๐บ๐ธ
integrantservices.com
2026-08-07 01:40:22
(2 weeks ago)
(wordpress) Failed wordpress login from 64.112.57.168 (US/United States/-)
Brute-Force
๐ธ๐ฎ
administrator
2026-08-05 22:02:35
(2 weeks ago)
2026-08-04 06:21:31,288 fail2ban.actions [1590202]: NOTICE [apache-badbots] Ban 64.112.57.16 ...
show more
2026-08-04 06:21:31,288 fail2ban.actions [1590202]: NOTICE [apache-badbots] Ban 64.112.57.168
2026-08-04 06:21:31,288 fail2ban.actions [1590202]: NOTICE [apache-badbots] Ban 64.112.57.168
2026-08-04 06:21:31,288 fail2ban.actions [1590202]: NOTICE [apache-badbots] Ban 64.112.57.168
...
show less
Bad Web Bot
Web Spam
Email Spam
Blog Spam
Port Scan
Brute-Force
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-08-04 04:14:30
(2 weeks ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐ซ๐ท
conseilgouz
2026-08-04 03:43:26
(2 weeks ago)
loe-6 : Trying access system files=>/?task=suggestions.suggest'&format=json&tmpl=compon ...
show more
loe-6 : Trying access system files=>/?task=suggestions.suggest'&format=json&tmpl=component&Itemid=101(htaccessphp)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-04 02:26:39
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 64.112.57.168 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 64.112.57.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 03 22:26:17.582587 2026] [security2:error] [pid 1414708:tid 1414708] [client 64.112.57.168:42539] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bassboatmagazine.com"] [uri "/.env.bak"] [unique_id "anFNyQ0astgLI-uFzWg0HAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-03 20:40:10
(2 weeks ago)
(mod_security) mod_security (id:212620) triggered by 64.112.57.168 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:212620) triggered by 64.112.57.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 03 16:39:46.659245 2026] [security2:error] [pid 279826:tid 279838] [client 64.112.57.168:39315] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<script\\\\b" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "65"] [id "212620"] [rev "4"] [msg "COMODO WAF: Cross-site Scripting (XSS) Attack||www.uoexpanse.com|F|2"] [data "Matched Data: <script found within REQUEST_URI: /forums/viewtopic.php?t=57'\\x22></title></style></textarea></script><script>alert(qsxss9k7z)</script>&p=63"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "www.uoexpanse.com"] [uri "/forums/viewtopic.php"] [unique_id "anD8kkHH4ZklvPbe1Qsv9gAAAMo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-03 20:18:19
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 64.112.57.168 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 64.112.57.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 03 16:18:00.485106 2026] [security2:error] [pid 3351908:tid 3351908] [client 64.112.57.168:38855] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.thegoldentether.com"] [uri "/.env.dev.local"] [unique_id "anD3eOw7onahgC4sCSr2DQAAADk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-03 19:35:05
(2 weeks ago)
suspicious request in access.log
Web App Attack
๐จ๐ฟ
ptlab
2026-08-03 18:45:29
(2 weeks ago)
Detected env_leak attack from WP-host.
Hacking
Web App Attack
๐บ๐ธ
ipblock.com
2026-08-03 09:36:00
(2 weeks ago)
IPBlock protected site ID [4055-d][s=07].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
nodepile
2026-07-25 11:27:54
(4 weeks ago)
Requests denied due to active blacklist hits (tenant=82 method=POST path=/checkout/cart/add/uenc/aHR ...
show more
Requests denied due to active blacklist hits (tenant=82 method=POST path=/checkout/cart/add/uenc/aHR0cHM6Ly91bW5pdHphLmNvbS93aGVlbHMuaHRtbD9jYXQ9/product/11588/ ua='Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Safari/537.36')
show less
Web App Attack
Exploited Host
๐บ๐ธ
ipblock.com
2026-07-18 22:47:00
(1 month ago)
IPBlock protected site ID [955-wdo][s=11].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
๐ฎ๐ฑ
spd.co.il
2026-07-17 14:02:15
(1 month ago)
Web application attack detected
Hacking
Web App Attack
๐บ๐ธ
ipblock.com
2026-07-17 13:07:00
(1 month ago)
IPBlock protected site ID [4055-d][s=06].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
ipblock.com
2026-07-17 10:03:00
(1 month ago)
IPBlock protected site ID [4055-d][s=07].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack