🇺🇸
lostswordfish.com
2026-08-09 11:54:04
(1 month ago)
Wordfence waf block on uvfousor WPIDD
Web App Attack
Anonymous
2026-07-23 06:36:55
(1 month ago)
WordPress Brute Force
Brute-Force
🇩🇪
stinpriza
2026-07-12 04:55:24
(2 months ago)
Web App Attack
Web App Attack
🇩🇪
big-cloud.nl
2026-07-06 20:20:23
(2 months ago)
Try to access /xmlrpc.php
Web App Attack
🇫🇷
pm33
2026-07-06 10:02:48
(2 months ago)
Wordpress login attempts
Brute-Force
🇧🇪
Saec
2026-06-28 20:45:06
(2 months ago)
Jarvis auto-ban: CF honeypot path /wp-login.php (1× on saec.me)
Port Scan
Web App Attack
🇺🇸
lostswordfish.com
2026-06-27 09:08:04
(2 months ago)
Wordfence waf block on taussigtravel
Web App Attack
Anonymous
2026-06-27 02:56:57
(2 months ago)
[web.zebs.ch] httpd-login-spray-site: sites=asiqual.com; logs=/var/log/httpd/domains/asiqual.com.log ...
show more
[web.zebs.ch] httpd-login-spray-site: sites=asiqual.com; logs=/var/log/httpd/domains/asiqual.com.log; samples=site_wide=true | distinct_ips=12 | /wp-login.php
show less
Hacking
Web App Attack
🇦🇺
RedBear IT
2026-03-26 10:00:37
(5 months ago)
"DDoS against public endpoint"
DDoS Attack
🇧🇪
taivas.nl
2026-03-23 10:32:13
(5 months ago)
Wordpress_xmlrpc_attack
Bad Web Bot
🇺🇸
myagent.site
2026-02-15 12:14:33
(6 months ago)
Blocking for trying to access an exploit file: /new/.git/config
Hacking
🇺🇸
TPI-Abuse
2026-02-15 11:38:21
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 06:38:14.842966 2026] [security2:error] [pid 30990:tid 30990] [client 104.207.33.63:63069] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "taylorandatlantic.net"] [uri "/v2/.git/config"] [unique_id "aZGwJqKyS95ofbnb2hm_oQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
nekopavel
2026-02-15 11:33:16
(6 months ago)
104.207.33.63 - - [15/Feb/2026:12:33:13 +0100]"GET /.env.production HTTP/1.1" 200 0"-" thighs.moe "M ...
show more
104.207.33.63 - - [15/Feb/2026:12:33:13 +0100]"GET /.env.production HTTP/1.1" 200 0"-" thighs.moe "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36""0.003" "0.000""Ashburn" "US"
104.207.33.63 - - [15/Feb/2026:12:33:13 +0100]"GET /.env.staging HTTP/1.1" 200 0"-" thighs.moe "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36""0.003" "0.000""Ashburn" "US"
104.207.33.63 - - [15/Feb/2026:12:33:13 +0100]"GET /api/.env HTTP/1.1" 404 147"-" thighs.moe "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36""0.001" "0.000""Ashburn" "US"
...
show less
Hacking
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-15 11:15:42
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 06:15:37.868541 2026] [security2:error] [pid 3964:tid 3964] [client 104.207.33.63:24209] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "taniagedik.com"] [uri "/api/.git/config"] [unique_id "aZGq2c9JApJZhtla_HYEvgAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-15 06:30:14
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 01:30:09.311938 2026] [security2:error] [pid 23664:tid 23664] [client 104.207.33.63:44165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "taafe.xyz"] [uri "/.env.production"] [unique_id "aZFn8ZJDaAyjnt1zv8T5igAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack