๐ช๐ธ
librebit
2026-06-14 01:20:46
(1 day ago)
Brute force
Brute-Force
Anonymous
2026-06-13 01:02:02
(2 days ago)
Malicious activity detected
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-01 03:01:19
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 31 22:01:16.380563 2026] [security2:error] [pid 4184944:tid 4184944] [client 104.207.33.204:46727] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jolankagroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jolankagroup.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aX7B_JZZqm2T5LFi5phFbgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-01-22 02:24:59
(4 months ago)
104.207.33.204 - - [22/Jan/2026:03:24:49 +0100] "GET /wp-login.php HTTP/1.1" 404 47 "-" "Mozilla/5.0 ...
show more
104.207.33.204 - - [22/Jan/2026:03:24:49 +0100] "GET /wp-login.php HTTP/1.1" 404 47 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/115.0.0.0 Safari/537.36 Edg/115.0.1901.203"
...
show less
Web App Attack
๐ฎ๐ฉ
Burayot
2026-01-21 07:35:09
(4 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 104.207.33.204 (US/United States/-) ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 104.207.33.204 (US/United States/-): 1 in the last 3600 secs
show less
Web App Attack
๐ฆ๐บ
MAGIC
2026-01-19 02:07:37
(4 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
2025-12-02 09:18:23
(6 months ago)
botnet
DDoS Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 07:16:16
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 02:16:10.775779 2025] [security2:error] [pid 7694:tid 7694] [client 104.207.33.204:9211] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.tmaxnews.macjr.com"] [uri "/.git/HEAD"] [unique_id "aSVXuky8cjLfhz_XCZV24gAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 06:27:23
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:27:13.436378 2025] [security2:error] [pid 914790:tid 914790] [client 104.207.33.204:38329] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.yellowbrickfoundation.com"] [uri "/.svn/wc.db"] [unique_id "aSVMQUAUtFLu_o6dD0j2wgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:53:53
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:53:48.938018 2025] [security2:error] [pid 32636:tid 32636] [client 104.207.33.204:59813] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.trademartghana.com"] [uri "/.env"] [unique_id "aSVEbEXvl9OF9jh1zQluwgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:25:15
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:25:08.702064 2025] [security2:error] [pid 29524:tid 29524] [client 104.207.33.204:39213] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.computerizer.org"] [uri "/.git/HEAD"] [unique_id "aSU9tBPJE4paXOaY4-e78wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:36:10
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:36:03.550836 2025] [security2:error] [pid 14386:tid 14386] [client 104.207.33.204:25135] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jiveturkeyband.com"] [uri "/.svn/wc.db"] [unique_id "aSUyM_tsU73BnYVyxIsW7wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:20:50
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:20:43.386978 2025] [security2:error] [pid 13755:tid 13799] [client 104.207.33.204:43911] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ozworkshop.com"] [uri "/.svn/wc.db"] [unique_id "aSUum_PKifHcHLquJ66DSAAAAQs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:14:01
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:13:45.533827 2025] [security2:error] [pid 11126:tid 11126] [client 104.207.33.204:43449] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.splashstation.org"] [uri "/.svn/wc.db"] [unique_id "aSUCyXTMSeTbt4ecn-bcxgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 00:42:12
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.204 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:42:02.663830 2025] [security2:error] [pid 6370:tid 6370] [client 104.207.33.204:12011] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.nvafc.com"] [uri "/.env"] [unique_id "aST7Wm-S1tfFqzayhy17_QAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack