๐ฉ๐ช
Lino Project
2026-04-04 01:20:54
(2 months ago)
104.207.45.168 - - [04/Apr/2026:03:20:53 +0200] "GET /xmlrpc.php HTTP/1.1" 403 3963 "https://www.pri ...
show more
104.207.45.168 - - [04/Apr/2026:03:20:53 +0200] "GET /xmlrpc.php HTTP/1.1" 403 3963 "https://www.primobio.it/mio-account/?action=register" "Mozilla/5.0 (Windows NT 6.3; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(2 months ago)
"DDoS against public endpoint"
DDoS Attack
Anonymous
2026-02-27 20:50:39
(3 months ago)
"POST /xmlrpc.php HTTP/1.1"
Hacking
Web App Attack
๐ต๐ฑ
sefinek.net
2026-02-25 22:24:36
(3 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (G ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (GET) | Endpoint: / | UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Vivaldi/5.3.2679.68 โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-12-30 19:25:32
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.45.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.45.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 30 14:25:09.231553 2025] [security2:error] [pid 7759:tid 7759] [client 104.207.45.168:29037] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "osmanhc.com"] [uri "/.env"] [unique_id "aVQnFXt_1xJ84gdTFrgV2gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 06:28:18
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.45.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.45.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 01:28:10.780551 2025] [security2:error] [pid 874:tid 874] [client 104.207.45.168:38973] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "route66tovietnam.com"] [uri "/.git/HEAD"] [unique_id "aVIferQqkyE8cfxXpiuG6gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 05:00:24
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.45.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.45.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 00:00:18.646955 2025] [security2:error] [pid 26145:tid 26145] [client 104.207.45.168:42983] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boatregistrationdelaware.com"] [uri "/.env"] [unique_id "aVIK4nOmkTcEfJFjx19l5QAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2025-12-23 04:05:21
(5 months ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
๐บ๐ธ
dpinse
2025-12-16 09:13:43
(5 months ago)
Suspicious URL access.
Hacking
Anonymous
2025-12-15 00:11:01
(5 months ago)
botnet
DDoS Attack
๐บ๐ธ
TPI-Abuse
2025-12-14 00:18:33
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.45.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.45.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 13 19:18:25.657481 2025] [security2:error] [pid 6435:tid 6435] [client 104.207.45.168:37839] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "adlc18.org"] [uri "/wp-config.php"] [unique_id "aT4CUURlUTXCUIMDKCuASgAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-11-30 13:09:59
(6 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
Anonymous
2025-11-14 01:48:51
(6 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
๐ฑ๐น
Evag Touf
2025-11-09 13:16:03
(6 months ago)
(mod_security) mod_security triggered on hostname [redacted] 104.207.45.168 (US/United States/-)
SQL Injection
๐บ๐ธ
fbarela
2025-11-07 17:00:50
(6 months ago)
FortiGate SSL VPN login failures.
Hacking
Brute-Force