Anonymous
2026-02-10 17:51:12
(7 months ago)
suspicious request in access.log
Web App Attack
๐ซ๐ท
service Informatique
2025-11-04 04:00:37
(11 months ago)
GET /.svn
Web App Attack
๐ฉ๐ช
Roper123
2025-11-03 11:24:49
(11 months ago)
Web exploits - access forbidden
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-03 11:09:47
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 95.111.247.130 (vmi1372640.contaboserver.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 95.111.247.130 (vmi1372640.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 03 06:09:42.371677 2025] [security2:error] [pid 26574:tid 26574] [client 95.111.247.130:33534] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||maps.rustyog.net|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "maps.rustyog.net"] [uri "/.svn/wc.db"] [unique_id "aQiNdgOceQv6YJTIeogS0AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
i-turnradio.nl
2025-11-03 11:07:29
(11 months ago)
2025-11-03 @ 12:07:28 (CET) ~ Blocked based on risk assessment and prior abuse reports
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-02 16:48:43
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 95.111.247.130 (vmi1372640.contaboserver.net): ...
show more
(mod_security) mod_security (id:210492) triggered by 95.111.247.130 (vmi1372640.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 02 11:48:38.652205 2025] [security2:error] [pid 20159:tid 20159] [client 95.111.247.130:37472] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bostonamerican.com"] [uri "/.svn/wc.db"] [unique_id "aQeLZoqGiEfuc-Xs4r4UXgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ฌ
Vano Ganzzz
2025-11-02 16:48:02
(11 months ago)
Triggered Cloudflare WAF (firewallCustom) from FR.
Action taken: BLOCK
ASN: 51167 (CONTABO)
Protocol ...
show more
Triggered Cloudflare WAF (firewallCustom) from FR.
Action taken: BLOCK
ASN: 51167 (CONTABO)
Protocol: HTTP/2 (GET method)
Endpoint: /.svn/wc.db
Timestamp: 2025-11-02T16:48:02Z
Ray ID: 99851e021f07973c
UA: dom-stream-checker/1.1
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-11-02 16:23:08
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 95.111.247.130 (vmi1372640.contaboserver.net): ...
show more
(mod_security) mod_security (id:210492) triggered by 95.111.247.130 (vmi1372640.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 02 11:23:02.329697 2025] [security2:error] [pid 24473:tid 24494] [client 95.111.247.130:50120] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "playgamesplay.com"] [uri "/.svn/wc.db"] [unique_id "aQeFZldQnCdik6LV_NUiTAAAARM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
polycoda
2025-11-02 16:17:58
(11 months ago)
๐ Probes for backup files such as: temp.zip, main.zip, backup.zip, backup.sql, back.zip, old.zip, pa ...
show more
๐ Probes for backup files such as: temp.zip, main.zip, backup.zip, backup.sql, back.zip, old.zip, pack.zip, docs.zip, html.zip, www.zip, www1.zip, website.zip, web.zip, wp-config.php.zip, public_html.zip, wordpress.sql, etc...
show less
Hacking
Web App Attack
๐ณ๐ฑ
jaapeldoorn
2025-11-02 15:06:31
(11 months ago)
[Sun Nov 02 15:30:58.109011 2025] [authz_core:error] [pid 1473:tid 1507] [client 95.111.247.130:5558 ...
show more
[Sun Nov 02 15:30:58.109011 2025] [authz_core:error] [pid 1473:tid 1507] [client 95.111.247.130:55584] AH01630: client denied by server configuration: /var/www
[Sun Nov 02 15:30:59.564797 2025] [authz_core:error] [pid 2790:tid 2793] [client 95.111.247.130:55598] AH01630: client denied by server configuration: /var/www
[Sun Nov 02 16:06:29.796696 2025] [authz_core:error] [pid 3896:tid 3925] [client 95.111.247.130:57812] AH01630: client denied by server configuration: /var/www
...
show less
Brute-Force
๐ฑ๐น
Evag Touf
2025-11-02 14:30:44
(11 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 95.111.247.130 (FR/F ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 95.111.247.130 (FR/France/-)
show less
Bad Web Bot
๐ณ๐ฑ
BlueWire Hosting
2025-10-15 04:10:16
(11 months ago)
Scanning for Laravel vulnerabilities
Web App Attack
๐ช๐ช
Unwasted
2025-10-15 00:57:52
(11 months ago)
File scanning
Hacking
Web App Attack
๐ซ๐ท
dynamix
2025-10-15 00:26:15
(11 months ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
FeG Deutschland
2025-10-14 23:48:26
(11 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 127
Exploited Host
Web App Attack