๐บ๐ธ
TPI-Abuse
2026-07-25 17:51:59
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 72.37.217.3 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 72.37.217.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 13:51:53.227407 2026] [security2:error] [pid 1354967:tid 1354967] [client 72.37.217.3:43375] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "artspacecleveland.com"] [uri "/.env"] [unique_id "amT3uWLbCGNS-0bEBMLeDgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 03:11:40
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 72.37.217.3 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 72.37.217.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 23:11:35.464321 2026] [security2:error] [pid 703426:tid 703426] [client 72.37.217.3:40323] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "artigelisim.com"] [uri "/.env"] [unique_id "amQpZ37OOMI0eVr46A8jwAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
librebit
2026-07-25 00:57:39
(1 day ago)
Brute force
Brute-Force
๐บ๐ธ
mnsf
2026-07-25 00:05:37
(1 day ago)
Abuse Detected (10)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 19:03:43
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 72.37.217.3 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 72.37.217.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 15:03:35.466355 2026] [security2:error] [pid 237907:tid 237907] [client 72.37.217.3:40997] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "artevoix.com"] [uri "/.env"] [unique_id "amO3B3zCuhbFtmPuWEbRrgAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 06:51:39
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 72.37.217.3 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 72.37.217.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 02:51:35.201473 2026] [security2:error] [pid 362:tid 362] [client 72.37.217.3:38431] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "asterioland.com"] [uri "/.env"] [unique_id "amMLdzeYJ83VF6-_zJ2UhQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
conrad10781
2026-07-24 04:59:49
(2 days ago)
nginx-dot-env
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 21:21:53
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 72.37.217.3 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 72.37.217.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 17:21:46.791177 2026] [security2:error] [pid 1323556:tid 1323556] [client 72.37.217.3:33265] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "andysharp.com"] [uri "/.env"] [unique_id "amE0ansPW6U-wKaMgX8PsgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-07-19 13:38:07
(6 days ago)
[DC: IP:151.1.252.27] ntopng alert: blacklisted_server_contact
Hacking
๐ฉ๐ช
big-cloud.nl
2026-06-26 00:09:24
(1 month ago)
Try to access /xmlrpc.php
Web App Attack
๐ง๐ท
ICS Labs
2026-06-22 15:47:12
(1 month ago)
ICS Labs identified 72.37.217.3 as a malicious indicator from threat intelligence.
DDoS Attack
Port Scan
Hacking
Brute-Force
Exploited Host
๐ฌ๐ง
Oakley
2026-06-17 11:49:31
(1 month ago)
(mod_security) mod_security (id:900177) triggered by 72.37.217.3 (US/United States/-): 5 in the last ...
show more
(mod_security) mod_security (id:900177) triggered by 72.37.217.3 (US/United States/-): 5 in the last 900 secs
show less
Web App Attack
Hacking
๐บ๐ธ
xmission.com
2026-06-10 02:11:39
(1 month ago)
Blocked by UFW (TCP on 9101)
Source port: 58264
TTL: 51
Packet length: 60
TOS: 0x08
This report (fo ...
show more
Blocked by UFW (TCP on 9101)
Source port: 58264
TTL: 51
Packet length: 60
TOS: 0x08
This report (for 72.37.217.3) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ฌ๐ง
PeravixGroup
2026-06-08 16:45:58
(1 month ago)
Honeypot detection: Cryptocurrency mining pool login / XMRig botnet probe on port 5900. Severity: ME ...
show more
Honeypot detection: Cryptocurrency mining pool login / XMRig botnet probe on port 5900. Severity: MEDIUM. Aaran.cloud
show less
Port Scan
Brute-Force
๐ฉ๐ช
BestFans.com
2026-06-07 21:38:33
(1 month ago)
Credential brute-force attacks on webpage logins
Brute-Force