๐ซ๐ท
masterguru
2026-03-30 07:43:06
(2 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 104.207.62.8 (FR/France/-): 1 in the last 3600 ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 104.207.62.8 (FR/France/-): 1 in the last 3600 secs (0-197)
show less
Hacking
๐บ๐ธ
myagent.site
2026-01-15 08:39:43
(4 months ago)
Blocking for trying to access an exploit file: /.env
Hacking
Anonymous
2025-12-12 02:50:48
(5 months ago)
botnet
DDoS Attack
๐บ๐ธ
TPI-Abuse
2025-12-09 09:56:29
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.8 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 09 04:56:22.105952 2025] [security2:error] [pid 14537:tid 14537] [client 104.207.62.8:20871] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boat-registration-france.com"] [uri "/.svn/wc.db"] [unique_id "aTfyRqcs9NQCdmZWWX-ZkAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
jjnxpct
2025-12-07 04:54:25
(6 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /.svn/wc.db (Rule ID: 920440) - URL file extension is restricted by policy
show less
Hacking
SQL Injection
Web App Attack
๐ฉ๐ช
ut-addicted.com
2025-12-06 06:03:22
(6 months ago)
\[Sat Dec 06 07:03:20.741278 2025\] \[:error\] \[pid 21412:tid 140546160981760\] \[client 104.207.62 ...
show more
\[Sat Dec 06 07:03:20.741278 2025\] \[:error\] \[pid 21412:tid 140546160981760\] \[client 104.207.62.8:28471\] \[client 104.207.62.8\] ModSecurity: Access denied with code 403 \(phase 2\). Operator GE matched 5 at TX:anomaly_score. \[file "/usr/local/apache/modsecurity-owasp-latest/rules/REQUEST-949-BLOCKING-EVALUATION.conf"\] \[line "57"\] \[id "949110"\] \[msg "Inbound Anomaly Score Exceeded \(Total Score: 5\)"\] \[severity "CRITICAL"\] \[tag "application-multi"\] \[tag "language-multi"\] \[tag "platform-multi"\] \[tag "attack-generic"\] \[hostname "crx.it"\] \[uri "/.git/HEAD"\] \[unique_id "aTPHKPMGRUtrUXuevR1ScwAAAMA"\]
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 09:37:46
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.8 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 04:37:38.665287 2025] [security2:error] [pid 14306:tid 14306] [client 104.207.62.8:60593] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "domainbydomain.com"] [uri "/.git/HEAD"] [unique_id "aTKn4uqC9O1ugCK5gv2iswAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 08:01:33
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.8 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 03:01:27.336503 2025] [security2:error] [pid 3178:tid 3178] [client 104.207.62.8:28415] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "propertygalleria.com"] [uri "/.env"] [unique_id "aTKRV-Yt40gP9c3f5psxhQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 05:08:19
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.8 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 00:08:14.581439 2025] [security2:error] [pid 6658:tid 6658] [client 104.207.62.8:29613] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "innovacionesnimba.com"] [uri "/.svn/wc.db"] [unique_id "aTJovjJBsE_ZTdyU1IqUCwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2025-11-25 23:02:09
(6 months ago)
Auto-ban: >3000 req/min op 2025-11-25
Hacking
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2025-11-25 02:25:20
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.8 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:25:14.637262 2025] [security2:error] [pid 9293:tid 9293] [client 104.207.62.8:43457] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "custombusinessgreetingcards.com"] [uri "/.svn/wc.db"] [unique_id "aSUTii1iqu6HrOmzhq0sdAAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2025-11-04 16:34:51
(7 months ago)
Web App Attack
Anonymous
2025-10-30 13:58:36
(7 months ago)
WordPress Brute Force
Brute-Force
๐ฉ๐ช
Marc
2025-10-29 19:34:37
(7 months ago)
Brute-Force
Web App Attack
๐ฆ๐บ
AWW-Admin
2025-10-29 13:42:05
(7 months ago)
(wordpress) Failed wordpress login from 104.207.62.8 (FR/France/-)
Brute-Force