๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 14:02:12
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐บ๐ธ
TPI-Abuse
2025-12-29 06:11:06
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 01:11:01.796744 2025] [security2:error] [pid 21462:tid 21462] [client 104.207.32.27:41503] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eduempowermentsolutions.com"] [uri "/.git/HEAD"] [unique_id "aVIbdRhC5ag974pMgUuu3AAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 05:37:32
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 00:37:27.107798 2025] [security2:error] [pid 30043:tid 30043] [client 104.207.32.27:19501] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "crochetdoilies.com"] [uri "/.git/HEAD"] [unique_id "aVITl0ESkkHcO5MAWNjcdQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 05:10:25
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 00:10:21.152535 2025] [security2:error] [pid 1212200:tid 1212200] [client 104.207.32.27:46997] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ramoundos-systems.com"] [uri "/.env"] [unique_id "aVINPegrnTBD3tz8XD1c5AAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 06:07:09
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:07:00.767534 2025] [security2:error] [pid 14224:tid 14267] [client 104.207.32.27:12433] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.jrbllc.com"] [uri "/.svn/wc.db"] [unique_id "aSVHhHsnUhcrY-PSxvYNVQAAAUo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:49:09
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:49:03.649623 2025] [security2:error] [pid 17771:tid 17771] [client 104.207.32.27:35193] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.robwhitson.com"] [uri "/.git/HEAD"] [unique_id "aSVDT9AaVI2LgzZo7ZTiQwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:09:17
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:09:06.079801 2025] [security2:error] [pid 14510:tid 14510] [client 104.207.32.27:19669] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.customhumanrobots.com"] [uri "/.git/HEAD"] [unique_id "aSU58oK3MJtfWc32up1x8QAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:39:03
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:38:53.400748 2025] [security2:error] [pid 4098:tid 4098] [client 104.207.32.27:54695] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.gp-cm.com"] [uri "/.env"] [unique_id "aSUy3UI6VplZpj5PfFSeagAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:50:22
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:49:53.655701 2025] [security2:error] [pid 4237:tid 4237] [client 104.207.32.27:25611] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.russellzone.com"] [uri "/.git/HEAD"] [unique_id "aSUnYbRutvrhCu_-V600FAAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:47:44
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.32.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:47:40.006870 2025] [security2:error] [pid 25531:tid 25531] [client 104.207.32.27:32009] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.coffeewitheinstein.com"] [uri "/.svn/wc.db"] [unique_id "aSUKvJS4I0zYDU4gkQyt5wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
EGP Abuse Dept
2025-10-23 13:42:04
(7 months ago)
Unauthorized connection to SSH port 22
Port Scan
Hacking
SSH
Anonymous
2025-10-19 18:09:26
(7 months ago)
Attempted brute force login to web vpn 54 time(s); last attempt for 2025.10.19 is noted in report ti ...
show more
Attempted brute force login to web vpn 54 time(s); last attempt for 2025.10.19 is noted in report timestamp
show less
Hacking
Brute-Force
๐ณ๐ฑ
i-turnradio.nl
2025-10-18 22:38:46
(7 months ago)
2025-10-19 @ 00:38:45 (CET) ~ Blocked based on risk assessment and prior abuse reports
Web App Attack
Anonymous
2025-10-18 20:12:21
(7 months ago)
Attempted brute force login to web vpn 108 time(s); last attempt for 2025.10.18 is noted in report t ...
show more
Attempted brute force login to web vpn 108 time(s); last attempt for 2025.10.18 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-10-17 22:23:34
(7 months ago)
Attempted brute force login to web vpn 54 time(s); last attempt for 2025.10.17 is noted in report ti ...
show more
Attempted brute force login to web vpn 54 time(s); last attempt for 2025.10.17 is noted in report timestamp
show less
Hacking
Brute-Force