๐ช๐ธ
librebit
2026-05-17 03:57:01
(3 weeks ago)
Brute force
Brute-Force
๐ช๐ธ
librebit
2026-05-13 23:06:38
(3 weeks ago)
Brute force
Brute-Force
Anonymous
2025-12-11 11:55:29
(5 months ago)
botnet
DDoS Attack
๐บ๐ธ
myagent.site
2025-12-08 18:36:20
(5 months ago)
Blocking for trying to access an exploit file: /.env
Hacking
Anonymous
2025-12-07 21:18:52
(6 months ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 17:07:27
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.41.225 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.41.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 12:07:21.918996 2025] [security2:error] [pid 21626:tid 21626] [client 104.207.41.225:19851] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "churchbehindthewalls.com"] [uri "/.svn/wc.db"] [unique_id "aTMRSQUa2vHlL4v2GA4uygAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 13:09:54
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.41.225 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.41.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 08:09:50.147257 2025] [security2:error] [pid 21468:tid 21468] [client 104.207.41.225:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hondabvi.com"] [uri "/.svn/wc.db"] [unique_id "aTLZnllzm_YhqVo_tramqAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 10:42:58
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.41.225 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.41.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 05:42:53.878964 2025] [security2:error] [pid 28806:tid 28806] [client 104.207.41.225:40123] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "postaltales.com"] [uri "/.git/HEAD"] [unique_id "aTK3LVU1hU-Sxlo5iy-isAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 08:08:34
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.41.225 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.41.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 03:08:28.619475 2025] [security2:error] [pid 27392:tid 27392] [client 104.207.41.225:40143] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jessmay.com"] [uri "/.env"] [unique_id "aTKS_MofwMscOvxwzUWiUQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 05:35:40
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.41.225 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.41.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 00:35:35.201177 2025] [security2:error] [pid 19278:tid 19278] [client 104.207.41.225:16985] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "newcitypark.com"] [uri "/.env"] [unique_id "aTJvJxDRdKQtHlJ9iYfFEgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 02:40:51
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.41.225 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.41.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 21:40:43.986426 2025] [security2:error] [pid 4898:tid 4898] [client 104.207.41.225:26049] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wamgirlz.com"] [uri "/.env"] [unique_id "aTJGK-TnSSLGF7movtD4LgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-14 11:24:14
(6 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
๐บ๐ธ
techboy117
2025-11-14 00:16:07
(6 months ago)
Blocking due to password spraying.
Brute-Force
๐ฆ๐บ
AWW-Admin
2025-10-29 13:58:01
(7 months ago)
(wordpress) Failed wordpress login from 104.207.41.225 (US/United States/-)
Brute-Force
Anonymous
2025-10-19 18:26:33
(7 months ago)
Attempted brute force login to web vpn 72 time(s); last attempt for 2025.10.19 is noted in report ti ...
show more
Attempted brute force login to web vpn 72 time(s); last attempt for 2025.10.19 is noted in report timestamp
show less
Hacking
Brute-Force