๐ง๐ช
madeit
2026-09-29 21:05:25
(1 day ago)
Web App Attack
๐ฉ๐ช
netclix.gr
2026-09-26 15:14:29
(5 days ago)
(bot_kill_mega) Aggressive Bot Blocked: Go-http-client 104.23.190.2 (US/United States/-): 1 in the l ...
show more
(bot_kill_mega) Aggressive Bot Blocked: Go-http-client 104.23.190.2 (US/United States/-): 1 in the last 4600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 104.23.190.2 - - [26/Sep/2026:18:12:31 +0300] "GET /login_up.php HTTP/2.0" 200 29667 "-" "Go-http-client/1.1" "157.230.85.212"'/login_up.php' '' '/opt/psa/admin/htdocs'
show less
Port Scan
๐ฒ๐ฝ
octageeks.com
2026-09-23 04:07:12
(1 week ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐ง๐ช
madeit
2026-09-04 11:23:36
(3 weeks ago)
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-08-26 04:18:16
(1 month ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐ฉ๐ช
acadeova
2026-08-16 03:12:35
(1 month ago)
๐จ Recon detected (nft drop)
SRC=104.23.190.2
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journa ...
show more
๐จ Recon detected (nft drop)
SRC=104.23.190.2
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
Anonymous
2026-08-16 00:47:59
(1 month ago)
invalid request
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-07 04:00:54
(1 month ago)
Web App Attack
Anonymous
2026-06-28 04:19:25
(3 months ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-04-22 22:01:24
(5 months ago)
Auto-ban: >3000 req/min op 2026-04-22
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-05 21:25:33
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 17:25:27.243640 2026] [security2:error] [pid 28635:tid 28635] [client 104.23.190.2:12643] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bcbikini.com.puckerbikini.com"] [uri "/.env.orig"] [unique_id "adLTRwjHRzCLd1hC2zBeTAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 09:05:28
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 05:04:58.846429 2026] [security2:error] [pid 23171:tid 23171] [client 104.23.190.2:10339] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.mixmediallc.com"] [uri "/web/.env"] [unique_id "ac-CuiKWJto0pQd8TC5tSAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-19 11:14:34
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 07:14:25.881522 2026] [security2:error] [pid 21796:tid 21796] [client 104.23.190.2:9409] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.69strains.com"] [uri "/site/.env"] [unique_id "abvakWegvezTqr6IpXLYdgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-19 10:47:59
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 06:47:55.972224 2026] [security2:error] [pid 9595:tid 9595] [client 104.23.190.2:10163] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "4windsmedia.com"] [uri "/.env.local.backup"] [unique_id "abvUW5i1iTJztnZEibIEYgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-19 08:53:06
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 04:52:58.136728 2026] [security2:error] [pid 15873:tid 15873] [client 104.23.190.2:12618] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.mezensen.com"] [uri "/config/.env.local"] [unique_id "abu5aoUvC7pr-kSpEcuMWgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack