π²π½
octageeks.com
2026-06-01 04:10:43
(6 days ago)
Wordpress malicious attack:[octablocked]
Web App Attack
πΊπΈ
nyt
2026-05-26 11:52:53
(1 week ago)
WP Config Probe
Web App Attack
πͺπΈ
masterguru
2026-05-25 13:51:19
(1 week ago)
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-123)
show less
Bad Web Bot
π¨π¦
TechnoSolutions CL
2026-05-24 19:02:27
(2 weeks ago)
104.207.53.65 - - [24/May/2026:19:02:26 +0000] "GET http://159.203.62.209/wp-json/gravitysmtp/v1/tes ...
show more
104.207.53.65 - - [24/May/2026:19:02:26 +0000] "GET http://159.203.62.209/wp-json/gravitysmtp/v1/tests/mock-data?page=gravitysmtp-settings HTTP/1.1" 301 162 "-" "curl/8.7.1"
...
show less
Hacking
Brute-Force
Web App Attack
π¬π§
PeravixGroup
2026-05-07 06:26:38
(1 month ago)
Honeypot detection: Docker daemon unauthorized access / container escape attempt on port 2375. Sever ...
show more
Honeypot detection: Docker daemon unauthorized access / container escape attempt on port 2375. Severity: MEDIUM. Aaran.cloud
show less
Hacking
Exploited Host
π³π±
homeshowdomain.nl
2026-04-29 22:07:35
(1 month ago)
Auto-ban: >3000 req/min op 2026-04-29
Web App Attack
SSH
Hacking
π¬π§
thetomtaylor.co.uk
2026-04-29 17:08:01
(1 month ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [ice02,wa01]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
thetomtaylor.co.uk
2026-04-29 16:07:01
(1 month ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-28 17:08:44
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 104.207.53.65 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 104.207.53.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 28 13:08:39.108803 2026] [security2:error] [pid 22987:tid 22987] [client 104.207.53.65:65029] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.bikiniboutique.brazilianbottom.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.bikiniboutique.brazilianbottom.com"] [uri "/s3cmd.ini"] [unique_id "afDpl5fiFMS15eYHVcp3qQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
iNetWorker
2026-04-27 14:28:34
(1 month ago)
trolling for resource vulnerabilities
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-15 12:32:16
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.53.65 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.53.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 07:32:14.033155 2026] [security2:error] [pid 27414:tid 27425] [client 104.207.53.65:33925] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "particulierlb.com"] [uri "/admin/.git/config"] [unique_id "aZG8zkV2BEPC1KLHD0ah4AAAAEg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-15 12:04:47
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.53.65 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.53.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 07:04:40.647203 2026] [security2:error] [pid 11082:tid 11082] [client 104.207.53.65:10953] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pandahh.com"] [uri "/wp/.git/config"] [unique_id "aZG2WN2YdMkkFV5RErsKFwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π·π΄
INTEQ
2026-02-15 11:48:44
(3 months ago)
Web attack from 104.207.53.65
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-15 11:36:54
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.53.65 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.53.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 06:36:46.930840 2026] [security2:error] [pid 29189:tid 29189] [client 104.207.53.65:33467] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "paardekooper.info"] [uri "/dev/.git/config"] [unique_id "aZGvzj9ZE5HyT5aU3PXP9AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π
Origon
2026-02-15 06:16:35
(3 months ago)
http-sensitive-files - IP: 104.207.53.65 - time="2026-02-15T07:16:35+01:00" level=info msg="(555f66 ...
show more
http-sensitive-files - IP: 104.207.53.65 - time="2026-02-15T07:16:35+01:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 104.207.53.65 (GB/200373) : 4h ban on Ip 104.207.53.65" module=db
show less
Web App Attack