๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(2 months ago)
"DDoS against public endpoint"
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-02-19 03:41:27
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 22:41:21.150138 2026] [security2:error] [pid 27170:tid 27170] [client 104.207.35.40:59235] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kim-porter.com"] [uri "/test/.git/config"] [unique_id "aZaGYVjQz6L-zTm8GQRMRwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-19 03:21:40
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 22:21:32.823906 2026] [security2:error] [pid 20077:tid 20077] [client 104.207.35.40:49025] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "keyspring-niseko.com"] [uri "/site/.git/config"] [unique_id "aZaBvPoEZsWLKdXqtI65pAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
myagent.site
2026-02-19 01:46:23
(3 months ago)
Blocking for trying to access an exploit file: /test/.git/config
Hacking
๐บ๐ธ
TPI-Abuse
2026-02-18 23:13:09
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 18:13:04.637849 2026] [security2:error] [pid 23306:tid 23306] [client 104.207.35.40:27173] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "veracurnow.com"] [uri "/api/.git/config"] [unique_id "aZZHgJqrRP8RQkglmyE3QwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 18:29:15
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 13:29:09.606543 2026] [security2:error] [pid 26207:tid 26207] [client 104.207.35.40:45663] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theurbanlogger.com"] [uri "/backup/.git/config"] [unique_id "aZYE9b6A7HcdlWzvwrgDTQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Mario Silber
2026-02-18 11:57:05
(3 months ago)
(mod_security) mod_security triggered on hostname [redacted] 104.207.35.40 (US/United States/-)
SQL Injection
๐ฉ๐ช
stinpriza
2026-02-07 21:56:25
(3 months ago)
Web App Attack
Web App Attack
๐ช๐ธ
10dencehispahard SL
2026-01-26 07:24:22
(4 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
Anonymous
2025-12-09 16:53:09
(5 months ago)
botnet
DDoS Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 06:47:44
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:47:38.947636 2025] [security2:error] [pid 22981:tid 22981] [client 104.207.35.40:38631] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.globesportsmanagement.vangentholding.com"] [uri "/.env"] [unique_id "aSVRCifgSGxNIMe5ksA8_gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:21:14
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:21:10.974334 2025] [security2:error] [pid 8949:tid 8949] [client 104.207.35.40:33945] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eclipsesoftware.biz"] [uri "/.env"] [unique_id "aSU8xhSL_NdgQ2qeARqm3wAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-14 14:44:29
(6 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
Anonymous
2025-10-27 09:02:38
(7 months ago)
wordpress-trap
Web App Attack
Anonymous
2025-10-27 02:58:18
(7 months ago)
wordpress-trap
Web App Attack