πΈπͺ
shab
2026-09-03 04:31:47
(1 hour ago)
Suspicious VPN activity
Brute-Force
π©πͺ
Admins@FBN
2026-09-03 02:42:45
(3 hours ago)
VPN Logon Failed: AAA user authentication Rejected user = <dhills>
Brute-Force
Exploited Host
π«π·
Sklurk
2026-07-29 00:36:18
(1 month ago)
Web App Attack
Web App Attack
π«π·
Sklurk
2026-07-16 00:41:04
(1 month ago)
Web App Attack
Web App Attack
π¦πΊ
MAGIC
2026-05-20 01:20:39
(3 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
πͺπΈ
librebit
2026-05-15 00:31:48
(3 months ago)
Brute force
Brute-Force
π¦πΊ
RedBear IT
2026-03-26 10:00:37
(5 months ago)
"DDoS against public endpoint"
DDoS Attack
πΊπΈ
TPI-Abuse
2025-12-28 16:18:34
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.172.204 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.172.204 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 11:18:28.740529 2025] [security2:error] [pid 23348:tid 23348] [client 209.50.172.204:18069] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lazymanvegan.com"] [uri "/.git/HEAD"] [unique_id "aVFYVKLyflkZjF6At-_dQAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-27 21:53:08
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.172.204 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.172.204 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 27 16:53:04.771660 2025] [security2:error] [pid 27801:tid 27801] [client 209.50.172.204:10061] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gilgoinn.com"] [uri "/.env"] [unique_id "aSjIQCgEdHrXHhZHoJ_wxgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-27 20:51:52
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.172.204 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.172.204 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 27 15:51:48.695213 2025] [security2:error] [pid 2217:tid 2217] [client 209.50.172.204:27421] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cyberdana.com"] [uri "/.env"] [unique_id "aSi55Lr_qOiHry_G4CTRkgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-27 09:38:08
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.172.204 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.172.204 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 27 04:38:04.663834 2025] [security2:error] [pid 10343:tid 10343] [client 209.50.172.204:58575] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.losbarbarosdelnorte.com"] [uri "/.env"] [unique_id "aSgb_Jd-f4PsuvyywpMQrAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-26 17:42:59
(9 months ago)
Probing to gain illegal access
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 00:01:32
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.172.204 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.172.204 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 19:01:27.093225 2025] [security2:error] [pid 24424:tid 24424] [client 209.50.172.204:37317] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.1cdn.com"] [uri "/.svn/wc.db"] [unique_id "aSZDV8We22OvTfd1XiYPTgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 07:03:24
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.172.204 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.172.204 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 02:03:16.958068 2025] [security2:error] [pid 32025:tid 32025] [client 209.50.172.204:9401] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.diepeveen.com"] [uri "/.svn/wc.db"] [unique_id "aSVUtNX-09RLLD4-qtcR4gAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 06:36:54
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.172.204 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.172.204 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:36:49.004730 2025] [security2:error] [pid 7893:tid 7893] [client 209.50.172.204:59261] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.dandksupply.com"] [uri "/.svn/wc.db"] [unique_id "aSVOgQs4cEkuhnUebdx8xwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack