2026-02-19 08:00:26
(3 months ago)
64.49.38.13 - - [19/Feb/2026:09:00:26 +0100] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows NT ...
show more
64.49.38.13 - - [19/Feb/2026:09:00:26 +0100] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
show less
Hacking
Web App Attack
๐จ๐ญ
backslash
2026-02-10 02:10:14
(4 months ago)
block ruleset 798ECF92F12ADC636D3520C2890AF17ADEFDE3BE
Bad Web Bot
Anonymous
2026-01-23 01:18:50
(4 months ago)
Attempted brute force login to web vpn 2 time(s); last attempt for 2026.01.23 is noted in report tim ...
show more
Attempted brute force login to web vpn 2 time(s); last attempt for 2026.01.23 is noted in report timestamp
show less
Hacking
Brute-Force
๐ฉ๐ช
HandyTreff.de
2026-01-22 23:39:14
(4 months ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -30.54 (Bad < -10 / Very Bad < -20 / ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -30.54 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/116.0.2482.1
show less
Bad Web Bot
Web App Attack