π±π»
garmtech.com
2025-11-26 09:31:22
(6 months ago)
Attempted access to sensitive endpoint (/.svn/wc.db) detected. Automated scan or unauthorized probin ...
show more
Attempted access to sensitive endpoint (/.svn/wc.db) detected. Automated scan or unauthorized probing.
show less
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 09:30:22
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.163.75 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.163.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:30:07.534599 2025] [security2:error] [pid 21756:tid 21756] [client 154.213.163.75:20565] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.ahijado.org"] [uri "/.svn/wc.db"] [unique_id "aSQlnxvPu8rTsZf4p_ZVcQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 09:08:12
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.163.75 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.163.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:08:03.853042 2025] [security2:error] [pid 30748:tid 30748] [client 154.213.163.75:51243] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.blue-attitude.net"] [uri "/.git/HEAD"] [unique_id "aSQgcxm1vL0oA35KPcyLhQAAAC8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 08:43:00
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.163.75 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.163.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:42:51.778374 2025] [security2:error] [pid 26962:tid 26962] [client 154.213.163.75:21375] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.bigchus.com"] [uri "/.svn/wc.db"] [unique_id "aSQaiwLHt_awsVEEveVnzgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 08:01:17
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.163.75 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.163.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:01:05.186597 2025] [security2:error] [pid 314:tid 314] [client 154.213.163.75:41123] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bb103.us"] [uri "/.git/HEAD"] [unique_id "aSQQwVRWF7X0bP8WZv7r0gAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 05:05:58
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.163.75 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.163.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 00:05:53.484129 2025] [security2:error] [pid 31296:tid 31296] [client 154.213.163.75:11105] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.alan-ip.com"] [uri "/.env"] [unique_id "aSPnsUZH3KK04618jrivDgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 04:39:35
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.163.75 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.163.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:39:28.006610 2025] [security2:error] [pid 29625:tid 29625] [client 154.213.163.75:26935] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.thendco.com"] [uri "/.svn/wc.db"] [unique_id "aSPhgAFp3sF_WxAK4m-XQwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-15 05:53:12
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.163.75 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.163.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 15 00:53:08.481222 2025] [security2:error] [pid 9006:tid 9006] [client 154.213.163.75:36723] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.jillbauman.com"] [uri "/.env"] [unique_id "aRgVROlilIt_3sMCqTsUYQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-02 18:02:04
(7 months ago)
This IP was involved in an brute force and password spray attack on 2025/11/02 07:20:41
Port Scan
Brute-Force
Exploited Host
Web App Attack
Anonymous
2025-10-30 14:05:53
(7 months ago)
WordPress Brute Force
Brute-Force
π©πͺ
Marc
2025-10-29 21:36:32
(7 months ago)
Brute-Force
π§πΎ
lns.bz
2025-10-19 10:21:31
(8 months ago)
Web app attack [BY]
SSH
Anonymous
2025-10-15 23:14:00
(8 months ago)
Unauthorized connection attempt
Brute-Force
Anonymous
2025-09-24 00:34:38
(9 months ago)
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.09.24 is noted in report tim ...
show more
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.09.24 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-09-21 01:52:21
(9 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack