🇺🇸
superflea2828
2026-09-04 06:31:37
(5 days ago)
217.181.80.137 - - [04/Sep/2026:06:31:33 +0000] "GET http://34.121.187.44/.env HTTP/1.1" 404 532 "-" ...
show more
217.181.80.137 - - [04/Sep/2026:06:31:33 +0000] "GET http://34.121.187.44/.env HTTP/1.1" 404 532 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/116.0.5845.140 Safari/537.36"
...
show less
Web App Attack
🇫🇷
a.mohamed.go
2026-09-04 00:49:03
(6 days ago)
217.181.80.137 - - [04/Sep/2026:00:49:03 +0000] "GET http://91.121.55.87/.env HTTP/1.1" 404 187 "-" ...
show more
217.181.80.137 - - [04/Sep/2026:00:49:03 +0000] "GET http://91.121.55.87/.env HTTP/1.1" 404 187 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/116.0.5845.140 Safari/537.36"
...
show less
Hacking
Web App Attack
🇮🇹
CoreTech srl
2026-08-25 03:08:58
(2 weeks ago)
cloudlinux2 fail2ban: 2026-08-25 05:05:49,152 fail2ban.filter [1464]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-08-25 05:05:49,152 fail2ban.filter [1464]: INFO [plesk-modsecurity] Found 217.181.95.74 - 2026-08-25 05:05:49cloudlinux2 fail2ban: 2026-08-25 05:05:52,955 fail2ban.filter [1464]: INFO [plesk-wordpress] Found 195.63.26.196 - 2026-08-25 05:05:52cloudlinux2 fail2ban: 2026-08-25 05:05:51,828 fail2ban.filter [1464]: INFO [plesk-wordpress] Found 217.181.80.137 - 2026-08-25 05:05:51cloudlinux2 fail2ban: 2026-08-25 05:05:53,570 fail2ban.filter [1464]: INFO [plesk-wordpress] Found 217.181.85.30 - 2026-08-25 05:05:53cloudlinux2 fail2ban: 2026-08-25 05:05:50,443 fail2ban.filter [1464]: INFO [plesk-wordpress] Found 195.63.17.153 - 2026-08-25 05:05:50cloudlinux2 fail2ban: 2026-08-25 05:05:55,063 fail2ban.filter [1464]: INFO [plesk-wordpress] Found 195.63.1.78 - 2026-08-25 05:05:54cloudlinux2 fail2ban: 2026-08-25 05:07:18,779 fail2ban.filter [1464]: INFO [plesk-wordpress] Found 217.181.71.163 - 2026-08-25 05:07:18cloudli
show less
Web App Attack
🇮🇩
Burayot
2026-08-20 00:21:21
(3 weeks ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 217.181.80.137 (CA/Canada/-): 1 in ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 217.181.80.137 (CA/Canada/-): 1 in the last 3600 secs
show less
Web App Attack
🇩🇪
DocNetzwerk
2026-03-25 00:54:09
(5 months ago)
(wordpress) Failed wordpress login from 217.181.80.137 (CA/Canada/-)
Brute-Force
🇺🇸
TPI-Abuse
2026-03-10 06:46:15
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 217.181.80.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 217.181.80.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 10 02:46:07.495783 2026] [security2:error] [pid 14564:tid 14564] [client 217.181.80.137:15604] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||ultratecnologia.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "ultratecnologia.com"] [uri "/wp-login.php"] [unique_id "aa--L5SgDvzF8sXIB_f3LQAAAAs"], referer: https://ultratecnologia.com/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-03-10 04:31:43
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 217.181.80.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 217.181.80.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 10 00:31:35.157248 2026] [security2:error] [pid 30772:tid 30772] [client 217.181.80.137:37822] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.indiahouseportland.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.indiahouseportland.com"] [uri "/wp-login.php"] [unique_id "aa-ep4Ef3Gp9Ce-jui-GPgAAAAM"], referer: https://www.indiahouseportland.com/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack