Anonymous
2025-01-09 17:20:58
(1 year ago)
(CT) IP 104.28.242.51 (US/United States/-) found to have 107 connections; Ports: 27960; SRV: 2; Acti ...
show more
(CT) IP 104.28.242.51 (US/United States/-) found to have 107 connections; Ports: 27960; SRV: 2; Action: 0; Trigger: CT_LIMIT
show less
DDoS Attack
Hacking
πΈπ¬
Charles
2024-04-23 09:54:33
(2 years ago)
104.28.242.51 - - [23/Apr/2024:17:54:31 +0800] "POST /osc1/password_forgotten.php/action/process HTT ...
show more
104.28.242.51 - - [23/Apr/2024:17:54:31 +0800] "POST /osc1/password_forgotten.php/action/process HTTP/1.1" 200 7127 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Web Spam
Email Spam
Brute-Force
Bad Web Bot
Web App Attack
SSH
πΊπΈ
TPI-Abuse
2024-03-05 07:58:00
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 104.28.242.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.28.242.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 05 02:57:55.376267 2024] [security2:error] [pid 12721] [client 104.28.242.51:52298] [client 104.28.242.51] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kingmanrents.com"] [uri "/.git/config"] [unique_id "ZebQg1WkspmOwzpuiRl3PQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-02-21 16:02:40
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 104.28.242.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.28.242.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 21 11:02:33.758156 2024] [security2:error] [pid 18097] [client 104.28.242.51:17388] [client 104.28.242.51] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "buffergy.com"] [uri "/.git/config"] [unique_id "ZdYemRiK8OH0ArezRY9a0wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-02-17 17:54:30
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 104.28.242.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.28.242.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 17 12:54:22.272196 2024] [security2:error] [pid 19939] [client 104.28.242.51:49333] [client 104.28.242.51] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cestcaryntravel.com"] [uri "/.git/config"] [unique_id "ZdDyzi_8IP6W-tDwafG1WAAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-02-17 06:03:29
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 104.28.242.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.28.242.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 17 01:03:22.632308 2024] [security2:error] [pid 9371] [client 104.28.242.51:47773] [client 104.28.242.51] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mywheatgrass.com"] [uri "/.git/config"] [unique_id "ZdBMKqRSt1BqUmXW06gizwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π¦
wil.com
2024-01-19 13:40:54
(2 years ago)
GlobalProtect login attempts with user jbrown.
VPN IP
Brute-Force
Anonymous
2024-01-19 12:16:43
(2 years ago)
Failed password for invalid user richard.smith from 104.28.242.51
Brute-Force
πΏπ¦
IrisFlower
2023-05-04 04:12:58
(3 years ago)
Unauthorized connection attempt detected from IP address 104.28.242.51 to port 80 [J]
Port Scan
Hacking
π»π³
websase.com
2022-07-29 16:52:49
(4 years ago)
ModSecurity Brute-Forcing
Web Spam
Brute-Force
Anonymous
2022-07-28 14:59:10
(4 years ago)
Attacks websites by trying to access known vulnerables of plugins, brute-force of backends or probin ...
show more
Attacks websites by trying to access known vulnerables of plugins, brute-force of backends or probing of administrative tools
show less
Brute-Force
Web App Attack
πΊπ¦
osvitalab.com
2022-07-28 10:14:37
(4 years ago)
Hacking
π²πΎ
syokadmin
2022-07-27 12:11:18
(4 years ago)
104.28.242.51 (CA/Canada/-), more than 2 Apache 403 hits in the last 3600 secs
Brute-Force
π¨π
networknoise.xyz
2022-07-24 10:22:17
(4 years ago)
PORT : 110 | https://networknoise.xyz/?filter=IP:HB1sY39SSAtTRBp7Qg%3D%3D
Port Scan
πΊπΈ
MirrorImageGaming
2022-07-23 21:43:24
(4 years ago)
8 probes @ 443 [US]
Port Scan