๐ช๐ธ
Gem
2026-02-13 23:19:51
(4 months ago)
Unauthorized web scan.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-11 19:55:22
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 11 14:55:16.457656 2026] [security2:error] [pid 12707:tid 12707] [client 104.207.35.79:57497] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "architech.com"] [uri "/backend/.env"] [unique_id "aYzepMbeX7gcUKAdLzMjhgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 03:57:01
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:56:56.866056 2026] [security2:error] [pid 1859564:tid 1859564] [client 104.207.35.79:44647] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ic1.biz"] [uri "/wp/.git/config"] [unique_id "aYqsiIzkfWF0040cGvVk2QAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 03:32:00
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:31:52.900884 2026] [security2:error] [pid 8793:tid 8793] [client 104.207.35.79:19037] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "iat.com.pa"] [uri "/.env.staging"] [unique_id "aYqmqJR6jrnvz__lF3d09QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 02:09:27
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 21:09:23.269360 2026] [security2:error] [pid 6840:tid 6840] [client 104.207.35.79:24395] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hydrogenplus.net"] [uri "/.git/config"] [unique_id "aYqTU72yQnOhKbvWaXMmhAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 01:23:02
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 20:22:56.145278 2026] [security2:error] [pid 20972:tid 20980] [client 104.207.35.79:9961] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "khalessilaw.com"] [uri "/site/.git/config"] [unique_id "aYqIcBYqCguJMhGb04AIXQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 00:30:39
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 19:30:35.314079 2026] [security2:error] [pid 878609:tid 878658] [client 104.207.35.79:61843] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kettleofgold.com"] [uri "/.env.save"] [unique_id "aYp8K4l0Zv13If8rJtj7QAAAAUo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
conseilgouz
2026-01-07 02:18:57
(5 months ago)
upe-12 : Block return, carriage return, ... characters=>/index.php?catid=8&catid=%27&id=287& ...
show more
upe-12 : Block return, carriage return, ... characters=>/index.php?catid=8&catid=%27&id=287&option=com_content&view=article(')
show less
Hacking
Anonymous
2025-12-12 11:37:58
(6 months ago)
botnet
DDoS Attack
Anonymous
2025-11-28 17:24:16
(6 months ago)
Attempted brute force login to web vpn 12 time(s); last attempt for 2025.11.28 is noted in report ti ...
show more
Attempted brute force login to web vpn 12 time(s); last attempt for 2025.11.28 is noted in report timestamp
show less
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-11-24 04:55:32
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:55:25.776466 2025] [security2:error] [pid 13527:tid 13527] [client 104.207.35.79:58533] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "a2thdoc.com"] [uri "/.svn/wc.db"] [unique_id "aSPlPWLNRqakjEd_RN775AAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:18:08
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:18:04.963851 2025] [security2:error] [pid 25672:tid 25672] [client 104.207.35.79:41321] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.cafink.name"] [uri "/.env"] [unique_id "aSPcfENSPvz0Vumb12vbTQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 01:57:07
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 20:57:00.853845 2025] [security2:error] [pid 13117:tid 13117] [client 104.207.35.79:37835] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.limegreenvinyl.com"] [uri "/.svn/wc.db"] [unique_id "aSO7bNNvWSm0VmvzPl5JnwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-17 04:27:49
(7 months ago)
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.11.17 is noted in report tim ...
show more
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.11.17 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-11-13 23:22:32
(7 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack