๐ณ๐ฑ
Savvii
2026-04-03 09:38:35
(2 months ago)
20 attempts against mh_ha-misbehave-ban on ethyl
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TRoden
2026-02-06 07:23:49
(4 months ago)
Geo Block Plugin: Escalation flag(s): rce_attempt
Hacking
๐บ๐ธ
TPI-Abuse
2025-12-29 09:56:06
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.38.55 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.38.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 04:56:00.719025 2025] [security2:error] [pid 4001:tid 4001] [client 104.207.38.55:35851] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "konahawaiirealty.com"] [uri "/.svn/wc.db"] [unique_id "aVJQMPLoylibv5FYFo-K8gAAADM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 06:45:30
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.38.55 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.38.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 01:45:24.846724 2025] [security2:error] [pid 11666:tid 11666] [client 104.207.38.55:48011] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barecreationsaz.com"] [uri "/.git/HEAD"] [unique_id "aVIjhEuEMyxK3zr788VdwwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
oncord
2025-12-23 14:15:34
(5 months ago)
Form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2025-12-09 04:29:09
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.38.55 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.38.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 08 23:29:03.548516 2025] [security2:error] [pid 23263:tid 23263] [client 104.207.38.55:47973] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rlysue.com"] [uri "/.svn/wc.db"] [unique_id "aTeljy7EH8JLSGtAk1yYQgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-09 03:14:31
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.38.55 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.38.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 08 22:14:25.625913 2025] [security2:error] [pid 6877:tid 6877] [client 104.207.38.55:23805] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "highgroundsconsulting.com"] [uri "/.env"] [unique_id "aTeUEc4AOxqzOTg98gT8mwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-07 12:34:01
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.38.55 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.38.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 07 07:33:54.287195 2025] [security2:error] [pid 16622:tid 16622] [client 104.207.38.55:16389] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "capefearastro.org"] [uri "/.env"] [unique_id "aTV0MttHkgkyRuJpth6YXwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 16:15:55
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.38.55 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.38.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 11:15:50.896322 2025] [security2:error] [pid 20567:tid 20567] [client 104.207.38.55:18335] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flyingdodostudio.com"] [uri "/.git/HEAD"] [unique_id "aTMFNil4tK31rLZm8_uT6AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 05:45:19
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.38.55 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.38.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 00:45:13.797696 2025] [security2:error] [pid 2903:tid 2903] [client 104.207.38.55:33449] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gdrankin.com"] [uri "/.env"] [unique_id "aTJxaScNs2wZeELHwHYbqgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2025-11-30 04:35:38
(6 months ago)
Web App Attack
๐ช๐ธ
10dencehispahard SL
2025-11-21 07:13:32
(6 months ago)
WP probing for vulnerabilities
Hacking
Exploited Host
Anonymous
2025-11-14 23:03:55
(6 months ago)
wordpress-trap
Web App Attack
Anonymous
2025-11-14 01:44:29
(6 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
Anonymous
2025-10-18 10:44:12
(7 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack