๐บ๐ธ
integrantservices.com
2026-08-07 01:40:23
(1 month ago)
(wordpress) Failed wordpress login from 64.112.57.167 (US/United States/-)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-04 05:47:03
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 64.112.57.167 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 64.112.57.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 04 01:46:40.212982 2026] [security2:error] [pid 3305206:tid 3305206] [client 64.112.57.167:60843] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "med-engineering.com"] [uri "/.env.prod.local"] [unique_id "anF8wAdmux3o7SWAWa3VsAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-03 22:33:07
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 64.112.57.167 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 64.112.57.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 03 18:32:47.912635 2026] [security2:error] [pid 335232:tid 335254] [client 64.112.57.167:44175] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.uoexpanse.com"] [uri "/.env.development.local"] [unique_id "anEXDzn6i5lXIaBGu8zqoQAAAI8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
bps-statistics
2026-08-03 16:07:13
(1 month ago)
Web Application Attacks
Web App Attack
๐บ๐ธ
ipblock.com
2026-08-03 09:35:00
(1 month ago)
IPBlock protected site ID [4055-d][s=06].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-08-01 05:26:55
(1 month ago)
2.093 requests from abuseipdb.com blacklisted IP (1yr10mos3w)
Brute-Force
Bad Web Bot
๐ซ๐ท
mikekarl
2026-07-27 14:58:20
(1 month ago)
SQL INJECTION portal_company_order_search''
SQL Injection
๐ฉ๐ช
iGroupware
2026-07-25 23:50:10
(1 month ago)
{"req/ip"=>{:discriminator=>"64.112.57.167", :count=>1, :period=>180, :limit=>500, :epoch_time=>1785 ...
show more
{"req/ip"=>{:discriminator=>"64.112.57.167", :count=>1, :period=>180, :limit=>500, :epoch_time=>1785023409}, "signups/ip"=>{:discriminator=>"64.112.57.167", :count=>1, :period=>3600, :limit=>5, :epoch_time=>1785023409}, "signups/email"=>{:discriminator=>"[email protected] ", :count=>18, :period=>86400, :limit=>2, :epoch_time=>1785023409}}
show less
Web App Attack
๐บ๐ธ
SiliSoftware
2026-07-25 12:38:18
(1 month ago)
/phpBB3/viewtopic.php?t=1891
Web App Attack
๐บ๐ธ
nodepile
2026-07-25 11:27:57
(1 month ago)
Requests denied due to active blacklist hits (tenant=82 method=POST path=/checkout/cart/add/uenc/aHR ...
show more
Requests denied due to active blacklist hits (tenant=82 method=POST path=/checkout/cart/add/uenc/aHR0cHM6Ly91bW5pdHphLmNvbS93aGVlbHMuaHRtbD9jYXQ9/product/11799/ ua='Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Safari/537.36')
show less
Web App Attack
Exploited Host
๐บ๐ธ
ipblock.com
2026-07-18 22:45:00
(1 month ago)
IPBlock protected site ID [4055-d][s=07].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
ipblock.com
2026-07-17 13:07:00
(1 month ago)
IPBlock protected site ID [4055-d][s=07].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
ipblock.com
2026-07-17 10:03:00
(1 month ago)
IPBlock protected site ID [4055-d][s=06].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TheJimmo
2026-07-16 13:47:28
(1 month ago)
64.112.57.167 64.112.57.167 - - [16/Jul/2026:13:45:39 +0000] "POST /artifactory/ui/auth/login%3F_spr ...
show more
64.112.57.167 64.112.57.167 - - [16/Jul/2026:13:45:39 +0000] "POST /artifactory/ui/auth/login%3F_spring_security_remember_me=false HTTP/1.1" 404 13452 "https://foreverpontiac.com/artifactory/webapp/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Safari/537.36"
64.112.57.167 64.112.57.167 - - [16/Jul/2026:13:45:43 +0000] "GET /admingui/version/serverTasksGeneral?serverTasksGeneral.GeneralWebserverTabs.TabHref=2 HTTP/1.1" 404 13452 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Safari/537.36"
64.112.57.167 64.112.57.167 - - [16/Jul/2026:13:45:46 +0000] "GET /conf/nginx.conf HTTP/1.1" 404 13351 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Safari/537.36"
64.112.57.167 64.112.57.167 - - [16/Jul/2026:13:46:00 +0000] "GET /front//%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c%5c..%5c..%5c..%5c..%5c..%5c..%5c.
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-07-15 14:36:41
(2 months ago)
[Drupal AbuseIPDB module] Request path is blacklisted. /wp-admin/admin-ajax.php
Web App Attack