๐ณ๐ฑ
Cloud86 B.V.
2026-08-16 21:26:03
(1 month ago)
categories: DDoS Attack
DDoS Attack
๐ง๐ท
Halux
2026-08-16 21:19:49
(1 month ago)
84.32.71.59 Probing protected path or service
Web App Attack
๐ณ๐ฑ
Savvii
2026-08-16 19:39:30
(1 month ago)
20 attempts against mh-misbehave-ban on ficus
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 18:52:39
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.59 (ip-84-32-71-59.002.ptr.cherryserve ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.59 (ip-84-32-71-59.002.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 14:52:33.421291 2026] [security2:error] [pid 5265:tid 5265] [client 84.32.71.59:37390] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||stevescottcoaching.com|F|2"] [data ".env.old"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "stevescottcoaching.com"] [uri "/azure_credentials.env.old"] [unique_id "aoIG8SbXGs02QrmUZBOU0wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-08-16 18:17:46
(1 month ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-08-16 18:10:03
(1 month ago)
| [Dangerous/Turkey] Aggressive IP 84.32.71.59 (~30 hits). Type: DoS Defender- Web server 400 error ...
show more
| [Dangerous/Turkey] Aggressive IP 84.32.71.59 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
๐ฉ๐ช
hbrks
2024-03-08 22:43:52
(2 years ago)
HEAD http://p4u.xyz/back/p4u.xyz.sql
statusCode: 503
Web Spam
Hacking
Bad Web Bot
๐ฉ๐ช
hbrks
2024-03-05 10:36:35
(2 years ago)
HEAD http://epay.world/www.sql
statusCode: 503
Web Spam
Hacking
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-02-12 09:31:49
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.59 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 12 04:31:45.822902 2024] [security2:error] [pid 9911] [client 84.32.71.59:5091] [client 84.32.71.59] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||symbarenewables.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "symbarenewables.com"] [uri "/dump.sql"] [unique_id "ZcnlgYwnohk79izaL7K3kAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
hbrks
2024-02-12 09:07:06
(2 years ago)
HEAD http://ncs.guru/www.zip
statusCode: 503
Web Spam
Hacking
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-02-05 03:52:21
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 84.32.71.59 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.71.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 04 22:52:13.731452 2024] [security2:error] [pid 9680] [client 84.32.71.59:20675] [client 84.32.71.59] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/sftp-config.json" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dudleyanddudley.com"] [uri "/bak/sftp-config.json"] [unique_id "ZcBbbbQ97ReiKmLyV76TkQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-29 08:12:14
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.59 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 29 03:12:07.691535 2024] [security2:error] [pid 22860] [client 84.32.71.59:4533] [client 84.32.71.59] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mindtoken.app|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mindtoken.app"] [uri "/bak/sql.sql"] [unique_id "Zbdd1wq8SY2NNjKUQ8tnBgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฑ
FAZ_Noc
2023-12-19 07:09:50
(2 years ago)
SQL injection - Unauthorized connection attempt detected from IP address
SQL Injection
๐บ๐ธ
Letheposting
2023-08-12 12:23:32
(3 years ago)
This IP accessed a banned path: /backup/backup.tar.gz. (ListenCaddy)
Bad Web Bot
Web App Attack