๐ซ๐ท
MatStef132
2026-05-19 21:11:04
(2 weeks ago)
MatShield L7: blocked on mathost.eu (ua-quarantined)
Bad Web Bot
๐ณ๐ฑ
MatStef132
2026-05-19 20:59:02
(2 weeks ago)
MatShield L7: blocked on dstat.selify.io (ua-quarantined)
Bad Web Bot
๐ซ๐ท
MatStef132
2026-05-19 20:55:41
(2 weeks ago)
MatShield L7: blocked on mathost.eu (ua-quarantined)
Bad Web Bot
๐ณ๐ฑ
MatStef132
2026-05-15 13:29:59
(2 weeks ago)
MatShield L7 blocked request to fivemtest.mathost.eu for reason ua-q
DDoS Attack
Bad Web Bot
Web App Attack
๐ซ๐ท
MatStef132
2026-05-14 21:32:37
(3 weeks ago)
[mathost.eu] ua-q
DDoS Attack
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-04-09 21:00:11
(1 month ago)
Reported by TangerangKota-CSIRT. Status: MALICIOUS
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-04-09 20:16:54
(1 month ago)
[WAZUH] Administrative account creation during non-business hours - Jakarta timezone (WIB)
Hacking
Web App Attack
๐ฉ๐ช
F242
2026-01-30 06:19:25
(4 months ago)
Wordpress Login or XMLRPC abuse
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 11:49:49
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 06:49:42.399043 2025] [security2:error] [pid 1629:tid 1629] [client 104.207.37.40:38915] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.springfield50.org"] [uri "/.git/HEAD"] [unique_id "aSbpVgQoRK8zwBjYQifx0wAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 10:49:16
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 05:49:09.417622 2025] [security2:error] [pid 10810:tid 10810] [client 104.207.37.40:53527] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.tantrona.osmansirel.com"] [uri "/.svn/wc.db"] [unique_id "aSbbJaql8_gEu02szXgfMgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 08:37:28
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 03:37:24.797366 2025] [security2:error] [pid 9607:tid 9675] [client 104.207.37.40:39531] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.stateabbreviationlist.com"] [uri "/.svn/wc.db"] [unique_id "aSa8RPkDcg6wFbLmNJ0wMQAAAgM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 07:02:56
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 02:02:49.881193 2025] [security2:error] [pid 31372:tid 31372] [client 104.207.37.40:11563] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.secuencia.com"] [uri "/.git/HEAD"] [unique_id "aSamGSGetvnJD9KNGM2RswAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
10dencehispahard SL
2025-11-26 06:00:40
(6 months ago)
Unauthorized login attempts [ accesslogs]
Brute-Force
๐ท๐ธ
Smel
2025-11-26 05:52:05
(6 months ago)
HTTP/80/443/8080 Unauthorized Probe, Hack -
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 01:26:53
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.37.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.37.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 20:26:47.829962 2025] [security2:error] [pid 2982:tid 2982] [client 104.207.37.40:49237] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cienmalos.hodlmoser.com"] [uri "/.git/HEAD"] [unique_id "aSZXV5Cd8wLre0ERYzhbWQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack