๐ซ๐ท
Sklurk
2026-06-23 03:54:29
(2 days ago)
Web App Attack
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-18 21:59:30
(1 month ago)
Auto-ban: >3000 req/min op 2026-05-18
Web App Attack
SSH
Hacking
๐ง๐ท
Peregrine
2026-05-13 03:11:42
(1 month ago)
Fail2Ban ct101 Jail: tomcat-honeypot | Evidence: 104.207.51.189 172.69.150.78 - - [10/May/2026:16:54 ...
show more
Fail2Ban ct101 Jail: tomcat-honeypot | Evidence: 104.207.51.189 172.69.150.78 - - [10/May/2026:16:54:02 -0300] "GET /wp-login.php HTTP/1.1" 404 18149
show less
Bad Web Bot
๐ง๐ท
Peregrine
2026-05-12 03:11:39
(1 month ago)
Fail2Ban ct101 Jail: tomcat-honeypot | Evidence: 104.207.51.189 172.69.150.78 - - [10/May/2026:16:54 ...
show more
Fail2Ban ct101 Jail: tomcat-honeypot | Evidence: 104.207.51.189 172.69.150.78 - - [10/May/2026:16:54:02 -0300] "GET /wp-login.php HTTP/1.1" 404 18149
show less
Bad Web Bot
๐ง๐ท
Peregrine
2026-05-10 19:54:04
(1 month ago)
Fail2Ban ct101 Jail: tomcat-honeypot | Evidence: 104.207.51.189 172.69.150.78 - - [10/May/2026:16:54 ...
show more
Fail2Ban ct101 Jail: tomcat-honeypot | Evidence: 104.207.51.189 172.69.150.78 - - [10/May/2026:16:54:02 -0300] "GET /wp-login.php HTTP/1.1" 404 18149
show less
Bad Web Bot
๐ฑ๐ป
garmtech.com
2026-05-01 18:44:43
(1 month ago)
Attempted access to sensitive endpoint (/.env) detected. Automated scan or unauthorized probing.
Web App Attack
๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(2 months ago)
"DDoS against public endpoint"
DDoS Attack
๐ช๐ธ
10dencehispahard SL
2026-01-28 05:31:26
(4 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
๐จ๐ญ
backslash
2026-01-24 19:30:05
(5 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐ช๐ธ
masterguru
2026-01-03 00:43:08
(5 months ago)
xmlrpc request blocked, no referer. Pattern match "xmlrpc.php" at REQUEST_URI. (5000900-122)
Web App Attack
๐ฎ๐น
VHosting
2026-01-02 13:40:10
(5 months ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-08 04:41:20
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.189 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.189 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 07 23:41:15.222200 2025] [security2:error] [pid 25993:tid 25993] [client 104.207.51.189:47165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "savingspools.com"] [uri "/.svn/wc.db"] [unique_id "aTZW65R7sWKAQiIfwjufsQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-07 23:23:20
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.189 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.189 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 07 18:23:15.684542 2025] [security2:error] [pid 30823:tid 30823] [client 104.207.51.189:49629] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "abilityengraving.com"] [uri "/.svn/wc.db"] [unique_id "aTYMYzf2LbJ72ObX5fbR3gAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-07 18:26:18
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.189 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.189 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 07 13:26:13.103109 2025] [security2:error] [pid 7311:tid 7311] [client 104.207.51.189:53387] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stepiz62.com"] [uri "/.svn/wc.db"] [unique_id "aTXGxUJrU7CRTm0yg4j2DwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-06 11:26:02
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.189 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.189 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 06 06:25:58.038832 2025] [security2:error] [pid 4736:tid 4736] [client 104.207.51.189:45869] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tracytappan.net"] [uri "/.git/HEAD"] [unique_id "aTQSxiq_f3cFzBPJ0U5HPQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack