๐ช๐ธ
librebit
2026-06-16 05:26:27
(4 days ago)
Brute force
Brute-Force
๐ซ๐ท
Sklurk
2026-06-16 01:34:08
(4 days ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-12 02:45:24
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 11 21:45:20.571143 2026] [security2:error] [pid 1171731:tid 1171731] [client 104.207.60.155:60717] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arsndetx.com"] [uri "/config/.env"] [unique_id "aY0-wG-8rZZo6Hm_hiLq-AAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-11 17:59:54
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 11 12:59:51.570793 2026] [security2:error] [pid 20931:tid 20931] [client 104.207.60.155:22903] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arabou.co"] [uri "/v2/.git/config"] [unique_id "aYzDlwRV5IlfTQ00bv8omAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 06:42:49
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 01:42:42.791348 2026] [security2:error] [pid 27671:tid 27671] [client 104.207.60.155:27503] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kontikimotorcycles.com"] [uri "/api/.git/config"] [unique_id "aYrTYhxzPgZJriiBG1iShAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-02-10 04:31:12
(4 months ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-02-10 03:15:04
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:14:56.046226 2026] [security2:error] [pid 31821:tid 31821] [client 104.207.60.155:47167] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "maeghanan.com"] [uri "/v2/.git/config"] [unique_id "aYqisNTsgU6nHeEK8YwqfQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 02:53:08
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 21:53:04.884928 2026] [security2:error] [pid 21981:tid 21981] [client 104.207.60.155:61709] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kingdom-way.org"] [uri "/admin/.git/config"] [unique_id "aYqdkFq7BDhbDPYHSYdXzQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 23:59:20
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 18:59:14.913993 2026] [security2:error] [pid 18143:tid 18143] [client 104.207.60.155:46105] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kennythompson.com"] [uri "/frontend/.env"] [unique_id "aYp00rZwPnM2T01K0UAHGgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 22:33:59
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 17:33:51.028440 2026] [security2:error] [pid 25338:tid 25338] [client 104.207.60.155:45687] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "houseofbates.net"] [uri "/.env.local"] [unique_id "aYpgz_u9RzFh6QrQHvKEuQAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 22:06:25
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 17:06:19.175192 2026] [security2:error] [pid 771494:tid 771502] [client 104.207.60.155:30531] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hotelpuertadelsolcr.com"] [uri "/app/.env"] [unique_id "aYpaW3eAj16Xsm7lkAkfSwAAAQY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-01-17 23:19:44
(5 months ago)
IM360 WAF: Attempt to upload malware
Hacking
๐บ๐ธ
sailor
2026-01-08 21:48:00
(5 months ago)
GET .../.env
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-07 19:27:24
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 07 14:27:17.732457 2026] [security2:error] [pid 14310:tid 14310] [client 104.207.60.155:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail-pmg.com"] [uri "/.svn/wc.db"] [unique_id "aV6zlUXbsvAVGtkYEq14jwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 06:18:57
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.60.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 01:18:51.440820 2025] [security2:error] [pid 1274912:tid 1274912] [client 104.207.60.155:50907] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "clearlightcarwash.com"] [uri "/.svn/wc.db"] [unique_id "aVIdS9iyj6xo0BSdU4o_ZAAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack