๐จ๐พ
maxdcy
2026-08-24 08:00:06
(1 day ago)
Blocked by IPFire firewall/IPS: 9 packets dropped on Aug 24 โ source network is on the IPFire hostil ...
show more
Blocked by IPFire firewall/IPS: 9 packets dropped on Aug 24 โ source network is on the IPFire hostile-networks blocklist (Spamhaus DROP / DShield / CINS). Origin: AS200373 - 3xK Tech GmbH.
show less
Port Scan
Hacking
๐ฉ๐ช
Jochen Pretli
2026-08-23 17:35:58
(2 days ago)
connection to honeypot
Email Spam
Port Scan
๐ซ๐ท
Sklurk
2026-07-08 00:31:48
(1 month ago)
Web App Attack
Web App Attack
๐ฑ๐ป
garmtech.com
2026-06-24 21:41:58
(2 months ago)
IM360 WAF: Attempt to upload malware
Hacking
๐ฉ๐ช
LRob
2026-06-24 01:32:35
(2 months ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-18 22:01:01
(3 months ago)
Auto-ban: >3000 req/min op 2026-05-18
Web App Attack
SSH
Hacking
๐ณ๐ฑ
ParaBug
2026-04-27 13:39:59
(3 months ago)
65.111.7.217 - - [27/Apr/2026:15:39:59 +0200] "GET http://51-15-23-24.rev.poneytelecom.eu/.svn/wc.db ...
show more
65.111.7.217 - - [27/Apr/2026:15:39:59 +0200] "GET http://51-15-23-24.rev.poneytelecom.eu/.svn/wc.db HTTP/1.1" 403 440 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Phishing
Brute-Force
Web App Attack
๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(4 months ago)
"DDoS against public endpoint"
DDoS Attack
๐ฆ๐บ
oncord
2026-02-02 16:23:00
(6 months ago)
Form spam
Web Spam
๐ฎ๐น
VHosting
2025-12-22 22:07:51
(8 months ago)
Detected attack and reported by a human
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2025-11-26 05:56:23
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.7.217 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.7.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:56:18.416680 2025] [security2:error] [pid 2443167:tid 2443167] [client 65.111.7.217:15959] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.1214productions.com"] [uri "/.svn/wc.db"] [unique_id "aSaWglH3i3ZDe0bp8BhzqAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 05:28:37
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.7.217 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.7.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:28:33.972661 2025] [security2:error] [pid 3490:tid 3490] [client 65.111.7.217:49797] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.engelhardtkraatz.com"] [uri "/.svn/wc.db"] [unique_id "aSaQAViS7X4iv2EUFNj1rwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 04:16:02
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.7.217 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.7.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 23:15:57.932042 2025] [security2:error] [pid 17802:tid 17802] [client 65.111.7.217:19105] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.numbulary.org"] [uri "/.svn/wc.db"] [unique_id "aSZ-_cdbLlUm4V5gGqQFyQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 03:01:34
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.7.217 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.7.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 22:01:29.644565 2025] [security2:error] [pid 3501479:tid 3501494] [client 65.111.7.217:27111] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wrci.newtrendmag.org"] [uri "/.svn/wc.db"] [unique_id "aSZtife5trruJv2rMh-z7AAAAEs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 00:55:22
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.7.217 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.7.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 19:55:19.877603 2025] [security2:error] [pid 5714:tid 5758] [client 65.111.7.217:48291] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.minutosrobados.com.emehache.net"] [uri "/.git/HEAD"] [unique_id "aSZP951DbV1MPBadQiJRawAAAFc"]
show less
Brute-Force
Bad Web Bot
Web App Attack