Anonymous
2026-04-20 19:18:37
(1 month ago)
"GET http://feeds.bstnet.org/.svn/wc.db HTTP/1.1"
Hacking
Web App Attack
πΊπΈ
mnsf
2026-02-19 18:05:38
(3 months ago)
Scanning/Probing (23)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-19 05:27:04
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.32.151 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.32.151 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 19 00:26:46.025657 2026] [security2:error] [pid 17211:tid 17211] [client 104.207.32.151:52537] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "krukgpt.com"] [uri "/backend/.env"] [unique_id "aZafFsCjYHhvPHpjKphabgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-19 02:12:53
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.32.151 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.32.151 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 21:12:46.589905 2026] [security2:error] [pid 30834:tid 30834] [client 104.207.32.151:11081] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kathleenullmann.com"] [uri "/api/.git/config"] [unique_id "aZZxntWf5oQtvlpr7V96GgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-19 01:50:03
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.32.151 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.32.151 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 20:49:57.720479 2026] [security2:error] [pid 16540:tid 16540] [client 104.207.32.151:45089] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "karinproctor.com"] [uri "/dev/.git/config"] [unique_id "aZZsRd_MMyaq9E1nNjbSewAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-19 00:26:57
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.32.151 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.32.151 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 19:26:50.522696 2026] [security2:error] [pid 22749:tid 22749] [client 104.207.32.151:23565] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "voltbox.com"] [uri "/.env.production"] [unique_id "aZZYyk9y3DyRJCv4z1fd0wAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-18 19:58:04
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.32.151 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.32.151 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 14:58:00.452046 2026] [security2:error] [pid 1303938:tid 1303941] [client 104.207.32.151:44649] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "toughcatcompany.com"] [uri "/test/.git/config"] [unique_id "aZYZyK0LpJ7TpfWKnINQaAAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-02-18 17:07:09
(3 months ago)
Scanning/Probing (13)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-18 13:50:05
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.32.151 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.32.151 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 08:49:56.416232 2026] [security2:error] [pid 21039:tid 21039] [client 104.207.32.151:56935] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "woodburymeadows.org"] [uri "/site/.git/config"] [unique_id "aZXDhHMauESAU3vB2ajYWQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-18 13:19:36
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.32.151 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.32.151 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 08:19:31.291364 2026] [security2:error] [pid 17270:tid 17290] [client 104.207.32.151:63601] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "williampower.com"] [uri "/frontend/.env"] [unique_id "aZW8Y9BdpYB5FJXJ-_VtgAAAAM8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
F242
2026-01-30 05:13:15
(4 months ago)
Wordpress Login or XMLRPC abuse
Web App Attack
Anonymous
2025-12-11 12:34:27
(5 months ago)
botnet
DDoS Attack
πΊπΈ
techboy117
2025-11-14 00:16:07
(6 months ago)
Blocking due to password spraying.
Brute-Force
π¨π¦
wil.com
2025-10-15 17:31:26
(7 months ago)
GlobalProtect login attempts with user cllee.
VPN IP
Brute-Force
Anonymous
2025-10-08 01:43:11
(7 months ago)
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.10.08 is noted in report tim ...
show more
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.10.08 is noted in report timestamp
show less
Hacking
Brute-Force