๐บ๐ธ
etu brutus
2026-05-18 03:45:08
(3 weeks ago)
104.207.47.206 has been banned for [WebApp Attack]
...
Hacking
Bad Web Bot
Web App Attack
๐ซ๐ท
Little Iguana
2026-01-31 13:04:29
(4 months ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
๐ฉ๐ช
F242
2026-01-30 05:35:33
(4 months ago)
Wordpress Login or XMLRPC abuse
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-21 12:18:47
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.47.206 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.47.206 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 21 07:18:40.477574 2026] [security2:error] [pid 3767787:tid 3767787] [client 104.207.47.206:49851] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "demondomain.com"] [uri "/.env"] [unique_id "aXDEIMDksyrNboqkRnMPEQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
myagent.site
2026-01-20 21:43:52
(4 months ago)
Blocking for trying to access an exploit file: /.env
Hacking
๐ซ๐ท
Little Iguana
2026-01-20 20:24:46
(4 months ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
๐บ๐ธ
TPI-Abuse
2026-01-17 08:12:28
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.47.206 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.47.206 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 17 03:12:25.262065 2026] [security2:error] [pid 739:tid 739] [client 104.207.47.206:51769] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.corstratinc.com"] [uri "/.env"] [unique_id "aWtEaY_KBYqdWMEV7oMIAAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-01-16 20:14:35
(4 months ago)
Try to access /.env
Web App Attack
๐บ๐ธ
Psycho Solutions LLC
2025-12-30 21:49:51
(5 months ago)
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-json/wp/v2/users - User A ...
show more
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-json/wp/v2/users - User Agent: N/A - Timestamp: 12/30/2025 9:49 pm (UTC-6)
show less
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-12-30 21:41:05
(5 months ago)
WP Login Scan Activities
Web App Attack
๐จ๐ญ
backslash
2025-12-22 22:55:03
(5 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-12-02 09:22:31
(6 months ago)
WP Login Scan Activities
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 11:05:09
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.47.206 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.47.206 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 06:05:00.445604 2025] [security2:error] [pid 14052:tid 14052] [client 104.207.47.206:36583] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.jordanliberman.com"] [uri "/.svn/wc.db"] [unique_id "aSbe3AnfM1d9sKlbaY-x4gAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 06:36:35
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.47.206 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.47.206 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 01:36:26.025655 2025] [security2:error] [pid 17671:tid 17671] [client 104.207.47.206:37343] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.jitterbugswing.com"] [uri "/.git/HEAD"] [unique_id "aSaf6lCU6oXXzsZCtThTGAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 06:20:41
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.47.206 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.47.206 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 01:20:36.037440 2025] [security2:error] [pid 18300:tid 18300] [client 104.207.47.206:30617] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.stage15.com"] [uri "/.git/HEAD"] [unique_id "aSacNAbk67B0RwYymGUpZwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack