๐ฑ๐ป
garmtech.com
2026-03-25 08:05:36
(2 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 10-05.104.207.38.199.web-spamm ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 10-05.104.207.38.199.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐ฉ๐ช
F242
2026-01-30 05:25:47
(4 months ago)
Wordpress Login or XMLRPC abuse
Web App Attack
๐ช๐ธ
10dencehispahard SL
2026-01-26 07:27:12
(4 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
Anonymous
2025-12-02 09:24:42
(6 months ago)
botnet
DDoS Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 09:56:43
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.38.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.38.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:56:19.852514 2025] [security2:error] [pid 32408:tid 32408] [client 104.207.38.199:32441] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.std-statistics.com"] [uri "/.git/HEAD"] [unique_id "aSQrw9yBiVdN93HcKLy3MwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 08:22:45
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.38.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.38.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:22:37.669397 2025] [security2:error] [pid 3478:tid 3478] [client 104.207.38.199:41345] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barabesi.net"] [uri "/.env"] [unique_id "aSQVzekeNR2bp2TIk7Hz8wAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 06:48:21
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.38.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.38.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:48:16.668273 2025] [security2:error] [pid 21006:tid 21006] [client 104.207.38.199:28689] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "empoweringyou.edgeimprov.com"] [uri "/.env"] [unique_id "aSP_sIM_PSU7_dIl4sk0cgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 06:12:28
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.38.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.38.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:12:19.132296 2025] [security2:error] [pid 11560:tid 11560] [client 104.207.38.199:15835] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.tmaxnews.macjr.com"] [uri "/.env"] [unique_id "aSP3Q8Z2-bXPIxmm903UwAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 05:45:53
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.38.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.38.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 00:45:01.887105 2025] [security2:error] [pid 3364413:tid 3364413] [client 104.207.38.199:33485] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.rogerproperties.com"] [uri "/.env"] [unique_id "aSPw3SP0DtrFdj5FdvWmCgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-13 21:38:23
(6 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
Anonymous
2025-10-29 16:54:33
(7 months ago)
wordpress-trap
Web App Attack
Anonymous
2025-10-27 03:14:00
(7 months ago)
wordpress-trap
Web App Attack
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-10-27 02:09:12
(7 months ago)
WP Login Scan Activities
Web App Attack
Anonymous
2025-10-26 04:46:53
(7 months ago)
wordpress-trap
Web App Attack
Anonymous
2025-10-25 03:38:13
(7 months ago)
wordpress-trap
Web App Attack