🇨🇿
lp
2026-09-09 15:21:15
(4 hours ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 140.235.1.37
2026-09-09T15:54:17+02:0 ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 140.235.1.37
2026-09-09T15:54:17+02:00 vpn Access-Reject 'Kelly' station: 140.235.1.37 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
🇬🇧
Oakley
2026-08-12 00:20:45
(4 weeks ago)
(mod_security) mod_security (id:900178) triggered by 140.235.1.37 (US/United States/-): 5 in the las ...
show more
(mod_security) mod_security (id:900178) triggered by 140.235.1.37 (US/United States/-): 5 in the last 900 secs
show less
Web App Attack
Hacking
🇦🇺
oncord
2026-08-11 21:54:14
(4 weeks ago)
Form spam
Web Spam
Anonymous
2026-07-14 06:39:52
(1 month ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-07-01 12:30:03
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 140.235.1.37 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 140.235.1.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 01 08:29:56.040508 2026] [security2:error] [pid 31766:tid 31766] [client 140.235.1.37:54795] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||stpetersplayers.co.uk|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "stpetersplayers.co.uk"] [uri "/wp-json/wp/v2/users"] [unique_id "akUIRBl0SBCfdaR7uYkaogAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-06-19 17:08:28
(2 months ago)
Abuse Detected (1)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-06-14 01:14:47
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 140.235.1.37 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 140.235.1.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 21:14:39.390794 2026] [security2:error] [pid 23161:tid 23161] [client 140.235.1.37:47483] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||renegadestudios.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "renegadestudios.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai4Af71IcM2Mzk1AfYUrEgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-11 23:02:35
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 140.235.1.37 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 140.235.1.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 19:02:25.105482 2026] [security2:error] [pid 15773:tid 15773] [client 140.235.1.37:39179] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||intertecs.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "intertecs.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ais-gdLZPQsXE8PDPNUedgAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
oralunal
2026-03-16 16:10:18
(5 months ago)
IP banned by Fail2Ban in jail ente-suss ente.com-ssl_log mvfnds
...
Bad Web Bot
Web App Attack
🇪🇸
el-brujo
2025-12-18 06:44:25
(8 months ago)
Cloudflare WAF: Request Path: /ptbt_apdos Request Query: Host: elhacker.net userAgent: Mozilla/5.0 ...
show more
Cloudflare WAF: Request Path: /ptbt_apdos Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36 Action: block Source: l7ddos ASN Description: PUREVOLTAGE-INC Country: US Method: GET Timestamp: 2025-12-18T06:44:25Z ruleId: 12b9aecf1f6245b29d7e842bf35a42a0. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
🇪🇸
el-brujo
2025-12-18 04:59:21
(8 months ago)
Cloudflare WAF: Request Path: /ptbt_apdos Request Query: Host: elhacker.net userAgent: Mozilla/5.0 ...
show more
Cloudflare WAF: Request Path: /ptbt_apdos Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36 Action: block Source: l7ddos ASN Description: PUREVOLTAGE-INC Country: US Method: GET Timestamp: 2025-12-18T04:59:21Z ruleId: 12b9aecf1f6245b29d7e842bf35a42a0. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
🇨🇭
Zeprax
2025-12-17 19:29:56
(8 months ago)
DDoS Attack Layer 7
DDoS Attack
🇪🇸
el-brujo
2025-12-17 15:47:07
(8 months ago)
Cloudflare WAF: Request Path: /ptbttest Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (W ...
show more
Cloudflare WAF: Request Path: /ptbttest Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 Action: block Source: l7ddos ASN Description: PUREVOLTAGE-INC Country: US Method: GET Timestamp: 2025-12-17T15:47:07Z ruleId: 6e3ccc23900c428e8ec0fb8a3a679c52. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
🇪🇸
el-brujo
2025-12-17 15:47:07
(8 months ago)
Cloudflare WAF: Request Path: /ptbttest Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (W ...
show more
Cloudflare WAF: Request Path: /ptbttest Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 Action: block Source: l7ddos ASN Description: PUREVOLTAGE-INC Country: US Method: GET Timestamp: 2025-12-17T15:47:07Z ruleId: 12b9aecf1f6245b29d7e842bf35a42a0. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
🇺🇸
TPI-Abuse
2025-12-15 10:55:10
(8 months ago)
(mod_security) mod_security (id:225170) triggered by 140.235.1.37 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 140.235.1.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 15 05:55:00.184673 2025] [security2:error] [pid 19997:tid 19997] [client 140.235.1.37:44177] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nekstlevel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nekstlevel.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aT_pBFzMqqe_1A7dxZX0RAAAABY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack