π¦πΊ
RedBear IT
2026-03-26 10:00:37
(2 months ago)
"DDoS against public endpoint"
DDoS Attack
π³π±
homeshowdomain.nl
2026-03-02 23:01:09
(3 months ago)
Auto-ban: >3000 req/min op 2026-03-02
Web App Attack
SSH
Hacking
πͺπΈ
Mugen
2026-02-24 04:42:35
(3 months ago)
Unauthorized VPN login attempts
Brute-Force
π©πͺ
kjaerulff
2026-02-22 12:50:33
(3 months ago)
Failed Wordpress login using wp-login.php
Web App Attack
π¦πΊ
2000cn.com.au
2026-02-13 13:49:42
(3 months ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-13 08:50:29
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 03:50:23.204677 2026] [security2:error] [pid 23185:tid 23196] [client 104.207.44.243:61733] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "metabotic.com"] [uri "/.env.save"] [unique_id "aY7lz0KMgqDnCKBKPq-WQQAAAMg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-13 05:28:29
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 00:28:22.752219 2026] [security2:error] [pid 221313:tid 221313] [client 104.207.44.243:23135] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "maunakeavista.com"] [uri "/.env.save"] [unique_id "aY62dpvHHSLwqWg8NdcGpgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-13 04:58:13
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 23:58:06.508679 2026] [security2:error] [pid 8453:tid 8453] [client 104.207.44.243:39143] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mastersonsmotel.ca"] [uri "/api/.env"] [unique_id "aY6vXmTeC96WDpI_iSjKYQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-13 02:56:31
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 21:56:25.504809 2026] [security2:error] [pid 15132:tid 15132] [client 104.207.44.243:64791] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mantality.com"] [uri "/frontend/.env"] [unique_id "aY6S2b6N0JI8alAgy_Ng1AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-13 01:50:25
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 20:50:21.657349 2026] [security2:error] [pid 2228651:tid 2228651] [client 104.207.44.243:62255] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mairslair.com"] [uri "/.git/config"] [unique_id "aY6DXf29645dl93mXu3l_gAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-13 01:08:23
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 20:08:14.737259 2026] [security2:error] [pid 9773:tid 9793] [client 104.207.44.243:20667] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "madring.live"] [uri "/site/.git/config"] [unique_id "aY55fuCitq664aDPqvik6AAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-11 06:18:32
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 11 01:18:26.357758 2026] [security2:error] [pid 9005:tid 9005] [client 104.207.44.243:12225] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "g-peopleland.com"] [uri "/wp/.git/config"] [unique_id "aYwfMmkFRPWh0rhJ5JthswAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-10 16:00:58
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 11:00:55.179971 2026] [security2:error] [pid 14793:tid 14793] [client 104.207.44.243:18187] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fsmfl.com"] [uri "/config/.env"] [unique_id "aYtWNzUCwXuIyGANLk9Z9AAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-01-21 06:03:06
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 21 01:02:59.497064 2026] [security2:error] [pid 14388:tid 14388] [client 104.207.44.243:35277] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "iostation.com"] [uri "/.svn/wc.db"] [unique_id "aXBsE7oFTbJUkVrE2QCXGgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
MAGIC
2026-01-19 02:07:49
(4 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot