๐ฉ๐ช
reznekcs
2026-10-01 05:00:24
(43 minutes ago)
Blocked by UFW firewall
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-01 03:32:07
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 23:31:58.674186 2026] [security2:error] [pid 17613:tid 17613] [client 104.23.170.11:13734] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.abu-dhabi-boat-registration.com"] [uri "/.env.backup"] [unique_id "ar3ULnG-FzXNfhsgrDWUegAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
bescared
2026-09-30 20:12:41
(9 hours ago)
F2B - Malicious activity detected. Too many 403. -8ff06ede-
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-30 16:34:15
(13 hours ago)
[30/Sep/2026:19:34:15 +0300] -- 104.23.170.11 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git ...
show more
[30/Sep/2026:19:34:15 +0300] -- 104.23.170.11 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/HEAD HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 15:50:36
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 11:50:30.589241 2026] [security2:error] [pid 30497:tid 30497] [client 104.23.170.11:12426] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ptr.dutchlake.com"] [uri "/wp-config.php"] [unique_id "ar0vxl2WLfsw5hP4r78U_wAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 06:26:17
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 02:26:12.974614 2026] [security2:error] [pid 6833:tid 6833] [client 104.23.170.11:12015] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "help.go4food.com"] [uri "/.env.local"] [unique_id "aryrhMMUmkQ8yfwetDyuOwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 04:12:57
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 00:12:52.451555 2026] [security2:error] [pid 32507:tid 32507] [client 104.23.170.11:12002] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "noscentpro.com"] [uri "/.env"] [unique_id "aryMRD9gEYkgCLUBXwJZaQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 22:52:15
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 18:52:12.687417 2026] [security2:error] [pid 26567:tid 26567] [client 104.23.170.11:10219] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.alccontractorsllc.com"] [uri "/.git/HEAD"] [unique_id "arxBHKHky0_HybRxsUYwvwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 17:36:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 13:36:30.618435 2026] [security2:error] [pid 19425:tid 19425] [client 104.23.170.11:10920] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.windtime.com"] [uri "/.env.production"] [unique_id "arv3HnGpelJbMfhIPO9T-wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-29 16:27:48
(1 day ago)
[29/Sep/2026:19:27:47 +0300] -- 104.23.170.11 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.env ...
show more
[29/Sep/2026:19:27:47 +0300] -- 104.23.170.11 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.env.local HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 16:20:48
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 12:20:39.890878 2026] [security2:error] [pid 28178:tid 28178] [client 104.23.170.11:10651] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "partyblockparties.com"] [uri "/.env.local"] [unique_id "arvlV2qWlYFA6blkyD2cBgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 15:54:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 11:54:39.392538 2026] [security2:error] [pid 3682:tid 3682] [client 104.23.170.11:12493] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "schonar.com"] [uri "/.env.backup"] [unique_id "arvfPy3esGyOb0O_sShPdAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 15:03:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 11:02:59.345872 2026] [security2:error] [pid 29200:tid 29200] [client 104.23.170.11:9327] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.directcch.com"] [uri "/.env.local"] [unique_id "arvTI1XGsK6Udeitk5vltwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 11:48:48
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 07:48:44.182324 2026] [security2:error] [pid 7884:tid 7884] [client 104.23.170.11:14051] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "3905ccn.org"] [uri "/.env"] [unique_id "arulnGO9ROpMi8PHgzqUIwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-29 11:05:52
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack