π¬π§
OptimusGO
2026-07-24 08:13:08
(1 day ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-07-24 09:13:08 UTC
Log evidence:
07/24/2026-09:13:07.567026 [**] [1:1000103:1] SECURITY Management Port Probe - CRITICAL [**] [Classification: Attempted Administrator Privilege Gain] [Priority: 1] {TCP} 104.22.1.5:10081 -> 185.127.18.66:8080
show less
Port Scan
Brute-Force
Anonymous
2026-07-23 07:08:02
(2 days ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-13 16:42:57
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.22.1.5 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.1.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 12:42:49.473387 2026] [security2:error] [pid 10779:tid 10779] [client 104.22.1.5:10648] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "emails.pawzy.app"] [uri "/.env.development.local"] [unique_id "ai2IiRDwoQvbtdjAUfkRagAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-09 18:36:31
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.22.1.5 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.1.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 14:36:26.260310 2026] [security2:error] [pid 25152:tid 25152] [client 104.22.1.5:11026] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "macau-muaythai.com"] [uri "/.git/config"] [unique_id "af9-qgZtI_YiOeTe-AMXYQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-09 15:58:42
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.22.1.5 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.1.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 11:58:38.274304 2026] [security2:error] [pid 15706:tid 15706] [client 104.22.1.5:11419] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "resumebuilder123.com"] [uri "/.git/config"] [unique_id "af9ZrgcwyrnVqjz11OOv3AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mawan
2026-05-07 11:39:58
(2 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
πΊπΈ
mawan
2026-04-25 02:49:04
(3 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
πΊπΈ
mawan
2026-04-08 08:30:50
(3 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
π¬π§
OptimusGO
2026-02-27 02:40:13
(4 months ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-02-27 02:40:13 UTC
Log evidence:
02/27/2026-02:40:12.774761 [**] [1:1000103:1] SECURITY Management Port Probe - CRITICAL [**] [Classification: Attempted Administrator Privilege Gain] [Priority: 1] {TCP} 104.22.1.5:9368 -> 185.127.18.66:8080
show less
Port Scan
Brute-Force
π―π΅
S.O.B.A. Dev.
2026-01-24 04:59:23
(6 months ago)
Persistent port scanning or vulnerability scanning
Port Scan
π¬π§
OptimusGO
2026-01-13 01:15:51
(6 months ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-01-13 01:15:51 UTC
Log evidence:
show less
Port Scan
Brute-Force
π¬π§
OptimusGO
2026-01-10 01:01:37
(6 months ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-01-10 01:01:27 UTC
Log evidence:
show less
Port Scan
Brute-Force
π¬π§
OptimusGO
2026-01-08 01:15:57
(6 months ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-01-08 01:15:57 UTC
Log evidence:
show less
Port Scan
Brute-Force
π¬π§
OptimusGO
2026-01-07 00:52:51
(6 months ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-01-07 00:52:51 UTC
Log evidence:
show less
Port Scan
Brute-Force
πΊπΈ
mawan
2025-11-25 15:35:09
(8 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack