🇺🇸
masterguru
2026-09-04 08:41:12
(2 hours ago)
Host header is a numeric IP address. Pattern match "^ (920350-165)
Hacking
Bad Web Bot
🇸🇪
OnTheEdge
2026-09-03 20:48:22
(14 hours ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
🇺🇸
fbarela
2026-08-24 00:00:04
(1 week ago)
FortiGate SSL VPN login failures.
Brute-Force
Hacking
🇫🇷
Sklurk
2026-08-17 04:55:34
(2 weeks ago)
Web App Attack
Web App Attack
🇫🇷
conseilgouz
2026-03-15 06:50:16
(5 months ago)
loe-12 : Block return, carriage return, ... characters=>/?view=article'&id=69:lm-filter-con ...
show more
loe-12 : Block return, carriage return, ... characters=>/?view=article'&id=69:lm-filter-contenu-sous-conditions&catid=39(')
show less
Hacking
🇺🇸
TPI-Abuse
2026-02-23 05:49:14
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 104.207.44.164 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 104.207.44.164 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 23 00:49:09.558602 2026] [security2:error] [pid 18347:tid 18347] [client 104.207.44.164:31323] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ezekielproductions.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ezekielproductions.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aZvqVUcIokvkR_Osfs2yZAAAAAE"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-13 13:08:57
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.164 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.164 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 08:08:51.820318 2026] [security2:error] [pid 7527:tid 7527] [client 104.207.44.164:16697] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mikeberro.com"] [uri "/wp/.git/config"] [unique_id "aY8iY75UAVug_3CnCddTugAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
myagent.site
2026-02-13 13:01:42
(6 months ago)
Blocking for trying to access an exploit file: /.env
Hacking
🇺🇸
TPI-Abuse
2026-02-13 08:47:54
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.164 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.164 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 03:47:50.323152 2026] [security2:error] [pid 1007:tid 1007] [client 104.207.44.164:35965] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "messengersforchrist.com"] [uri "/v2/.git/config"] [unique_id "aY7lNg42wKrncNdkDY1rfwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-13 04:00:50
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.164 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.164 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 23:00:44.670365 2026] [security2:error] [pid 29653:tid 29653] [client 104.207.44.164:39223] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "markgebhard.net"] [uri "/.git/config"] [unique_id "aY6h7HoGECw_BGoqViFEBQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-13 03:42:56
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.164 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.164 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 22:42:50.740177 2026] [security2:error] [pid 3190:tid 3212] [client 104.207.44.164:44679] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marinkovich.us"] [uri "/api/.git/config"] [unique_id "aY6duvb4CmTCRsawBB7G_AAAAE4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-02-13 03:06:19
(6 months ago)
Scanning/Probing (24)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-02-13 00:52:51
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.164 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.164 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 19:52:45.893164 2026] [security2:error] [pid 1012317:tid 1012317] [client 104.207.44.164:20051] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "macromika.com"] [uri "/site/.git/config"] [unique_id "aY513V_1XraCjuFR6zXwHQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-12 19:37:32
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.164 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.164 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 14:37:24.796262 2026] [security2:error] [pid 26234:tid 26234] [client 104.207.44.164:44139] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "honer.org"] [uri "/.git/config"] [unique_id "aY4r9Jx_wl7KCArRZk0HWwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-11 12:52:03
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.164 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.164 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 11 07:51:56.774117 2026] [security2:error] [pid 13643:tid 13643] [client 104.207.44.164:54527] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gamedayincentives.com"] [uri "/.env.production"] [unique_id "aYx7bKLdvYHjku1Jr6J0PgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack