๐ฌ๐ง
PeravixGroup
2026-05-08 12:28:24
(1 month ago)
Honeypot detection: FTP brute-force or anonymous access attempt on port 21. Severity: MEDIUM. Aaran. ...
show more
Honeypot detection: FTP brute-force or anonymous access attempt on port 21. Severity: MEDIUM. Aaran.cloud
show less
FTP Brute-Force
Brute-Force
Anonymous
2025-12-06 18:20:57
(6 months ago)
botnet
DDoS Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-11-30 13:09:56
(6 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
Anonymous
2025-11-29 07:02:08
(6 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.29 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.29 is noted in report timestamp
show less
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-11-26 08:44:57
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.19.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.19.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 03:44:50.532779 2025] [security2:error] [pid 8839:tid 8839] [client 104.167.19.53:13613] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.weavergroup.us"] [uri "/.env"] [unique_id "aSa-AmOI5eXgYFNYoh_2HAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 01:20:06
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.19.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.19.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 20:19:59.249613 2025] [security2:error] [pid 20581:tid 20581] [client 104.167.19.53:35163] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.thenowhere-men.com"] [uri "/.svn/wc.db"] [unique_id "aSZVvxKSUVn9J2iOYTnCAQAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 00:43:33
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.19.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.19.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 19:43:25.553426 2025] [security2:error] [pid 27033:tid 27033] [client 104.167.19.53:48299] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.roguetechscene.com"] [uri "/.svn/wc.db"] [unique_id "aSZNLT-c2d-3xQQqBR0HuwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
Shaik Sai Meera
2025-11-25 23:45:07
(6 months ago)
IM360 WAF: Hidden file access
Brute-Force
๐บ๐ธ
MPL
2025-11-25 21:58:21
(6 months ago)
tcp/80 (9 or more attempts)
Port Scan
๐บ๐ธ
MPL
2025-11-25 21:58:21
(6 months ago)
tcp/80 (18 or more attempts)
Port Scan
๐บ๐ธ
TPI-Abuse
2025-11-25 03:17:03
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.19.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.19.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:16:56.116492 2025] [security2:error] [pid 7646:tid 7646] [client 104.167.19.53:31893] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wendywonjungkim.title26.com"] [uri "/.env"] [unique_id "aSUfqHUK6adOJriT2uBAKAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:53:32
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.19.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.19.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:53:27.958806 2025] [security2:error] [pid 26005:tid 26005] [client 104.167.19.53:52185] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.bcoutdoor.com"] [uri "/.git/HEAD"] [unique_id "aSUaJ7I6vsghTHTlRD5BTgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:18:58
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.19.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.19.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:18:54.996153 2025] [security2:error] [pid 29988:tid 29988] [client 104.167.19.53:37825] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.harintonmechanical.com"] [uri "/.env"] [unique_id "aSUSDsFm0kIPtMjDi9sQBAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 00:21:30
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.19.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.19.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:21:22.600095 2025] [security2:error] [pid 9378:tid 9378] [client 104.167.19.53:15149] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.robertminuzzo.com"] [uri "/.env"] [unique_id "aST2gqOvk6E7zeyIWTr4bgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-16 16:35:12
(6 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.16 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.16 is noted in report timestamp
show less
Hacking
Brute-Force