๐บ๐ธ
TPI-Abuse
2026-10-07 00:59:19
(12 minutes ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 20:59:10.954931 2026] [security2:error] [pid 30618:tid 30618] [client 104.23.170.183:11815] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jsommer.com"] [uri "/.env.staging"] [unique_id "asWZXr8g1RY9Wc6xrDWy4gAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 15:45:16
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 11:45:09.211165 2026] [security2:error] [pid 19104:tid 19104] [client 104.23.170.183:10501] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "disio.com"] [uri "/.env.dev"] [unique_id "asUXhR_nI5CeBfDph0BtcwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
pm33
2026-10-06 15:13:14
(9 hours ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 14:56:06
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 10:55:59.676676 2026] [security2:error] [pid 25537:tid 25537] [client 104.23.170.183:14087] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.majesticsolutions.co"] [uri "/.env.production"] [unique_id "asUL_5U_s-oQQA4MhnBCWgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
solution.it
2026-10-06 14:22:21
(10 hours ago)
[Tue Oct 06 16:22:20.810427 2026] [authz_core:error] [pid 2818568:tid 2818568] [client 104.23.170.18 ...
show more
[Tue Oct 06 16:22:20.810427 2026] [authz_core:error] [pid 2818568:tid 2818568] [client 104.23.170.183:10347] AH01630: client denied by server configuration: /var/www/html/internetriders.org/.htaccess
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-06 12:46:29
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 08:46:22.960397 2026] [security2:error] [pid 31637:tid 31637] [client 104.23.170.183:10116] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nomanszone.org"] [uri "/wp-config.php.old"] [unique_id "asTtnq_GUtH2ybncrGl2UQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 06:13:00
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 02:12:51.235658 2026] [security2:error] [pid 27240:tid 27240] [client 104.23.170.183:13455] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "transmittersolution.com"] [uri "/.env"] [unique_id "asSRY92CuAz2v_9in5vGlwAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 03:59:50
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 23:59:45.089803 2026] [security2:error] [pid 19094:tid 19094] [client 104.23.170.183:9472] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rangerroma.com"] [uri "/.git/config"] [unique_id "asRyMfMQBIFlFJUcHM7KvgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 01:33:56
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 21:33:38.323896 2026] [security2:error] [pid 19601:tid 19601] [client 104.23.170.183:12448] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "owengmail.com"] [uri "/.git/config"] [unique_id "asRP8tq5mPsBVUHt6L20iAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-10-06 00:40:52
(1 day ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 1 hits.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 00:18:45
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 20:18:24.797266 2026] [security2:error] [pid 1110:tid 1110] [client 104.23.170.183:14065] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "versahealthcare.com"] [uri "/.htaccess"] [unique_id "asQ-UGfZxicoK4NkE0mtjgAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 23:03:22
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 19:03:16.333195 2026] [security2:error] [pid 15712:tid 15712] [client 104.23.170.183:12739] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.guitarwisdom.com"] [uri "/.env.local"] [unique_id "asQstNnBiCWfBe7ypDeNgQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
altenglaner
2026-10-05 22:20:13
(1 day ago)
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ba ...
show more
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ban.
show less
Hacking
Web App Attack
Anonymous
2026-10-05 21:35:59
(1 day ago)
Bot detected scanning for vulnerable pages
Port Scan
๐บ๐ธ
TPI-Abuse
2026-10-05 20:21:28
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.170.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 16:21:21.988917 2026] [security2:error] [pid 21634:tid 21634] [client 104.23.170.183:11248] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.achildsspace.com"] [uri "/.env.save"] [unique_id "asQGwYGjp6DZZw3bTJIrOQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack