🇫🇷
Sklurk
2026-08-05 02:32:35
(4 weeks ago)
Web App Attack
Web App Attack
🇫🇷
Sklurk
2026-08-04 01:54:11
(1 month ago)
Web App Attack
Web App Attack
🇲🇹
Malta
2026-08-01 22:23:47
(1 month ago)
104.207.36.33 - - [02/Aug/2026:00:23:46 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows N ...
show more
104.207.36.33 - - [02/Aug/2026:00:23:46 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
show less
Hacking
Web App Attack
VPN IP
🇺🇸
--KBXX--
2026-07-13 22:34:02
(1 month ago)
bfa, m365
Brute-Force
🇧🇪
cmbplf
2026-05-06 02:34:52
(3 months ago)
697 requests with url.path *.env
Brute-Force
Bad Web Bot
🇦🇺
RedBear IT
2026-03-26 10:00:37
(5 months ago)
"DDoS against public endpoint"
DDoS Attack
🇺🇸
oncord
2025-12-29 18:52:02
(8 months ago)
Form spam
Web Spam
🇦🇺
MAGIC
2025-12-15 02:02:11
(8 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
🇺🇸
myagent.site
2025-12-14 07:03:59
(8 months ago)
Blocking for trying to access an exploit file: //kickstart.php
Hacking
🇺🇸
TPI-Abuse
2025-12-10 12:58:09
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.36.33 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.36.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 10 07:58:05.698564 2025] [security2:error] [pid 24027:tid 24027] [client 104.207.36.33:41633] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "saltybluemexico.com"] [uri "/.git/HEAD"] [unique_id "aTluXXx8NVqWcNpkUb7PdQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇷🇸
Smel
2025-12-09 15:52:01
(8 months ago)
HTTP/80/443/8080 Unauthorized Probe, Hack -
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2025-12-08 04:40:17
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.36.33 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.36.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 07 23:40:10.772485 2025] [security2:error] [pid 13488:tid 13488] [client 104.207.36.33:42177] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bidsonlineauctions.com"] [uri "/.env"] [unique_id "aTZWqlKtXrBCIv0yhJSiXAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-12-07 20:45:53
(8 months ago)
wordpress-trap
Web App Attack
🇺🇸
TPI-Abuse
2025-12-05 11:36:12
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.36.33 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.36.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 06:36:06.495301 2025] [security2:error] [pid 11662:tid 11662] [client 104.207.36.33:53139] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "halvaughan.com"] [uri "/.git/HEAD"] [unique_id "aTLDpmzbH-UvX8pfAqhd2wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-12-05 00:56:26
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.36.33 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.36.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 19:56:23.292089 2025] [security2:error] [pid 24522:tid 24522] [client 104.207.36.33:46353] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fredlandia.com"] [uri "/.env"] [unique_id "aTIttzzkj-zCmQPUVMcwZQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack