๐ช๐ธ
10dencehispahard SL
2026-01-16 08:06:43
(4 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 14:01:55
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐บ๐ธ
TPI-Abuse
2025-12-05 11:12:38
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 06:12:29.779556 2025] [security2:error] [pid 9190:tid 9190] [client 104.207.40.39:44895] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whaletailpuckerbutt.com"] [uri "/.svn/wc.db"] [unique_id "aTK-Hc98RSXuVP4Y5eF6hgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 06:35:26
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 01:35:21.841532 2025] [security2:error] [pid 27876:tid 27876] [client 104.207.40.39:14793] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "westernchristmascards.com"] [uri "/.env"] [unique_id "aTJ9KczuzJ9MA0E1R8cFmAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 03:41:27
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 22:41:20.330576 2025] [security2:error] [pid 14547:tid 14547] [client 104.207.40.39:39631] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tanny.com"] [uri "/.env"] [unique_id "aTJUYHJYiRMjhtL6XEG7xQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 12:06:49
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 07:06:44.991993 2025] [security2:error] [pid 16570:tid 16570] [client 104.207.40.39:48481] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.greybird.cc"] [uri "/.git/HEAD"] [unique_id "aSbtVCFAphoxezG_fGkTfAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 11:24:07
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 06:24:02.825585 2025] [security2:error] [pid 22668:tid 22668] [client 104.207.40.39:58031] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.lockyers.com"] [uri "/.git/HEAD"] [unique_id "aSbjUoAmbPJdMdgULEmOwAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 11:02:07
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 06:02:01.989359 2025] [security2:error] [pid 14291:tid 14291] [client 104.207.40.39:48961] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.murpf.com"] [uri "/.git/HEAD"] [unique_id "aSbeKWj-Tt5oL_A1J_G3sAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 08:40:07
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 03:40:04.093776 2025] [security2:error] [pid 14469:tid 14469] [client 104.207.40.39:58551] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.baystarpartners.com"] [uri "/.svn/wc.db"] [unique_id "aSa85K_xJhsl2IJowEXP9AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 01:15:46
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 20:15:41.521530 2025] [security2:error] [pid 21670:tid 21670] [client 104.207.40.39:58081] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.deltasouls.com"] [uri "/.svn/wc.db"] [unique_id "aSZUvUNIPwf616qrUViYYgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2025-11-25 23:03:20
(6 months ago)
Auto-ban: >3000 req/min op 2025-11-25
Hacking
Web App Attack
SSH
๐บ๐ธ
MPL
2025-11-25 21:59:55
(6 months ago)
tcp/80 (5 or more attempts)
Port Scan
๐บ๐ธ
MPL
2025-11-25 21:59:55
(6 months ago)
tcp/80 (27 or more attempts)
Port Scan
๐บ๐ธ
TPI-Abuse
2025-11-25 05:41:52
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.40.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:41:43.875111 2025] [security2:error] [pid 7338:tid 7338] [client 104.207.40.39:38597] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "electric-cosmos.com"] [uri "/.git/HEAD"] [unique_id "aSVBl_mDeg6tyB6fBpWSIwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-14 11:52:38
(6 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack