π«π·
ELYAZ
2026-05-30 23:43:39
(5 days ago)
(y4) Failed scan -byebye- from 104.207.58.124 (TH/Thailand/-): (CF_ENABLE)
Hacking
π«π·
dynamix
2026-05-28 07:19:22
(1 week ago)
WordPress wp-login.php Brute Force Attack
Brute-Force
Web App Attack
Anonymous
2026-05-28 06:58:22
(1 week ago)
Web attack blocked by Wordfence on mergel.nu (1 hit). Reported by CRMON.
Web App Attack
π«π·
pm33
2026-05-25 23:05:19
(1 week ago)
Wordpress login attempts
Brute-Force
πͺπΈ
10dencehispahard SL
2026-01-26 07:46:25
(4 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
π±π»
garmtech.com
2025-12-28 18:33:38
(5 months ago)
IM360 WAF: WordPress plugin/theme auto install block
Web App Attack
π±π»
garmtech.com
2025-12-03 12:48:54
(6 months ago)
IM360 WAF: Attempt to upload malware
Hacking
πΊπΈ
TPI-Abuse
2025-11-27 20:20:56
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.58.124 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.58.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 27 15:20:48.535291 2025] [security2:error] [pid 13045:tid 13048] [client 104.207.58.124:51735] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "busybeerestaurant.com"] [uri "/.git/HEAD"] [unique_id "aSiyoJw4Fizu8O7oXWH0BQAAAQE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 10:35:50
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.58.124 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.58.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 05:35:42.646446 2025] [security2:error] [pid 21264:tid 21264] [client 104.207.58.124:33747] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.laboquimia.es"] [uri "/.svn/wc.db"] [unique_id "aSbX_u2xrHqzo0DcnkPTHgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 05:26:41
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.58.124 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.58.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:26:38.397895 2025] [security2:error] [pid 22992:tid 22992] [client 104.207.58.124:21171] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.pavlounis.com"] [uri "/.env"] [unique_id "aSaPjlhO-liaDajujAf4ZgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 01:16:24
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.58.124 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.58.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 20:16:20.492199 2025] [security2:error] [pid 19457:tid 19457] [client 104.207.58.124:53027] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.title28.itaxcenter.com"] [uri "/.git/HEAD"] [unique_id "aSZU5IoNLDjO_8Na5rT19QAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-24 19:55:02
(6 months ago)
suspicious request in access.log
Web App Attack
π±π»
garmtech.com
2025-11-24 19:51:53
(6 months ago)
Attempted access to sensitive endpoint (/.svn/wc.db) detected. Automated scan or unauthorized probin ...
show more
Attempted access to sensitive endpoint (/.svn/wc.db) detected. Automated scan or unauthorized probing.
show less
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 09:28:30
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.58.124 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.58.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:28:24.468822 2025] [security2:error] [pid 25217:tid 25217] [client 104.207.58.124:16961] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.kdgsf.xyz"] [uri "/.svn/wc.db"] [unique_id "aSQlOIg2sReAsXMu4B4B2QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 08:47:27
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.58.124 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.58.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:47:19.524777 2025] [security2:error] [pid 7199:tid 7199] [client 104.207.58.124:9397] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.calvarycavaliers.org"] [uri "/.git/HEAD"] [unique_id "aSQbl_ARsjQB_knkMdMHpAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack