๐ณ๐ฑ
exxos
2025-10-05 03:03:01
(8 months ago)
Attacks with Bad user agents
Hacking
๐ช๐ธ
Global Cyber Police
2025-07-27 13:52:54
(10 months ago)
Malicious bot activity detected: Hitting honeypot page (200 OK with 258/259 bytes sent).
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-05 19:58:04
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 207.204.249.63 (63.249.204.207.client.dyn.stron ...
show more
(mod_security) mod_security (id:225170) triggered by 207.204.249.63 (63.249.204.207.client.dyn.strong-sf39.as22781.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 05 14:58:00.152861 2024] [security2:error] [pid 30373] [client 207.204.249.63:33951] [client 207.204.249.63] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||tomthomasplumbing.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "tomthomasplumbing.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Zed5SHbs6sQaKKcQQmjq8wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-24 06:53:56
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 207.204.249.63 (63.249.204.207.client.dyn.stron ...
show more
(mod_security) mod_security (id:225170) triggered by 207.204.249.63 (63.249.204.207.client.dyn.strong-sf39.as22781.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 24 01:53:53.275000 2023] [security2:error] [pid 24039] [client 207.204.249.63:48069] [client 207.204.249.63] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||computergeek.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "computergeek.us"] [uri "/blog/wp-json/wp/v2/users/"] [unique_id "ZYfVgSdHfvBXqCCxvB03TAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2023-03-15 19:46:15
(3 years ago)
port scan and connect, tcp 80 (http)
Port Scan
Anonymous
2023-03-10 02:38:23
(3 years ago)
port scan and connect, tcp 80 (http)
Port Scan
๐ช๐ธ
10dencehispahard SL
2023-01-29 12:54:01
(3 years ago)
Suspicious activity detected by Modsecurity [Application attack LFI]
Hacking
Web App Attack
Anonymous
2023-01-28 23:47:39
(3 years ago)
POST /
GET /.env
GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php
SQL Injection
Web App Attack
Anonymous
2023-01-28 17:05:24
(3 years ago)
POST /
GET /.env
GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php
SQL Injection
Web App Attack
๐ฆ๐บ
ozisp.com.au
2023-01-28 11:26:21
(3 years ago)
US_Strong_<33>1674905179 [1:2031505:2] ET SCAN WordPress Scanner Performing Multiple Requests to Win ...
show more
US_Strong_<33>1674905179 [1:2031505:2] ET SCAN WordPress Scanner Performing Multiple Requests to Windows Live Writer XML [Classification: Detection of a Network Scan] [Priority: 3] {TCP} 207.204.249.63:50556
show less
Hacking
๐ง๐ท
AC - Team
2023-01-28 08:53:53
(3 years ago)
207.204.249.63 - - [28/Jan/2023:05:54:08 -0300] "GET /.env HTTP/1.1" 301 604 "-" "Mozilla/5.0 (Linux ...
show more
207.204.249.63 - - [28/Jan/2023:05:54:08 -0300] "GET /.env HTTP/1.1" 301 604 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30"
...
show less
Hacking
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2023-01-28 08:00:57
(3 years ago)
207.204.249.63 - - [28/Jan/2023:09:57:09 +0200] "GET /.env HTTP/1.1" 404 272 "-" "Mozilla/5.0 (Linux ...
show more
207.204.249.63 - - [28/Jan/2023:09:57:09 +0200] "GET /.env HTTP/1.1" 404 272 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30"
207.204.249.63 - - [28/Jan/2023:10:00:55 +0200] "GET /.env HTTP/1.1" 404 274 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30"
...
show less
Web App Attack
๐ฉ๐ช
conseilgouz
2023-01-28 07:25:03
(3 years ago)
doe-Security key failure(/)
Hacking
๐ง๐ท
AC - Team
2023-01-28 04:51:44
(3 years ago)
207.204.249.63 - - [28/Jan/2023:01:51:44 -0300] "GET /2019/wp-includes/wlwmanifest.xml HTTP/1.1" 301 ...
show more
207.204.249.63 - - [28/Jan/2023:01:51:44 -0300] "GET /2019/wp-includes/wlwmanifest.xml HTTP/1.1" 301 596 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Safari/537.36"
...
show less
Hacking
Web App Attack
๐บ๐ธ
RLDD
2023-01-28 01:49:04
(3 years ago)
WP probing -cou
Web App Attack