๐บ๐ธ
integrantservices.com
2026-08-07 01:40:46
(1 week ago)
(wordpress) Failed wordpress login from 64.112.57.162 (US/United States/-)
Brute-Force
๐ฆ๐บ
2000cn.com.au
2026-08-04 06:42:37
(2 weeks ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-04 06:27:11
(2 weeks ago)
(mod_security) mod_security (id:212750) triggered by 64.112.57.162 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:212750) triggered by 64.112.57.162 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 04 02:25:55.920535 2026] [security2:error] [pid 1357636:tid 1357636] [client 64.112.57.162:52401] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\bon(?:abort|blur|change|click|dblclick|dragdrop|error|focus|keydown|keypress|keyup|load|mouse(?:down|move|out|over|up)|move|readystatechange|reset|resize|select|submit|unload)\\\\b[^a-zA-Z0-9_]{0,}?=" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "69"] [id "212750"] [rev "3"] [msg "COMODO WAF: XSS Attack Detected||www.powerkiteforum.com|F|2"] [data "Matched Data: onload= found within REQUEST_URI: /viewthread.php?action=printable\\x22><svg onload=alert(qsxss9k7z)>&tid=22543"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "www.powerkiteforum.com"] [uri "/viewthread.php"] [unique_id "anGF82FB7JtBcPnlj4lTywAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-04 02:26:38
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 64.112.57.162 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 64.112.57.162 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 03 22:26:17.589004 2026] [security2:error] [pid 1413762:tid 1413762] [client 64.112.57.162:49747] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bassboatmagazine.com"] [uri "/.env.dev.local"] [unique_id "anFNyd1ra9wCwPCuI-R0jQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
danskefilm.dk
2026-08-03 18:00:01
(2 weeks ago)
wordpress login attempts
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-03 15:55:39
(2 weeks ago)
(mod_security) mod_security (id:212920) triggered by 64.112.57.162 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:212920) triggered by 64.112.57.162 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 03 11:55:23.258604 2026] [security2:error] [pid 3997588:tid 3997602] [client 64.112.57.162:43645] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(j|(&#x{0,1}0{0,}((74)|(4A)|(106)|(6A));{0,1}))([\\\\r]|(&((#x{0,1}0{0,}(9|A|D|(13)|(10));{0,1})|(tab;)|(newline;)))){0,}(a|(&#x{0,1}0{0,}((65)|(41)|(97)|(61));{0,1}))([\\\\r]|(&((#x{0,1}0{0,}(9|A|D|(13)|(10));{0,1})|(tab;)|(newline;)))){0,}(v|(&#x{0,1 ..." at ARGS:f. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "110"] [id "212920"] [rev "2"] [msg "COMODO WAF: IE XSS Filters - Attack Detected.||uoexpanse.com|F|2"] [data "Matched Data: 64.112.57.162 found within ARGS:f: 38javascript:alert(qsxss9k7z)"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "uoexpanse.com"] [uri "/forums/viewtopic.php"] [unique_id "anC561-pp_Q6OeG6UNhFuwAAAEo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
ipblock.com
2026-08-03 09:38:00
(2 weeks ago)
IPBlock protected site ID [4055-d][s=06].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
ipblock.com
2026-07-31 16:45:00
(2 weeks ago)
IPBlock protected site ID [4055-d][s=06].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
๐ฉ๐ช
iGroupware
2026-07-25 23:50:10
(3 weeks ago)
{"req/ip"=>{:discriminator=>"64.112.57.162", :count=>1, :period=>180, :limit=>500, :epoch_time=>1785 ...
show more
{"req/ip"=>{:discriminator=>"64.112.57.162", :count=>1, :period=>180, :limit=>500, :epoch_time=>1785023410}, "signups/ip"=>{:discriminator=>"64.112.57.162", :count=>1, :period=>3600, :limit=>5, :epoch_time=>1785023410}, "signups/email"=>{:discriminator=>"[email protected] ", :count=>27, :period=>86400, :limit=>2, :epoch_time=>1785023410}}
show less
Web App Attack
๐บ๐ธ
nodepile
2026-07-25 11:27:51
(3 weeks ago)
Requests denied due to active blacklist hits (tenant=82 method=POST path=/checkout/cart/add/uenc/aHR ...
show more
Requests denied due to active blacklist hits (tenant=82 method=POST path=/checkout/cart/add/uenc/aHR0cHM6Ly91bW5pdHphLmNvbS93aGVlbHMuaHRtbD9jYXQ9/product/11789/ ua='Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Safari/537.36')
show less
Web App Attack
Exploited Host
๐บ๐ธ
Penny Packer
2026-07-23 10:25:59
(3 weeks ago)
Fail2Ban apache-tripwires
Web App Attack
๐บ๐ธ
ipblock.com
2026-07-18 23:34:00
(1 month ago)
IPBlock protected site ID [4730-fr].
Exploit request, vulnerability probe.
Hacking
Bad Web Bot
Web App Attack
๐ซ๐ท
COMAITE
2026-07-18 00:00:50
(1 month ago)
SQL injection attempt from 64.112.57.162.
Web App Attack
๐บ๐ธ
ipblock.com
2026-07-17 13:07:00
(1 month ago)
IPBlock protected site ID [4055-d][s=07].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
ipblock.com
2026-07-17 10:03:00
(1 month ago)
IPBlock protected site ID [4055-d][s=03].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack