๐ช๐ธ
10dencehispahard SL
2026-01-23 07:31:16
(4 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
๐จ๐ญ
rt
2026-01-13 05:46:13
(5 months ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-08 13:59:52
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 08 08:59:46.807972 2026] [security2:error] [pid 13733:tid 13733] [client 104.207.42.113:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "avaliantlife.com"] [uri "/.svn/wc.db"] [unique_id "aV-4Urp8aYaSt2RmtwK5MAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-02 18:40:01
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 02 13:39:49.564228 2026] [security2:error] [pid 3946:tid 3946] [client 104.207.42.113:45061] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mytemp.info"] [uri "/.git/HEAD"] [unique_id "aVgQ9YqhQp7AjRJIIMs6_QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
bescared
2026-01-02 18:38:59
(5 months ago)
F2B - Malicious activity detected. URL Probing.
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-30 10:22:26
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 30 05:21:37.203418 2025] [security2:error] [pid 7150:tid 7150] [client 104.207.42.113:23897] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.lazymanvegan.com"] [uri "/.svn/wc.db"] [unique_id "aVOnsVR45Qqd9VD2v9U2hwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 05:11:34
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 00:11:27.533714 2025] [security2:error] [pid 2566013:tid 2566016] [client 104.207.42.113:51049] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "accushot.com"] [uri "/.git/HEAD"] [unique_id "aVINf5pwqS-pohtV-2wyFQAAAMA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 03:23:07
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 22:23:03.523036 2025] [security2:error] [pid 3308:tid 3308] [client 104.207.42.113:44753] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "davidwoodard.com"] [uri "/.env"] [unique_id "aVH0F7DBFtAlJpSa1i6_xAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Swiptly
2025-12-29 01:57:57
(5 months ago)
Bot scanning for environment files .env .env/\*
...
Web App Attack
Anonymous
2025-12-15 17:23:39
(5 months ago)
botnet
DDoS Attack
๐ธ๐ช
Johan Finn
2025-11-26 05:25:23
(6 months ago)
malicious activity
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 07:33:29
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 02:33:23.142492 2025] [security2:error] [pid 16848:tid 16848] [client 104.207.42.113:44283] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.littlehornengineering.com"] [uri "/.git/HEAD"] [unique_id "aSVbw-OhLc-XDYR4DqS77wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 06:28:26
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:28:11.469633 2025] [security2:error] [pid 9166:tid 9166] [client 104.207.42.113:50417] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.liftreading.com"] [uri "/.git/HEAD"] [unique_id "aSVMezUyfHWKs3rbExlD2wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 06:10:53
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:10:36.859852 2025] [security2:error] [pid 7241:tid 7241] [client 104.207.42.113:41831] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.castlewelding.net"] [uri "/.env"] [unique_id "aSVIXIwFx6wAtF9mCdiOzwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:37:34
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.42.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:37:31.458266 2025] [security2:error] [pid 8728:tid 8728] [client 104.207.42.113:29339] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.numberseven.okwellbeing.com"] [uri "/.git/HEAD"] [unique_id "aSUyi1itQZw9O1xxnLk5wQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack