๐บ๐ธ
TPI-Abuse
2026-02-15 02:53:33
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 21:53:30.870492 2026] [security2:error] [pid 16971:tid 16971] [client 104.207.33.167:28259] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nancybarrera.com"] [uri "/config/.env"] [unique_id "aZE1KmO885lhDf_9h-M8XgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 02:25:21
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 21:25:13.398752 2026] [security2:error] [pid 210520:tid 210520] [client 104.207.33.167:51971] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mysticbitchsalon.com"] [uri "/.env"] [unique_id "aZEuiWu3SF1HRG5Is1U_jwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 01:06:44
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 20:06:39.887970 2026] [security2:error] [pid 2169:tid 2265] [client 104.207.33.167:27125] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mtiminis.com"] [uri "/new/.git/config"] [unique_id "aZEcH3CmiqKc9qeqCdLY0AAAAJE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 00:35:16
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 19:35:10.750151 2026] [security2:error] [pid 19420:tid 19420] [client 104.207.33.167:22397] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mountainjaytherapy.com"] [uri "/.env.save"] [unique_id "aZEUvp4PtXZu-6oSDdHo1gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-02-14 22:59:23
(5 months ago)
Auto-ban: >3000 req/min op 2026-02-14
Hacking
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2026-02-14 22:50:51
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 17:50:45.206417 2026] [security2:error] [pid 17723:tid 17723] [client 104.207.33.167:47293] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "morganmotors.com"] [uri "/admin/.git/config"] [unique_id "aZD8RWCXIfN4K87MT1kL0gAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-14 22:34:42
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 17:34:36.785462 2026] [security2:error] [pid 543898:tid 543898] [client 104.207.33.167:54773] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lightupaustralia.com.au"] [uri "/api/.env"] [unique_id "aZD4fJBDOJoc4O4wi1jEzgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-14 22:18:19
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 17:18:14.743025 2026] [security2:error] [pid 16061:tid 16061] [client 104.207.33.167:13163] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mollins.com"] [uri "/.env.production"] [unique_id "aZD0ppQdi0Pr73kuarTGcwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
IROK
2026-02-14 22:16:09
(5 months ago)
Malware/WebShell Scan blocked by ModSecurity
...
Hacking
๐บ๐ธ
TPI-Abuse
2026-02-14 21:24:09
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.33.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.33.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 16:24:01.167105 2026] [security2:error] [pid 6860:tid 6860] [client 104.207.33.167:63493] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "miroddi.com"] [uri "/backend/.env"] [unique_id "aZDn8av9mKjRJOuzvJ9NhgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-01-07 08:32:43
(6 months ago)
attempts to hack passwords
Brute-Force
Web App Attack
๐ฑ๐ป
garmtech.com
2025-12-24 11:19:41
(6 months ago)
IM360 WAF: Attempt to upload malware
Hacking
๐ฑ๐ป
garmtech.com
2025-12-12 02:11:33
(7 months ago)
IM360 WAF: Attempt to upload malware
Hacking
๐ฆ๐บ
AWW-Admin
2025-10-29 13:35:08
(8 months ago)
(wordpress) Failed wordpress login from 104.207.33.167 (US/United States/-)
Brute-Force
Anonymous
2025-10-27 00:49:14
(8 months ago)
wordpress-trap
Web App Attack