Anonymous
2026-01-06 07:43:51
(5 months ago)
Infected user bad webscan
Exploited Host
๐บ๐ธ
TPI-Abuse
2025-12-02 08:07:56
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 03:07:49.716856 2025] [security2:error] [pid 18676:tid 18676] [client 104.207.51.254:35591] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sidsales.com"] [uri "/.git/HEAD"] [unique_id "aS6eVXf4Nf7m7kAVrr4tjQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 05:19:57
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 00:19:49.115223 2025] [security2:error] [pid 13883:tid 13883] [client 104.207.51.254:28943] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "geckoturner.com"] [uri "/.env"] [unique_id "aS529YR1d2SscOtXD49MTAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 04:48:54
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 01 23:48:47.113577 2025] [security2:error] [pid 13394:tid 13394] [client 104.207.51.254:35501] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "anneoday.com"] [uri "/.git/HEAD"] [unique_id "aS5vr4d4go_L7pQUxtntFgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 04:18:46
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 01 23:18:40.432366 2025] [security2:error] [pid 24330:tid 24330] [client 104.207.51.254:48471] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "metrotcs.com"] [uri "/.env"] [unique_id "aS5ooKYdqigDiLYulzH2YQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2025-11-30 04:35:41
(6 months ago)
Web App Attack
Anonymous
2025-11-27 12:58:21
(6 months ago)
Attempted brute force login to web vpn 1101 time(s); last attempt for 2025.11.27 is noted in report ...
show more
Attempted brute force login to web vpn 1101 time(s); last attempt for 2025.11.27 is noted in report timestamp
show less
Hacking
Brute-Force
๐ณ๐ฑ
homeshowdomain.nl
2025-11-25 23:04:17
(6 months ago)
Auto-ban: >3000 req/min op 2025-11-25
Hacking
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2025-11-25 06:24:28
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:24:22.803284 2025] [security2:error] [pid 10431:tid 10431] [client 104.207.51.254:49421] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.prostar.industries"] [uri "/.env"] [unique_id "aSVLliEH65UXShYm3gu-rAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:52:30
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:52:20.415095 2025] [security2:error] [pid 32700:tid 32717] [client 104.207.51.254:55689] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.soluciona.biz"] [uri "/.git/HEAD"] [unique_id "aSUn9LcrjRrp2J9TXtylXgAAAM4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:30:29
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:30:16.270065 2025] [security2:error] [pid 16099:tid 16099] [client 104.207.51.254:60277] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.jeffgambill.com"] [uri "/.git/HEAD"] [unique_id "aSUUuPdMJ4X4wWqk9Gt6zwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:29:25
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:29:17.697519 2025] [security2:error] [pid 23298:tid 23298] [client 104.207.51.254:46915] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mathewsdental.com"] [uri "/.env"] [unique_id "aSUGbba8DLTc3pvO7bdqmAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:01:30
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:01:24.080062 2025] [security2:error] [pid 23308:tid 23308] [client 104.207.51.254:25289] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.partyblockwedding.com"] [uri "/.env"] [unique_id "aST_5EsdJUtHbm2rGHY_MQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-18 23:41:55
(6 months ago)
Attempted brute force login to web vpn 466 time(s); last attempt for 2025.11.18 is noted in report t ...
show more
Attempted brute force login to web vpn 466 time(s); last attempt for 2025.11.18 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-10-31 12:53:04
(7 months ago)
wordpress-trap
Web App Attack