π«π·
chengkev
2026-09-01 18:50:43
(1 day ago)
Esta IP fue detectada por CrowdSec, activando crowdsecurity/http-bad-user-agent
Web App Attack
Bad Web Bot
π§πͺ
madeit
2026-08-22 14:13:54
(1 week ago)
Web App Attack
π§πͺ
madeit
2026-08-06 06:16:49
(3 weeks ago)
Web App Attack
π²π½
octageeks.com
2026-07-08 04:16:14
(1 month ago)
Wordpress malicious attack:[octausername]
Web App Attack
πΊπΈ
wimaxnz
2026-05-12 02:10:12
(3 months ago)
Automated report from 247 Guardian: repeated malicious activity detected. | reason=nginx_badpath
Brute-Force
SSH
Port Scan
πΊπΈ
TPI-Abuse
2026-04-05 02:37:01
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.108 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 22:36:54.505554 2026] [security2:error] [pid 16412:tid 16412] [client 104.23.190.108:9602] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.puckerbackbikini.com"] [uri "/.env.staging"] [unique_id "adHKxh6ArNFTPPRjcOllAgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 18:40:58
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.108 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 14:40:45.829848 2026] [security2:error] [pid 15920:tid 15920] [client 104.23.190.108:13102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.vexxarr.com"] [uri "/.env.production.local"] [unique_id "adAJrdslN2Xoe4oMkSNTCAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
oncord
2026-03-30 17:19:41
(5 months ago)
Form spam
Web Spam
πΊπΈ
TPI-Abuse
2026-03-19 11:24:44
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.108 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 07:24:20.987617 2026] [security2:error] [pid 1481:tid 1481] [client 104.23.190.108:12125] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.brodericktourville.com"] [uri "/.env.test"] [unique_id "abvc5A--QB9ucTTyPt1BSgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-19 10:36:05
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.108 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 06:35:55.204027 2026] [security2:error] [pid 13910:tid 13910] [client 104.23.190.108:10385] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.heckenbach.org"] [uri "/.env.old"] [unique_id "abvRi41WU1obhwvJStQYggAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-19 09:45:23
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.108 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 05:45:18.695891 2026] [security2:error] [pid 19467:tid 19467] [client 104.23.190.108:12393] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.timjbutler.com"] [uri "/.env.dev"] [unique_id "abvFrsamotrnM68U45Rn0gAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-19 08:41:10
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.108 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 04:41:06.224379 2026] [security2:error] [pid 26422:tid 26422] [client 104.23.190.108:10846] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.agworldmissions.org"] [uri "/root/.env"] [unique_id "abu2orUb4a7PZCAr9zJsmQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-19 08:23:28
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.108 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 04:23:21.597330 2026] [security2:error] [pid 8796:tid 8877] [client 104.23.190.108:13367] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.andestravel.net"] [uri "/admin/.env"] [unique_id "abuyeby4sDyDw0ttnuR6CAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-19 03:19:57
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.108 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 18 23:19:42.906715 2026] [security2:error] [pid 16737:tid 16737] [client 104.23.190.108:12452] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.vabq.com"] [uri "/site/.env"] [unique_id "abtrTr2lP3_8flc0al_7YwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
ps-center
2026-02-24 06:19:50
(6 months ago)
SS1: Web Attack GET /wp-admin/css/
Web Spam
Hacking
Bad Web Bot
Web App Attack