๐ง๐ช
cmbplf
2026-03-13 22:37:17
(2 months ago)
1.814 requests with url.path */xmlrpc.php
1.409 POST requests with url.path */wp-login.php
Brute-Force
Bad Web Bot
๐ฌ๐ง
consul.to
2026-02-15 12:50:29
(3 months ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 12:27:35
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 07:27:12.911518 2026] [security2:error] [pid 12082:tid 12082] [client 104.207.62.62:28513] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "title23.com"] [uri "/app/.env"] [unique_id "aZG7oHoXxi9XOhU4tQqVrAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-02-15 12:10:57
(3 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 104.207.62.62 (FR/France/-): 1 in t ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 104.207.62.62 (FR/France/-): 1 in the last 3600 secs
show less
Web App Attack
๐ฒ๐พ
Rizzy
2026-02-15 06:17:25
(3 months ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 06:06:45
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 01:06:39.210672 2026] [security2:error] [pid 11457:tid 11457] [client 104.207.62.62:56501] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sylversheers.com"] [uri "/wp/.git/config"] [unique_id "aZFib4JsJjQbUGrdjJUlBwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
jjnxpct
2026-02-15 04:48:33
(3 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /frontend/.env (Rule ID: 930130) - Restricted File Access Attempt
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 03:14:44
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 22:14:40.040361 2026] [security2:error] [pid 12544:tid 12544] [client 104.207.62.62:42965] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stantontownship.org"] [uri "/.env.staging"] [unique_id "aZE6IDvgWMiuP62czTk2VAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 02:49:36
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 21:49:33.569290 2026] [security2:error] [pid 14984:tid 14984] [client 104.207.62.62:16959] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "namadiscount.com"] [uri "/.env.staging"] [unique_id "aZE0PQwQY9PSpmupg0t_MQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 02:27:44
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 21:27:34.527114 2026] [security2:error] [pid 16493:tid 16493] [client 104.207.62.62:63071] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mytemp.info"] [uri "/admin/.env"] [unique_id "aZEvFpidn6LRvRH3ldnUlAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 01:57:49
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 20:57:42.442527 2026] [security2:error] [pid 2167:tid 2224] [client 104.207.62.62:11615] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "southtampaprints.com"] [uri "/frontend/.env"] [unique_id "aZEoFiZIRZBCB3DKHleGRAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 01:19:38
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 20:19:33.312929 2026] [security2:error] [pid 15909:tid 15909] [client 104.207.62.62:35915] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lynellejonsson.com"] [uri "/app/.git/config"] [unique_id "aZEfJSPygqttBBXhG1DQNwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 00:40:34
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 19:40:27.790887 2026] [security2:error] [pid 184123:tid 184249] [client 104.207.62.62:44229] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "movetodc.com"] [uri "/app/.git/config"] [unique_id "aZEV-4Mh4IJV0omYQjNWUgAAAkw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-02-15 00:05:53
(3 months ago)
Scanning/Probing (25)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-14 23:29:08
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.62 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 18:29:02.278718 2026] [security2:error] [pid 10094:tid 10094] [client 104.207.62.62:29123] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "llew.life"] [uri "/.env.production"] [unique_id "aZEFPtAvBByUJutnhl-8kwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack