Anonymous
2026-01-03 13:39:57
(5 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2026.01.03 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2026.01.03 is noted in report timestamp
show less
Hacking
Brute-Force
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 14:00:50
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐ฆ๐บ
MAGIC
2025-12-20 01:02:37
(5 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-12-09 20:28:48
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 09 15:28:44.352170 2025] [security2:error] [pid 1665:tid 1665] [client 216.26.251.142:40023] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lifevsai.com"] [uri "/.svn/wc.db"] [unique_id "aTiGfGrSKBtth5DgQ86XWwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 10:55:00
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 05:54:54.991767 2025] [security2:error] [pid 5234:tid 5234] [client 216.26.251.142:41503] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "spanishweddinginvitations.com"] [uri "/.git/HEAD"] [unique_id "aTK5_pr19J71rswZpefTjwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 10:30:20
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 05:30:14.555870 2025] [security2:error] [pid 25186:tid 25186] [client 216.26.251.142:57795] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "psychicangelreader.com"] [uri "/.svn/wc.db"] [unique_id "aTK0Nog0NtVgdmsJVTDf6wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 07:27:14
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 02:27:08.570178 2025] [security2:error] [pid 7992:tid 7992] [client 216.26.251.142:23527] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "greensborolimobus.com"] [uri "/.env"] [unique_id "aTKJTOiulWXDqScB48w-QgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 04:09:52
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 23:09:46.872074 2025] [security2:error] [pid 32356:tid 32356] [client 216.26.251.142:43751] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pleaseaddbacon.com"] [uri "/.env"] [unique_id "aTJbCqns0uwL-n4U9BWjJgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-27 19:53:18
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 27 14:53:10.352823 2025] [security2:error] [pid 31640:tid 31640] [client 216.26.251.142:60695] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bonesband.com"] [uri "/.git/HEAD"] [unique_id "aSisJkbdL6Osa2GjbwpqOwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2025-11-26 18:11:57
(6 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 216.26.251.142 (CA/Canada/-): 1 in ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 216.26.251.142 (CA/Canada/-): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 05:22:42
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 00:22:37.528897 2025] [security2:error] [pid 17067:tid 17067] [client 216.26.251.142:46121] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.jonathanwilsonphotography.com"] [uri "/.svn/wc.db"] [unique_id "aSPrndbMlwuU_ec6U8LlIQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:57:33
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:57:18.524432 2025] [security2:error] [pid 3965259:tid 3965336] [client 216.26.251.142:32761] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aafim.org"] [uri "/.env"] [unique_id "aSPlrsHsvdKIeQe-cM8XNAAAAUs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-02 16:38:47
(7 months ago)
This IP was involved in an brute force and password spray attack on 2025/11/02 07:09:24
Port Scan
Brute-Force
Exploited Host
Web App Attack