Anonymous
2026-04-12 05:47:25
(1 month ago)
Attempt to scan vulnerabilities
Hacking
Anonymous
2026-03-27 19:05:01
(2 months ago)
Web attack
Bad Web Bot
Web App Attack
๐ฉ๐ช
iNetWorker
2026-01-11 08:28:13
(4 months ago)
trolling for resource vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 05:21:19
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.116 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.116 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 00:21:12.762511 2025] [security2:error] [pid 2566013:tid 2566025] [client 104.207.37.116:46051] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "conservativelabor.com"] [uri "/.svn/wc.db"] [unique_id "aVIPyJpwqS-pohtV-2w00wAAAMk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
myagent.site
2025-12-29 04:21:13
(5 months ago)
Blocking for trying to access an exploit file: /.env
Hacking
Anonymous
2025-12-22 18:32:26
(5 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 06:57:48
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.116 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.116 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 01:57:44.060062 2025] [security2:error] [pid 28626:tid 28626] [client 104.207.37.116:33727] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.ebizplayers.com"] [uri "/.git/HEAD"] [unique_id "aSak6G5Mlo00lio-kMPjtQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 03:20:01
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.116 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.116 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 22:19:57.823140 2025] [security2:error] [pid 28651:tid 28651] [client 104.207.37.116:53067] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pacc.gormish.org"] [uri "/.svn/wc.db"] [unique_id "aSZx3Y9ce2GZqSS-HRemywAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 01:22:57
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.116 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.116 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 20:22:52.376627 2025] [security2:error] [pid 27335:tid 27335] [client 104.207.37.116:29147] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.pseudospace.com"] [uri "/.svn/wc.db"] [unique_id "aSZWbGjL60HVSVmQoOQ2bQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:37:34
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.116 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.116 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:37:25.494879 2025] [security2:error] [pid 15101:tid 15117] [client 104.207.37.116:59067] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.cargowebstore.com"] [uri "/.env"] [unique_id "aSUyhaNKS2jdjfTVKRdpIgAAAQ0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:32:46
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.116 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.116 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:32:43.814204 2025] [security2:error] [pid 11774:tid 11774] [client 104.207.37.116:41599] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.finewebdining.com"] [uri "/.git/HEAD"] [unique_id "aSUVS8PgIV1Xa0jFPdfTqgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-17 00:33:07
(6 months ago)
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.11.17 is noted in report tim ...
show more
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.11.17 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-11-14 00:56:43
(6 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
Anonymous
2025-11-13 21:10:17
(6 months ago)
Attempted brute force login to web vpn 13 time(s); last attempt for 2025.11.13 is noted in report ti ...
show more
Attempted brute force login to web vpn 13 time(s); last attempt for 2025.11.13 is noted in report timestamp
show less
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-11-12 23:08:29
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.116 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.116 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 12 18:08:24.743036 2025] [security2:error] [pid 15701:tid 15701] [client 104.207.37.116:56259] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.haisten.net"] [uri "/config.php%7C/.env%7Csettings.py"] [unique_id "aRUTaF2877OZVtJL15PVlAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack