๐ฉ๐ช
iNetWorker
2026-06-06 19:39:16
(3 weeks ago)
trolling for resource vulnerabilities
Web App Attack
๐จ๐ญ
4server
2026-06-06 19:37:25
(3 weeks ago)
[SatJun0621:37:17.9341982026][security2:error][pid3609228:tid3609419][client104.207.39.59:0]ModSecur ...
show more
[SatJun0621:37:17.9341982026][security2:error][pid3609228:tid3609419][client104.207.39.59:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".svn\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.hostingedominio.com\"][uri\"/.svn/wc.db\"][unique_id\"aiR27bQDMbY05qs7z2AfQAAAAEM\"]
show less
Hacking
Web App Attack
๐ฎ๐น
VHosting
2026-02-18 22:11:31
(4 months ago)
Detected attack and reported by a human
Brute-Force
Web App Attack
SSH
DDoS Attack
Exploited Host
Bad Web Bot
๐จ๐ฆ
SSH-Admin
2026-02-07 17:12:28
(4 months ago)
Probing for Exploits
Exploited Host
Web App Attack
๐บ๐ธ
fbarela
2026-01-25 08:00:04
(5 months ago)
FortiGate SSL VPN login failures.
Hacking
Brute-Force
๐ซ๐ท
tilellit.pro
2026-01-20 01:57:37
(5 months ago)
Fail2Ban banned 104.207.39.59 for security violations in jail wp-armour. Log: 2026/01/20 01:57:36 [e ...
show more
Fail2Ban banned 104.207.39.59 for security violations in jail wp-armour. Log: 2026/01/20 01:57:36 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 104.207.39.59 | Target: wplogin" , client: 104.207.39.59, server: [REDACTED], request: "POST /wp-login.php HTTP/2.0", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
๐จ๐ฆ
SSH-Admin
2025-12-27 13:45:08
(6 months ago)
Probing for Exploits
Exploited Host
Web App Attack
๐ช๐ธ
10dencehispahard SL
2025-12-10 06:35:15
(6 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
๐บ๐ธ
TPI-Abuse
2025-12-02 23:09:01
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.39.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.39.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 18:08:58.702130 2025] [security2:error] [pid 15763:tid 15784] [client 104.207.39.59:9585] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "slingshotpro.com"] [uri "/.svn/wc.db"] [unique_id "aS9xitqboKb5Z4hlk7DAcQAAAM4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 21:40:29
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.39.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.39.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 16:40:25.403058 2025] [security2:error] [pid 25967:tid 25967] [client 104.207.39.59:32245] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barbaraehill.com"] [uri "/.git/HEAD"] [unique_id "aS9cyXpX-r1hCoMFde-LAAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 20:07:42
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.39.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.39.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 15:07:38.199735 2025] [security2:error] [pid 12011:tid 12035] [client 104.207.39.59:25029] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "handsonresearch.com"] [uri "/.git/HEAD"] [unique_id "aS9HCsxwLWRCVbsQ-LCiEQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 17:47:15
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.39.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.39.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 12:47:06.743758 2025] [security2:error] [pid 19237:tid 19237] [client 104.207.39.59:58031] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bigheartskitchen.com"] [uri "/.git/HEAD"] [unique_id "aS8mGtlOADUfCYYemTjVtgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 10:28:29
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.39.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.39.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 05:28:22.174305 2025] [security2:error] [pid 2194844:tid 2194844] [client 104.207.39.59:40829] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rogerproperties.com"] [uri "/.svn/wc.db"] [unique_id "aS6_RlClKEd71MCrNcvTYwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 05:43:03
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.39.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.39.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 00:42:57.617129 2025] [security2:error] [pid 1936:tid 1936] [client 104.207.39.59:18523] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gransla.com"] [uri "/.svn/wc.db"] [unique_id "aS58YZcLXcoeefrRO8Q-9gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 04:35:46
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.39.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.39.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 01 23:34:57.177404 2025] [security2:error] [pid 24105:tid 24105] [client 104.207.39.59:47483] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "internationalexecutiveservice.com"] [uri "/.git/HEAD"] [unique_id "aS5scahpW6FGIUmv3mVAIQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack