Anonymous
2025-12-22 13:56:41
(5 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 05:38:02
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.237.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.237.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:37:56.430735 2025] [security2:error] [pid 3538470:tid 3538525] [client 216.26.237.59:25565] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.wwwhst.com"] [uri "/.git/HEAD"] [unique_id "aSaSNI2RI5GiWQ_pNfSwEQAAAQo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 00:57:38
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.237.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.237.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 19:57:32.264146 2025] [security2:error] [pid 9053:tid 9053] [client 216.26.237.59:51783] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aschmitz.ewingmissouri.com"] [uri "/.svn/wc.db"] [unique_id "aSZQfOn5hY4bYcaOHMTmJwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:25:06
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.237.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.237.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:25:02.324225 2025] [security2:error] [pid 9282:tid 9282] [client 216.26.237.59:54663] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "desertrosedoves.com"] [uri "/.svn/wc.db"] [unique_id "aSUhjjGoFWjEYEEjyXyETQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:47:28
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.237.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.237.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:47:23.395504 2025] [security2:error] [pid 21895:tid 21895] [client 216.26.237.59:9293] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "coroneta.com"] [uri "/.svn/wc.db"] [unique_id "aSUKq9ppNWZ-K_m99ZUmBQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 05:45:13
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.237.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.237.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 00:45:07.956156 2025] [security2:error] [pid 2501:tid 2501] [client 216.26.237.59:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.mail-pmg.com"] [uri "/.env"] [unique_id "aSPw479nzqTUaBUy2tHcawAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:36:58
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.237.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.237.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:36:45.188963 2025] [security2:error] [pid 12961:tid 12961] [client 216.26.237.59:39111] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.jacobyonline.com"] [uri "/.git/HEAD"] [unique_id "aSPg3d0PQn2njK27M_dNPAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2025-11-04 16:41:03
(7 months ago)
Web App Attack
๐ซ๐ท
applemooz
2025-11-01 12:06:37
(7 months ago)
WordPress XMLRPC Brute Force Attacks
...
Brute-Force
Web App Attack
Anonymous
2025-10-30 14:18:25
(7 months ago)
WordPress Brute Force
Brute-Force
๐ณ๐ฑ
Site.eu
2025-10-30 10:21:28
(7 months ago)
Excessive 404/403 errors
Brute-Force
๐ฉ๐ช
Marc
2025-10-29 18:49:30
(7 months ago)
Brute-Force
Web App Attack
๐ฆ๐บ
AWW-Admin
2025-10-29 15:32:53
(7 months ago)
(wordpress) Failed wordpress login from 216.26.237.59 (US/United States/-)
Brute-Force
Anonymous
2025-10-15 05:26:13
(7 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
Anonymous
2025-10-06 06:03:59
(8 months ago)
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.10.06 is noted in report tim ...
show more
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.10.06 is noted in report timestamp
show less
Hacking
Brute-Force