๐บ๐ธ
koinkash.org
2026-05-23 01:40:37
(2 weeks ago)
They are fraudulent. Malicious threat actor requesting php file /wp-login.php
Web App Attack
๐ณ๐ฑ
MatStef132
2026-05-19 21:05:47
(2 weeks ago)
MatShield L7: blocked on anonymous (ua-quarantined)
Bad Web Bot
๐ณ๐ฑ
MatStef132
2026-05-19 20:59:02
(2 weeks ago)
MatShield L7: blocked on dstat.selify.io (ua-quarantined)
Bad Web Bot
๐ซ๐ท
MatStef132
2026-05-19 20:55:41
(2 weeks ago)
MatShield L7: blocked on mathost.eu (ua-quarantined)
Bad Web Bot
๐ณ๐ฑ
MatStef132
2026-05-15 13:30:00
(3 weeks ago)
MatShield L7 blocked request to fivemtest.mathost.eu for reason ua-q
DDoS Attack
Bad Web Bot
Web App Attack
๐ซ๐ท
MatStef132
2026-05-14 21:32:37
(3 weeks ago)
[mathost.eu] ua-q
DDoS Attack
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 04:35:56
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.54 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.54 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 23:35:50.947910 2026] [security2:error] [pid 11163:tid 11163] [client 104.207.61.54:51383] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kletzer.com"] [uri "/.env.staging"] [unique_id "aYq1pkmoWA_i9kI9mi2iqwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 00:35:46
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.54 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.54 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 19:35:42.093114 2026] [security2:error] [pid 28433:tid 28433] [client 104.207.61.54:40261] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hughhart.com"] [uri "/api/.git/config"] [unique_id "aYp9XmDGiO6JPYV_wgotowAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 23:01:48
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.54 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.54 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 18:01:42.800825 2026] [security2:error] [pid 31057:tid 31057] [client 104.207.61.54:11803] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "howtogetcoolstuffforfree.com"] [uri "/new/.git/config"] [unique_id "aYpnVuzEhfZFNbpUGnfAoQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 19:59:36
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.54 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.54 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 14:59:26.039864 2026] [security2:error] [pid 15860:tid 15860] [client 104.207.61.54:56375] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "homenetserv.com"] [uri "/wp/.git/config"] [unique_id "aYo8niqMhYbAgYiuQvUtOgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
F242
2026-01-30 05:25:34
(4 months ago)
Wordpress Login or XMLRPC abuse
Web App Attack
Anonymous
2026-01-05 20:14:39
(5 months ago)
Attempted brute force login to web vpn 9 time(s); last attempt for 2026.01.05 is noted in report tim ...
show more
Attempted brute force login to web vpn 9 time(s); last attempt for 2026.01.05 is noted in report timestamp
show less
Hacking
Brute-Force
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 14:01:06
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐ช๐ธ
Gem
2025-11-28 23:12:28
(6 months ago)
Unauthorized web scan.
Web App Attack
๐ฑ๐ป
garmtech.com
2025-11-28 14:52:41
(6 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 16-52.104.207.61.54.web-spamme ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 16-52.104.207.61.54.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack