๐ท๐ด
Fn4ticHz
2026-05-08 22:59:14
(4 weeks ago)
Repeated DDoS targeted -- ZeroGuard X ManagedSRV
DDoS Attack
Exploited Host
๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(2 months ago)
"DDoS against public endpoint"
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 18:05:56
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 104.207.55.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 104.207.55.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 13:05:53.290275 2026] [security2:error] [pid 2340028:tid 2340028] [client 104.207.55.142:54889] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||oximoron.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "oximoron.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aZILAfVkBl3-GgumHDQMnQAAAAw"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 12:04:31
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.55.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.55.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 07:04:27.567122 2025] [security2:error] [pid 32062:tid 32062] [client 104.207.55.142:13447] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.fundingworkingcapital.com"] [uri "/.svn/wc.db"] [unique_id "aSbsyzn1QrC9Nn86VEp4IQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 05:53:17
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.55.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.55.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:53:10.944520 2025] [security2:error] [pid 12653:tid 12653] [client 104.207.55.142:56001] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.bgraph.com"] [uri "/.git/HEAD"] [unique_id "aSaVxivoI27BrbSrK3HewgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 05:34:22
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.55.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.55.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:34:16.866172 2025] [security2:error] [pid 10390:tid 10390] [client 104.207.55.142:53729] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.kmp.net"] [uri "/.svn/wc.db"] [unique_id "aSaRWAg54IaLqZCXjgxtTAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:48:15
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.55.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.55.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:48:08.616966 2025] [security2:error] [pid 32414:tid 32414] [client 104.207.55.142:12949] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.fromsaintlouis.com"] [uri "/.env"] [unique_id "aSUm-Ea6FxDPN_SjE2T3fwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 08:10:12
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.55.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.55.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:10:05.081554 2025] [security2:error] [pid 18450:tid 18450] [client 104.207.55.142:29267] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.securityzonepr.com"] [uri "/.env"] [unique_id "aSQS3bFvCklJRw2XaXKbfgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 07:06:55
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.55.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.55.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 02:06:50.869166 2025] [security2:error] [pid 3449589:tid 3449589] [client 104.207.55.142:33635] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.central-wi-coal-sales.hemihauling.com"] [uri "/.git/HEAD"] [unique_id "aSQECtdeaf3ZN8vIIDcdVwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:57:22
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.55.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.55.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:56:37.705632 2025] [security2:error] [pid 13821:tid 13821] [client 104.207.55.142:44905] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.suralcopensioendesk.com"] [uri "/.git/HEAD"] [unique_id "aSPlheBWvInJcQHn6MXUXQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
Origon
2025-11-12 16:12:40
(6 months ago)
http-crawl-non_statics - IP: 104.207.55.142 - time="2025-11-12T17:12:40+01:00" level=info msg="(555 ...
show more
http-crawl-non_statics - IP: 104.207.55.142 - time="2025-11-12T17:12:40+01:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-crawl-non_statics by ip 104.207.55.142 (CN/200373) : 4h ban on Ip 104.207.55.142"
show less
Bad Web Bot
Anonymous
2025-04-06 20:43:39
(1 year ago)
Attempted brute force login to web vpn 6 time(s); last attempt for 2025.04.06 is noted in report tim ...
show more
Attempted brute force login to web vpn 6 time(s); last attempt for 2025.04.06 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-04-05 20:13:10
(1 year ago)
Attempted brute force login to web vpn 4 time(s); last attempt for 2025.04.05 is noted in report tim ...
show more
Attempted brute force login to web vpn 4 time(s); last attempt for 2025.04.05 is noted in report timestamp
show less
Hacking
Brute-Force
๐ฆ๐บ
oncord
2025-04-05 14:31:11
(1 year ago)
Form spam
Web Spam
Anonymous
2025-04-04 01:32:51
(1 year ago)
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.04.04 is noted in report tim ...
show more
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.04.04 is noted in report timestamp
show less
Hacking
Brute-Force