๐ฎ๐น
VHosting
2026-02-18 22:16:46
(3 months ago)
Detected attack and reported by a human
Brute-Force
Web App Attack
SSH
DDoS Attack
Exploited Host
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-02-18 03:46:18
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 17 22:46:09.776107 2026] [security2:error] [pid 32595:tid 32595] [client 104.207.37.59:63679] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "robcruickshank.net"] [uri "/config/.env"] [unique_id "aZU2AZwy7NBNxRd6l_sQpgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-12-09 19:10:08
(5 months ago)
botnet
DDoS Attack
๐บ๐ธ
SSH-Admin
2025-11-25 17:20:26
(6 months ago)
Probing for Exploits
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 08:40:08
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:39:59.048715 2025] [security2:error] [pid 8047:tid 8047] [client 104.207.37.59:22543] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gracebaptisthartsville.com"] [uri "/.env"] [unique_id "aSQZ30-Cpu_HKSXhrQjqGQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 06:46:46
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:46:42.752217 2025] [security2:error] [pid 25311:tid 25311] [client 104.207.37.59:37657] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.jonathanwilson.me"] [uri "/.env"] [unique_id "aSP_UruSHKr2e-rii4IkFgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:57:14
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:57:01.042972 2025] [security2:error] [pid 25035:tid 25035] [client 104.207.37.59:22215] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.the-jerks.flyingdodopublications.com"] [uri "/.svn/wc.db"] [unique_id "aSPlnaUf7XjA65XtO8FVnQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:33:09
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:32:49.031823 2025] [security2:error] [pid 20156:tid 20156] [client 104.207.37.59:40271] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.walterjhoodco.com"] [uri "/.svn/wc.db"] [unique_id "aSPf8fCDqchwYnKmSJQcxwAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2025-11-24 04:22:49
(6 months ago)
IM360 WAF: Laravel .env file access
Web App Attack
๐ฆ๐บ
MAGIC
2025-11-23 00:06:12
(6 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฆ๐บ
oncord
2025-11-21 10:43:16
(6 months ago)
Form spam
Web Spam
Anonymous
2025-11-17 17:59:16
(6 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.17 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.17 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-11-14 13:09:45
(6 months ago)
Attempted brute force login to web vpn 12 time(s); last attempt for 2025.11.14 is noted in report ti ...
show more
Attempted brute force login to web vpn 12 time(s); last attempt for 2025.11.14 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-11-06 18:15:46
(7 months ago)
Attempted brute force login to web vpn 24 time(s); last attempt for 2025.11.06 is noted in report ti ...
show more
Attempted brute force login to web vpn 24 time(s); last attempt for 2025.11.06 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-10-19 19:26:42
(7 months ago)
Attempted brute force login to web vpn 72 time(s); last attempt for 2025.10.19 is noted in report ti ...
show more
Attempted brute force login to web vpn 72 time(s); last attempt for 2025.10.19 is noted in report timestamp
show less
Hacking
Brute-Force