๐ซ๐ท
ELYAZ
2026-08-22 07:14:02
(4 hours ago)
(wordpress) Failed wordpress login from 104.207.62.148 (FR/France/-): (CF_ENABLE)
Brute-Force
๐ฆ๐บ
paulshipley.com.au
2026-08-22 00:54:41
(10 hours ago)
levellapromotions.com.au:443 104.207.62.148 - - [22/Aug/2026:10:54:38 +1000] "GET /?author=2 HTTP/1. ...
show more
levellapromotions.com.au:443 104.207.62.148 - - [22/Aug/2026:10:54:38 +1000] "GET /?author=2 HTTP/1.1" 404 176594 "https://www.google.com/search?q=wordpress" "Mozilla/5.0 (X11; Linux x86_64; rv:120.0) Gecko/20100101 Firefox/120.0"
...
show less
Web App Attack
Anonymous
2026-08-22 00:30:14
(11 hours ago)
WordPress Brute Force
Brute-Force
๐บ๐ธ
lostswordfish.com
2026-08-21 19:00:06
(16 hours ago)
Wordfence waf block on fairregistry
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-07-11 04:30:07
(1 month ago)
Blocked by CSF 13 firewall - Rule: WPLOGIN
US/United States/-
Web App Attack
๐จ๐ณ
ThreatBook.io
2026-05-12 23:19:30
(3 months ago)
ThreatBook Intelligence: http_proxy,vpn_proxy more details on https://threatbook.io/ip/104.207.62.14 ...
show more
ThreatBook Intelligence: http_proxy,vpn_proxy more details on https://threatbook.io/ip/104.207.62.148
2026-05-12 15:14:28 /management/tenant-monitoring/servers
2026-05-12 15:14:36 /wls-wsat/CoordinatorPortType
2026-05-12 15:14:21 /console/login/LoginForm.jsp
2026-05-12 15:14:24 /weblogic/ready
2026-05-12 15:14:31 /config/config.xml
show less
Web App Attack
๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(4 months ago)
"DDoS against public endpoint"
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-01-02 21:13:04
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 02 16:12:57.436950 2026] [security2:error] [pid 22402:tid 22402] [client 104.207.62.148:42845] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dluxe.group"] [uri "/.env"] [unique_id "aVg02XHSYMzHccsHJqIbcwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-01-02 07:12:48
(7 months ago)
wordpress-trap
Web App Attack
๐ฑ๐ป
instant
2025-12-30 07:10:14
(7 months ago)
30.12.2025 07:10:14 Git repository scan (/.git)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 07:37:18
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 02:37:15.297185 2025] [security2:error] [pid 23967:tid 23967] [client 104.207.62.148:45263] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "journeytoaclosedcity.com"] [uri "/.svn/wc.db"] [unique_id "aVIvqzXPkg3FuZeMtz0lXQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 06:59:27
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 01:59:20.352287 2025] [security2:error] [pid 32009:tid 32009] [client 104.207.62.148:53259] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "depololaw.com"] [uri "/.svn/wc.db"] [unique_id "aVImyIwb6SkAAq_Vmr0jKAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 05:53:02
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 00:52:56.749096 2025] [security2:error] [pid 19240:tid 19240] [client 104.207.62.148:46565] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hawleyrentals.com"] [uri "/.svn/wc.db"] [unique_id "aVIXOJWcSI_7Lx6hHQVMsQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2025-12-24 06:20:22
(7 months ago)
Detected attack and reported by a human
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
๐บ๐ธ
octageeks.com
2025-12-15 05:06:58
(8 months ago)
Wordpress malicious attack:[octablocked]
Web App Attack