๐ต๐ฑ
Ma ma
2026-05-16 18:39:00
(1 month ago)
page scanning
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-12 22:27:44
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 93.216.67.49 (p5dd84331.dip0.t-ipconnect.de): 1 ...
show more
(mod_security) mod_security (id:210730) triggered by 93.216.67.49 (p5dd84331.dip0.t-ipconnect.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 12 18:27:37.253806 2026] [security2:error] [pid 2907:tid 2907] [client 93.216.67.49:38202] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.willowriver3.artfranz.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.willowriver3.artfranz.com"] [uri "/willowriver3.com"] [unique_id "agOpWbPQiEkNShF-40wODAAAABM"], referer: https://www.willowriver3.artfranz.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-11 23:30:03
(1 month ago)
Malicious activity detected
Hacking
Web App Attack
๐ฌ๐ง
WebNiraj
2026-05-09 17:10:59
(1 month ago)
(cpanel) Failed cPanel login from 93.216.67.49 (DE/Germany/p5dd84331.dip0.t-ipconnect.de): 5 in the ...
show more
(cpanel) Failed cPanel login from 93.216.67.49 (DE/Germany/p5dd84331.dip0.t-ipconnect.de): 5 in the last 3600 secs [SIGMA]
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-06 18:49:13
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 93.216.67.49 (p5dd84331.dip0.t-ipconnect.de): 1 ...
show more
(mod_security) mod_security (id:210730) triggered by 93.216.67.49 (p5dd84331.dip0.t-ipconnect.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 06 14:49:06.087180 2026] [security2:error] [pid 18557:tid 18557] [client 93.216.67.49:44500] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||photosatthebeach.com.rddeckerphotography.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "photosatthebeach.com.rddeckerphotography.com"] [uri "/[email protected] "] [unique_id "afuNIpByqzpOCLlwVJ1OlQAAAAM"], referer: https://photosatthebeach.com.rddeckerphotography.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-23 11:24:02
(2 months ago)
(mod_security) mod_security (id:243420) triggered by 93.216.67.49 (p5dd84331.dip0.t-ipconnect.de): 1 ...
show more
(mod_security) mod_security (id:243420) triggered by 93.216.67.49 (p5dd84331.dip0.t-ipconnect.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 23 07:23:54.719879 2026] [security2:error] [pid 10767:tid 10767] [client 93.216.67.49:44252] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "ARGS:endpoint" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.179vfs.com.extreme-atv.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.179vfs.com.extreme-atv.com"] [uri "/api_proxy.php"] [unique_id "aeoBSiQx5RBqAClChHWiCAAAABQ"], referer: https://www.179vfs.com.extreme-atv.com/pilot_statistics.php
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-04-14 23:46:17
(2 months ago)
Try to access /xmlrpc.php?Fuck_You_Elon_Musk_XD
Web App Attack
๐ฎ๐ฉ
David Koswari
2026-04-14 05:57:00
(2 months ago)
REQ_BLOCKED_ACL
DDoS Attack
FTP Brute-Force
Ping of Death
Port Scan
Hacking
SQL Injection
Spoofing
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
IoT Targeted
๐บ๐ธ
vanguardm
2026-04-12 11:40:05
(2 months ago)
Automated report: 20 events detected. Types: web-attack
Web App Attack
๐จ๐ณ
ThreatBook.io
2026-04-06 00:02:14
(2 months ago)
ThreatBook Intelligence: Dynamic IP more details on http://threatbook.io/ip/93.216.67.49
2026-04-05 ...
show more
ThreatBook Intelligence: Dynamic IP more details on http://threatbook.io/ip/93.216.67.49
2026-04-05 10:05:15 /dfdfd
2026-04-05 07:47:24 /dfdfd
2026-04-05 14:21:49 /dfdfd
2026-04-05 11:34:20 /dfdfd
2026-04-05 09:20:49 /dfdfd
show less
Web App Attack