๐ฉ๐ช
altenglaner
2026-09-29 22:49:08
(19 hours ago)
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ba ...
show more
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ban.
show less
Hacking
Web App Attack
๐ฉ๐ช
neckaralb-admin.de
2026-09-29 21:34:59
(20 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-09-26 02:45:43
(4 days ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
Anonymous
2026-09-18 00:00:21
(1 week ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
๐ซ๐ท
dynamix
2026-09-17 21:59:15
(1 week ago)
Multiple WAF Violations
Web App Attack
๐ง๐ช
madeit
2026-09-17 10:05:31
(1 week ago)
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-16 13:41:39
(2 weeks ago)
[cb-01vi] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-01vi] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 104.23.175.227 - - [16/Sep/2026:15:41:26 +0200] "GET /.env.development.local HTTP/2.0" 301 385 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-10 12:35:13
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.227 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 08:35:03.728238 2026] [security2:error] [pid 15611:tid 15611] [client 104.23.175.227:10769] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "uniquetreasuresshops.com.uniquetreasuresshoppes.com"] [uri "/.env.production.local"] [unique_id "aqKj9380uPlMSxEyTJFfxwAAABI"], referer: https://www.google.com/search?q=uniquetreasuresshops.com.uniquetreasuresshoppes.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-09 04:42:48
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.227 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 00:42:40.119296 2026] [security2:error] [pid 28988:tid 28988] [client 104.23.175.227:12860] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gerrytolentino.praemiumtech.com"] [uri "/.env.save"] [unique_id "aqDjwORG2ahjqJju0d6QqwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-09-08 11:31:32
(3 weeks ago)
Web App Attack
๐บ๐ธ
lnklnx
2026-09-08 09:00:15
(3 weeks ago)
www.lincolnclan.com:443 104.23.175.227 - - [08/Sep/2026:04:00:12 -0500] "GET /.git/HEAD HTTP/1.1" 40 ...
show more
www.lincolnclan.com:443 104.23.175.227 - - [08/Sep/2026:04:00:12 -0500] "GET /.git/HEAD HTTP/1.1" 401 6779 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
...
show less
Web App Attack
๐บ๐ธ
Axel
2026-08-28 17:31:20
(1 month ago)
Blocked by UFW on LAXHH [2009/tcp] | SPT: 32460 | TTL: 54 | LEN: 60 | TOS: 0x00 โข Reported by: githu ...
show more
Blocked by UFW on LAXHH [2009/tcp] | SPT: 32460 | TTL: 54 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-08-17 05:39:12
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.227 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:39:08.080409 2026] [security2:error] [pid 19908:tid 19908] [client 104.23.175.227:10794] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.aprilparks.com"] [uri "/.git/config"] [unique_id "aoKefAaS8Myz1_SGQ5Z35QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 00:30:30
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.227 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 20:30:21.093557 2026] [security2:error] [pid 3585:tid 3585] [client 104.23.175.227:10983] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.timetemple.org"] [uri "/.git/config"] [unique_id "aoJWHTz1wZLRZm47JIEm9gAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-16 08:44:57
(1 month ago)
Web App Attack