๐ฑ๐ป
garmtech.com
2026-03-12 06:53:29
(2 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 08-53.104.207.59.196.web-spamm ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 08-53.104.207.59.196.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐ฆ๐บ
oncord
2026-03-09 09:58:05
(2 months ago)
Form spam
Web Spam
๐ฆ๐บ
oncord
2026-02-21 21:30:01
(3 months ago)
Form spam
Web Spam
๐ต๐ฑ
sefinek.net
2026-02-14 11:29:33
(3 months ago)
Triggered Cloudflare WAF (firewallCustom) from CA.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (G ...
show more
Triggered Cloudflare WAF (firewallCustom) from CA.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (GET) | Endpoint: / | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Edg/114.0.1264.71 โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฆ๐บ
oncord
2026-02-10 21:11:24
(3 months ago)
Form spam
Web Spam
Anonymous
2026-01-05 20:32:23
(5 months ago)
Attempted brute force login to web vpn 9 time(s); last attempt for 2026.01.05 is noted in report tim ...
show more
Attempted brute force login to web vpn 9 time(s); last attempt for 2026.01.05 is noted in report timestamp
show less
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-12-29 04:53:29
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.59.196 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.59.196 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 23:53:22.638806 2025] [security2:error] [pid 18231:tid 18231] [client 104.207.59.196:59255] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "josecastillo.com"] [uri "/.git/HEAD"] [unique_id "aVIJQlkB-Rh6s0c_-1y0fgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2025-12-18 03:19:43
(5 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-12-10 14:52:11
(5 months ago)
"Participant in large-scale DDoS Attack in which data injection was attmpted to gain unauthorized ac ...
show more
"Participant in large-scale DDoS Attack in which data injection was attmpted to gain unauthorized access"
show less
DDoS Attack
SQL Injection
Exploited Host
Anonymous
2025-11-26 12:02:16
(6 months ago)
Sending spam-mails via forms/direct PHP Execution/SQL injection from email:
[email protected]
Email Spam
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-11-25 07:11:18
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.59.196 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.59.196 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 02:11:13.682810 2025] [security2:error] [pid 2340:tid 2340] [client 104.207.59.196:50169] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.mantality.com"] [uri "/.env"] [unique_id "aSVWkXWwwHMyayNRoJXFwgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 06:51:19
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.59.196 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.59.196 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:51:11.835412 2025] [security2:error] [pid 13240:tid 13240] [client 104.207.59.196:39321] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.rays-work.com"] [uri "/.svn/wc.db"] [unique_id "aSVR37LA4KEjeOxSK7q4MAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 09:49:49
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.59.196 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.59.196 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:49:14.860161 2025] [security2:error] [pid 27857:tid 27857] [client 104.207.59.196:27199] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.bknj2.org"] [uri "/.git/HEAD"] [unique_id "aSQqGhXdywsus1b2rTbMWAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 09:08:50
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.59.196 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.59.196 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:08:45.438280 2025] [security2:error] [pid 13166:tid 13166] [client 104.207.59.196:37895] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.longbowhunter.gnquivers.com"] [uri "/.svn/wc.db"] [unique_id "aSQgnWR5kgxNM_w_wwxXawAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 06:42:57
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.59.196 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.59.196 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:42:46.388455 2025] [security2:error] [pid 13943:tid 14042] [client 104.207.59.196:17869] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.clmtic.net"] [uri "/.git/HEAD"] [unique_id "aSP-Zupgfj-qx9CvqmQ7HgAAAg4"]
show less
Brute-Force
Bad Web Bot
Web App Attack