๐ซ๐ท
tilellit.pro
2026-06-15 22:25:02
(2 days ago)
Fail2Ban banned 102.129.234.48 for security violations in jail wp-armour. Log: 2026/06/15 22:25:02 [ ...
show more
Fail2Ban banned 102.129.234.48 for security violations in jail wp-armour. Log: 2026/06/15 22:25:02 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 102.129.234.48 | Target: wplogin" , client: 102.129.234.48, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED]
...
show less
Web Spam
๐ซ๐ท
tilellit.pro
2026-06-15 07:26:39
(3 days ago)
Fail2Ban banned 102.129.234.48 for security violations in jail wp-armour. Log: 2026/06/15 07:26:39 [ ...
show more
Fail2Ban banned 102.129.234.48 for security violations in jail wp-armour. Log: 2026/06/15 07:26:39 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 102.129.234.48 | Target: wplogin" , client: 102.129.234.48, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED]
...
show less
Web Spam
๐ง๐ช
sid3windr
2026-04-01 07:21:24
(2 months ago)
GET /.env (Tarpitted for 1d15h8m34s, wasted 8.06MB)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 17:11:06
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 102.129.234.48 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.129.234.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 13:10:58.889812 2026] [security2:error] [pid 20735:tid 20735] [client 102.129.234.48:20507] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.countrysideinnkingston.com"] [uri "/.env"] [unique_id "acquokYYZHsYpVHBGq24DwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
S.O.B.A. Dev.
2026-03-30 17:03:29
(2 months ago)
Threat Blocked by BeeHive from (ASN:174) (Network:COGENT-174 - Cogent Communications, LLC) (Host:sob ...
show more
Threat Blocked by BeeHive from (ASN:174) (Network:COGENT-174 - Cogent Communications, LLC) (Host:soba.dev) (Method:GET) (Protocol:HTTP/1.1) (Timestamp:2026-03-30T17:03:29Z)
show less
Brute-Force
Web Spam
Web App Attack
๐ซ๐ฎ
stinpriza
2026-03-30 16:37:54
(2 months ago)
Web App Attack
Web App Attack
Anonymous
2026-03-30 16:32:29
(2 months ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
rafled
2026-03-30 16:18:46
(2 months ago)
attempt to scan and scrape for env files and or files that expose the web app version
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-03-30 16:18:35
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 102.129.234.48 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.129.234.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 12:18:29.878949 2026] [security2:error] [pid 4298:tid 4298] [client 102.129.234.48:31187] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.qualtacon.com"] [uri "/.env"] [unique_id "acqiVUH0EcQ4qTwqx7toVgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mawan
2026-03-30 16:11:47
(2 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 15:52:39
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 102.129.234.48 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.129.234.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 11:52:34.747128 2026] [security2:error] [pid 1448:tid 1448] [client 102.129.234.48:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.kryptonome.com"] [uri "/.env"] [unique_id "acqcQuSb67Uzxks7fc6cNAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Bedios GmbH
2026-03-30 15:18:49
(2 months ago)
Login credentials theft attempt
Hacking
๐บ๐ธ
TPI-Abuse
2026-03-30 15:13:24
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 102.129.234.48 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.129.234.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 11:13:14.933520 2026] [security2:error] [pid 18002:tid 18002] [client 102.129.234.48:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nyemdr-online.com"] [uri "/.env"] [unique_id "acqTCufcAAVCtK15sr5AGwAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Epimetheus
2026-03-30 15:12:13
(2 months ago)
Unauthorized access attempts:
[GET] /.env
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77. ...
show more
Unauthorized access attempts:
[GET] /.env
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 14:45:45
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 102.129.234.48 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.129.234.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 10:45:37.850105 2026] [security2:error] [pid 26335:tid 26335] [client 102.129.234.48:17227] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heathbartley.com"] [uri "/.env"] [unique_id "acqMkeIPv36P5Aia9LqVFgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack