π¬π§
Oakley
2026-06-13 20:34:09
(1 week ago)
(confirmed_bot_sig) Confirmed bot
Hacking
π³π±
e.fierstra
2026-05-01 21:22:33
(1 month ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-17 20:36:16
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 104.207.34.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 104.207.34.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 17 15:36:12.730317 2026] [security2:error] [pid 1230:tid 1230] [client 104.207.34.137:12039] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||pakistanvision.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "pakistanvision.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aZTRPKi9a0UC_Sq7VXklxAAAAAw"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
i-turnradio.nl
2026-02-14 15:50:29
(4 months ago)
2026-02-14 16:50:28 (CET) ~ Blocked by abusescan risk assessment
Web App Attack
Anonymous
2025-11-27 23:29:17
(6 months ago)
Attempted brute force login to web vpn 12 time(s); last attempt for 2025.11.27 is noted in report ti ...
show more
Attempted brute force login to web vpn 12 time(s); last attempt for 2025.11.27 is noted in report timestamp
show less
Hacking
Brute-Force
πΊπΈ
TPI-Abuse
2025-11-26 11:05:07
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.34.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.34.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 06:05:03.863108 2025] [security2:error] [pid 14284:tid 14301] [client 104.207.34.137:24573] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.tmsx2.com"] [uri "/.svn/wc.db"] [unique_id "aSbe38lx4MjOenhn71flcgAAAI8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 10:48:42
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.34.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.34.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 05:48:36.572109 2025] [security2:error] [pid 5279:tid 5279] [client 104.207.34.137:13321] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.casagordo.goodacoustic.com"] [uri "/.git/HEAD"] [unique_id "aSbbBM7LrXORyP-a4IMlyAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 08:58:39
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.34.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.34.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 03:58:34.546407 2025] [security2:error] [pid 23178:tid 23178] [client 104.207.34.137:15079] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.esad.com"] [uri "/.svn/wc.db"] [unique_id "aSbBOkkSVJfeqgmJvGBT6AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 03:00:03
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.34.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.34.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 21:59:56.621913 2025] [security2:error] [pid 20354:tid 20354] [client 104.207.34.137:18827] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.armrms.com"] [uri "/.svn/wc.db"] [unique_id "aSZtLEom8pYocZ3Yd4UJ9AAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π±π»
garmtech.com
2025-11-24 19:31:27
(7 months ago)
Attempted access to sensitive endpoint (/.env) detected. Automated scan or unauthorized probing.
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 08:37:16
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.34.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.34.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:37:10.520526 2025] [security2:error] [pid 3869:tid 3869] [client 104.207.34.137:52923] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.zoticus.com"] [uri "/.git/HEAD"] [unique_id "aSQZNp10ZNaBl8KxF5NVLgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 08:13:41
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.34.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.34.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:12:27.399229 2025] [security2:error] [pid 2531:tid 2531] [client 104.207.34.137:52349] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.campos.tv"] [uri "/.git/HEAD"] [unique_id "aSQTax_edwkSDaP6QqFO8AAAAC8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 07:54:56
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.34.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.34.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 02:53:36.970552 2025] [security2:error] [pid 134161:tid 134247] [client 104.207.34.137:52571] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.stonyp.com"] [uri "/.git/HEAD"] [unique_id "aSQPABfbvyHppNR9RqJ-ywAAAJM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-14 05:11:07
(7 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
Anonymous
2025-11-13 21:38:20
(7 months ago)
Attempted brute force login to web vpn 12 time(s); last attempt for 2025.11.13 is noted in report ti ...
show more
Attempted brute force login to web vpn 12 time(s); last attempt for 2025.11.13 is noted in report timestamp
show less
Hacking
Brute-Force