Anonymous
2026-05-13 19:11:28
(3 weeks ago)
104.207.50.93 - - [14/May/2026:03:11:27 +0800] "GET http://turfking.com.cn/.env HTTP/1.1" 301 236 "- ...
show more
104.207.50.93 - - [14/May/2026:03:11:27 +0800] "GET http://turfking.com.cn/.env HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-05-10 11:38:33
(3 weeks ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐ฌ๐ง
PeravixGroup
2026-05-06 19:07:18
(1 month ago)
Honeypot detection: Apache CouchDB unauthorized access / exploitation attempt on port 5984. Severity ...
show more
Honeypot detection: Apache CouchDB unauthorized access / exploitation attempt on port 5984. Severity: CRITICAL. Aaran.cloud
show less
Hacking
Exploited Host
๐ฎ๐น
[email protected]
2026-04-18 08:40:53
(1 month ago)
[Sat Apr 18 10:40:52.568084 2026] [authz_core:error] [pid 560720:tid 560804] [remote 104.207.50.93:3 ...
show more
[Sat Apr 18 10:40:52.568084 2026] [authz_core:error] [pid 560720:tid 560804] [remote 104.207.50.93:36907] AH01630: client denied by server configuration: /var/www/html/MyWeb/Wordpress_www/wp-login.php
...
show less
Brute-Force
Web App Attack
๐ซ๐ท
solution.it
2026-02-14 02:13:52
(3 months ago)
[Sat Feb 14 03:13:51.825154 2026] [php7:error] [pid 3915162:tid 3915162] [client 104.207.50.93:18219 ...
show more
[Sat Feb 14 03:13:51.825154 2026] [php7:error] [pid 3915162:tid 3915162] [client 104.207.50.93:18219] script '/var/www/html/blog.solution.it/wp-login.php' not found or unable to stat
show less
Web App Attack
๐ฎ๐ฉ
zam
2026-02-14 01:48:16
(3 months ago)
104.207.50.93 - - [14/Feb/2026:01:48:14 +0000] "POST /xmlrpc.php HTTP/1.1" 403 199
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-11 23:50:06
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.50.93 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.50.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 11 18:49:59.575495 2026] [security2:error] [pid 2473:tid 2473] [client 104.207.50.93:49661] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arklahomaflooring.com"] [uri "/.env.local"] [unique_id "aY0Vp1ndv_07LL_Mx0n3gAAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-11 21:10:57
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.50.93 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.50.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 11 16:10:48.408609 2026] [security2:error] [pid 26018:tid 26018] [client 104.207.50.93:19585] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "area52designs.com"] [uri "/v2/.git/config"] [unique_id "aYzwWKwHD_BjUbfAnj9D0QAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 06:29:29
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.50.93 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.50.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 01:29:24.994191 2026] [security2:error] [pid 18959:tid 18959] [client 104.207.50.93:61433] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "konahawaiihandyman.com"] [uri "/wp/.git/config"] [unique_id "aYrQRMqZt-IdyyEbvfWApgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 03:24:33
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.50.93 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.50.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:24:27.770950 2026] [security2:error] [pid 2277738:tid 2277738] [client 104.207.50.93:59211] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kirbysheetmetalworks.com"] [uri "/api/.git/config"] [unique_id "aYqk6_1POYsc1E3zfDJtLwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 01:53:15
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.50.93 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.50.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 20:53:06.293412 2026] [security2:error] [pid 28984:tid 28984] [client 104.207.50.93:19197] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hxctechllc.com"] [uri "/.git/config"] [unique_id "aYqPghG7kQQM_cp79QU7VAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 23:17:04
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.50.93 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.50.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 18:16:57.142035 2026] [security2:error] [pid 19125:tid 19125] [client 104.207.50.93:28059] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "keepingitsharp.biz"] [uri "/v2/.git/config"] [unique_id "aYpq6UOv80GuwiEV58K5oAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-02-09 22:59:04
(3 months ago)
Auto-ban: >3000 req/min op 2026-02-09
Hacking
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2026-02-09 22:56:13
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.50.93 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.50.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 17:56:05.303080 2026] [security2:error] [pid 878609:tid 878657] [client 104.207.50.93:9943] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "howilearnedtodanceintherain.com"] [uri "/app/.env"] [unique_id "aYpmBYl0Zv13If8rJtjqewAAAUk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-02-09 21:29:05
(3 months ago)
Probing websites for vulnerabilities
Web App Attack