🇳🇴
jad-abuse
2026-09-11 04:25:19
(1 day ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_login. ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_login. Observed by 1 sensor(s); 1 hits.
show less
Brute-Force
Web App Attack
🇨🇭
backslash
2026-09-10 05:33:00
(2 days ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
🇨🇭
jebla.ch
2026-09-08 20:08:41
(4 days ago)
Busted by the WatchPost edge sentinel: this host was probing web-app endpoints for a way in. Blocked ...
show more
Busted by the WatchPost edge sentinel: this host was probing web-app endpoints for a way in. Blocked at the edge, logged, and shared with the community. Last seen 2026-09-08 19:53 UTC.
show less
Web App Attack
🇫🇷
tecnicorioja
2026-08-23 22:00:02
(2 weeks ago)
POST /xmlrpc.php [23/Aug/2026:07:53:00
Brute-Force
Web App Attack
🇮🇹
VHosting
2026-08-23 10:30:05
(2 weeks ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇺🇸
nationaleventpros.com
2026-08-23 10:07:04
(2 weeks ago)
WordPress login attempt
Brute-Force
🇩🇪
big-cloud.nl
2026-08-22 20:43:29
(3 weeks ago)
Try to access /xmlrpc.php
Web App Attack
🇫🇷
Sklurk
2026-08-14 09:53:51
(4 weeks ago)
Web App Attack
Web App Attack
🇺🇸
TPI-Abuse
2026-02-13 08:48:14
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.59.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.59.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 03:48:05.758699 2026] [security2:error] [pid 22177:tid 22177] [client 104.207.59.191:15509] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lakependoreillemobility.com"] [uri "/backup/.git/config"] [unique_id "aY7lRTeIjqrv0GzZyKDksgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
adembaysal
2026-02-13 07:40:07
(6 months ago)
Domain : kvkkbelgeleri.com
Rule : config
2026-02-13 07:39:16 ***hidden-privacy*** GET /api/.git/conf ...
show more
Domain : kvkkbelgeleri.com
Rule : config
2026-02-13 07:39:16 ***hidden-privacy*** GET /api/.git/config - 443 - 104.207.59.191 HTTP/1.1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 - kvkkbelgeleri.com 404 8 0 1477 169 136 - -
show less
Hacking
SQL Injection
🇺🇸
TPI-Abuse
2026-02-13 07:05:35
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.59.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.59.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 02:05:29.477152 2026] [security2:error] [pid 22681:tid 22681] [client 104.207.59.191:54691] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ktnwassociatesinc.com"] [uri "/api/.git/config"] [unique_id "aY7NOcxAvD_w1uXztl2jQgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-13 06:17:08
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.59.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.59.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 01:17:03.299296 2026] [security2:error] [pid 2356902:tid 2356902] [client 104.207.59.191:32993] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kotelbarmitzvah.com"] [uri "/new/.git/config"] [unique_id "aY7B3xwxhaASFUDBR5TDjQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-13 05:12:35
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.59.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.59.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 00:12:30.831913 2026] [security2:error] [pid 7660:tid 7660] [client 104.207.59.191:48453] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kmnr.net"] [uri "/v2/.git/config"] [unique_id "aY6yvgyhvoJpnQxM2r99UQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-13 03:02:22
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.59.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.59.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 22:02:17.786019 2026] [security2:error] [pid 1822:tid 1822] [client 104.207.59.191:23451] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kewlkarz.com"] [uri "/v2/.git/config"] [unique_id "aY6UOcl8neN91GdC4JSY3QAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-11 17:26:45
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.59.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.59.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 11 12:26:38.810889 2026] [security2:error] [pid 20053:tid 20053] [client 104.207.59.191:20601] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brinkworthmodels.com"] [uri "/.env"] [unique_id "aYy7zm33YcwQoIs34yInMgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack