๐ฎ๐น
[email protected]
2026-04-17 22:58:15
(1 month ago)
[Sat Apr 18 00:58:15.207704 2026] [authz_core:error] [pid 560721:tid 560756] [remote 104.207.49.200: ...
show more
[Sat Apr 18 00:58:15.207704 2026] [authz_core:error] [pid 560721:tid 560756] [remote 104.207.49.200:50417] AH01630: client denied by server configuration: /var/www/html/MyWeb/Wordpress_www/wp-login.php
...
show less
Brute-Force
Web App Attack
๐จ๐ญ
filou812
2026-02-10 07:07:51
(4 months ago)
url tried is "/.env.save"
Web App Attack
๐บ๐ธ
myagent.site
2026-02-09 22:10:48
(4 months ago)
Blocking for trying to access an exploit file: /app/.env
Hacking
๐บ๐ธ
TPI-Abuse
2026-02-09 19:42:15
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 14:42:07.940715 2026] [security2:error] [pid 27714:tid 27714] [client 104.207.49.200:28565] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gadgeteer.net"] [uri "/backend/.env"] [unique_id "aYo4j6rOmltfH9BxG1NXBAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 18:58:35
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 13:58:29.209696 2026] [security2:error] [pid 14873:tid 14873] [client 104.207.49.200:15105] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fynyx.com"] [uri "/admin/.git/config"] [unique_id "aYouVTOeHKPKCZoF1AXLrgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 17:58:24
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 12:58:16.297722 2026] [security2:error] [pid 21583:tid 21583] [client 104.207.49.200:12561] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "furballaudio.com"] [uri "/app/.env"] [unique_id "aYogON2fuhwo1uZjY6_8KQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 12:56:56
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 07:56:53.520843 2026] [security2:error] [pid 24059:tid 24059] [client 104.207.49.200:12365] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fundingworkingcapital.com"] [uri "/.env.staging"] [unique_id "aYnZlRX5cdTFrMe4m7n8hQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 09:01:37
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 04:01:31.558656 2026] [security2:error] [pid 2203:tid 2203] [client 104.207.49.200:38571] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "g-drome.com"] [uri "/backend/.env"] [unique_id "aYmia0Momf6Ow-LfBURfaQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2025-12-30 02:55:11
(5 months ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
myagent.site
2025-11-25 18:17:15
(6 months ago)
Blocking for trying to access an exploit file: /.env
Hacking
๐บ๐ธ
TPI-Abuse
2025-11-25 04:18:04
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:17:55.959082 2025] [security2:error] [pid 4505:tid 4505] [client 104.207.49.200:49763] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cultiplant.com.menagri.com"] [uri "/.git/HEAD"] [unique_id "aSUt85eJJXWMXsMqVVKuHAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:47:28
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:47:19.829878 2025] [security2:error] [pid 1737:tid 1737] [client 104.207.49.200:9249] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.hawkinsenterprise.com"] [uri "/.git/HEAD"] [unique_id "aSUYt_oO5HDJ9k1L5ZC7ygAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:59:33
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:59:30.395314 2025] [security2:error] [pid 14399:tid 14399] [client 104.207.49.200:9941] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.writebetweenthelines.com"] [uri "/.env"] [unique_id "aSUNgoZeNDq27xAfM0OduAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 00:24:35
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:24:26.240757 2025] [security2:error] [pid 18222:tid 18222] [client 104.207.49.200:11051] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.geckoturner.chezlubacov.xyz"] [uri "/.env"] [unique_id "aST3OixiX-L9mrZba1zY7QAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-10-19 15:10:40
(7 months ago)
Attempted brute force login to web vpn 108 time(s); last attempt for 2025.10.19 is noted in report t ...
show more
Attempted brute force login to web vpn 108 time(s); last attempt for 2025.10.19 is noted in report timestamp
show less
Hacking
Brute-Force