๐บ๐ธ
TPI-Abuse
2026-07-29 18:17:01
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 104.22.64.132 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.64.132 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 14:16:54.239962 2026] [security2:error] [pid 1342:tid 1424] [client 104.22.64.132:10864] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jd-web-designs.com"] [uri "/.env.production"] [unique_id "ampDluTaoJhn8hHvDGGVHgAAAdE"], referer: https://www.google.com/search?q=jd-web-designs.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 23:36:08
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.22.64.132 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.64.132 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 19:35:54.600319 2026] [security2:error] [pid 3079493:tid 3079493] [client 104.22.64.132:10642] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "esprit.enselme.com"] [uri "/.env.test"] [unique_id "amk82vFlbeNwy0TUiWMSfgAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 21:43:36
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.22.64.132 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.64.132 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 17:42:59.417764 2026] [security2:error] [pid 1684970:tid 1684970] [client 104.22.64.132:13076] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "srtmanagementservices.com"] [uri "/.env.save"] [unique_id "amkiYxvb-eeb66rY7r6wwQAAAB0"], referer: https://www.google.com/search?q=srtmanagementservices.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
www.mammazone.it
2026-07-25 05:22:34
(4 days ago)
[Sat Jul 25 07:22:33.096699 2026] [proxy_fcgi:error] [pid 2156179] [client 104.22.64.132:11338] AH01 ...
show more
[Sat Jul 25 07:22:33.096699 2026] [proxy_fcgi:error] [pid 2156179] [client 104.22.64.132:11338] AH01071: Got error 'Primary script unknown'
[Sat Jul 25 07:22:33.306021 2026] [proxy_fcgi:error] [pid 2156179] [client 104.22.64.132:11338] AH01071: Got error 'Primary script unknown'
...
show less
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-07-18 21:59:11
(1 week ago)
Auto-ban: >3000 req/min op 2026-07-18
Web App Attack
SSH
Hacking
๐ง๐ท
chronos
2026-07-13 23:24:29
(2 weeks ago)
2026-07-13 19:52:58 UTC-3||Unauthorized connection attempt detected for port scanning
Port Scan
๐ธ๐ฌ
celestialcity
2026-07-08 13:37:54
(3 weeks ago)
Blocked by UFW on celestialcityas [8443/tcp] | SPT: 14080 | TTL: 37 | LEN: 60 | TOS: 0x00 โข Reported ...
show more
Blocked by UFW on celestialcityas [8443/tcp] | SPT: 14080 | TTL: 37 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Anonymous
2026-07-03 15:21:56
(3 weeks ago)
104.22.64.132 - - [03/Jul/2026:08:21:55 -0700] "GET /css/app.css HTTP/1.1" 200 55768 "https://aimsag ...
show more
104.22.64.132 - - [03/Jul/2026:08:21:55 -0700] "GET /css/app.css HTTP/1.1" 200 55768 "https://aimsagency.ltcglobal.com/login" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/150.0.7871.46 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
...
show less
Brute-Force
SSH
๐ง๐ฌ
Stoyko Stoykov
2026-06-27 04:51:20
(1 month ago)
104.22.64.132 - - [27/Jun/2026:07:51:20 +0300] "GET /bless.php HTTP/1.1" 301 162 "-" "Go-http-client ...
show more
104.22.64.132 - - [27/Jun/2026:07:51:20 +0300] "GET /bless.php HTTP/1.1" 301 162 "-" "Go-http-client/1.1"
...
show less
Hacking
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-06-21 00:29:42
(1 month ago)
104.22.64.132 - - [21/Jun/2026:03:29:41 +0300] "GET / HTTP/1.1" 301 162 "-" "Mozilla/5.0 (compatible ...
show more
104.22.64.132 - - [21/Jun/2026:03:29:41 +0300] "GET / HTTP/1.1" 301 162 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)"
...
show less
Hacking
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-06-18 14:56:00
(1 month ago)
104.22.64.132 - - [18/Jun/2026:17:55:59 +0300] "GET /shell.php HTTP/1.1" 301 162 "-" "-"
...
Hacking
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-05-26 17:33:11
(2 months ago)
104.22.64.132 - - [26/May/2026:20:33:11 +0300] "GET /ss.php HTTP/1.1" 301 162 "-" "-"
...
Hacking
Web App Attack
๐ฉ๐ช
www.mammazone.it
2026-05-24 18:05:40
(2 months ago)
underdomotic.fabiodirauso.it:80 104.22.64.132 - - [24/May/2026:20:04:37 +0200] "GET /test11.php HTTP ...
show more
underdomotic.fabiodirauso.it:80 104.22.64.132 - - [24/May/2026:20:04:37 +0200] "GET /test11.php HTTP/1.1" 301 467 "-" "-"
underdomotic.fabiodirauso.it:80 104.22.64.132 - - [24/May/2026:20:05:39 +0200] "GET /testphp.php HTTP/1.1" 301 469 "-" "-"
...
show less
Hacking
๐ฆ๐บ
oncord
2026-05-22 01:19:55
(2 months ago)
Form spam
Web Spam
๐ฏ๐ต
S.O.B.A. Dev.
2026-05-20 12:47:30
(2 months ago)
Persistent port scanning or vulnerability scanning
Port Scan