๐บ๐ธ
freeutka
2026-05-10 17:12:53
(1 month ago)
WordPress brute-force login attempt on wp-login.php.
Brute-Force
Web App Attack
๐บ๐ธ
freeutka
2026-05-07 06:29:08
(1 month ago)
WordPress brute-force login attempt on wp-login.php.
Brute-Force
Web App Attack
๐บ๐ธ
freeutka
2026-05-05 16:32:45
(1 month ago)
WordPress brute-force login attempt on wp-login.php.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-05 21:24:09
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 17:24:02.773654 2026] [security2:error] [pid 1078:tid 1078] [client 104.23.190.35:9535] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bcbikini.com.puckerbikini.com"] [uri "/.env.development.local"] [unique_id "adLS8uj3ISBGPAVIFw8iFwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 21:36:25
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 17:36:19.654008 2026] [security2:error] [pid 16879:tid 16879] [client 104.23.190.35:11399] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.carjinn.net"] [uri "/server/.env"] [unique_id "adAy0_1i86b4wSJ18r91ngAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ฌ
leithzz
2026-03-31 17:19:17
(2 months ago)
Blocked by Fail2ban jail: nginx-botsearch on VaxSolutions
DDoS Attack
Brute-Force
๐ฉ๐ช
acadeova
2026-03-24 22:34:51
(2 months ago)
๐จ Recon detected (nft drop)
SRC=104.23.190.35
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journ ...
show more
๐จ Recon detected (nft drop)
SRC=104.23.190.35
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
Anonymous
2026-03-22 12:18:40
(2 months ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-19 11:25:12
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 07:25:05.191310 2026] [security2:error] [pid 30193:tid 30193] [client 104.23.190.35:11444] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.ncrcs.org"] [uri "/.env.staging"] [unique_id "abvdEfR_ImPH_QhlXbK4zQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-19 09:38:34
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 05:38:28.473967 2026] [security2:error] [pid 11045:tid 11045] [client 104.23.190.35:9923] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ratbird.com"] [uri "/.env.staging"] [unique_id "abvEFMVGpewSVspkD5QN4AAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-19 09:22:06
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 05:21:59.677640 2026] [security2:error] [pid 22085:tid 22085] [client 104.23.190.35:11457] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.swampoodlegrounds.com"] [uri "/.env.save"] [unique_id "abvAN69JDyYaQnElQxqOywAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-19 08:40:09
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 04:39:58.528054 2026] [security2:error] [pid 26035:tid 26035] [client 104.23.190.35:13793] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.themotelwest.com"] [uri "/.env.dev.local"] [unique_id "abu2Xsg17MRN0bVuA9yCLgAAACs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-19 04:52:45
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.190.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.190.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 00:52:39.864711 2026] [security2:error] [pid 31215:tid 31215] [client 104.23.190.35:12209] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jabbosjingles.com"] [uri "/web/.env"] [unique_id "abuBF7dxTsOxYm1uSteRmwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
octageeks.com
2026-01-05 05:06:59
(5 months ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐บ๐ธ
canine.tools
2025-11-10 05:18:49
(7 months ago)
[fail2ban Auto Report] 2025-11-10T00:18:48.933192-05:00 caninebox anubis_biblioreads[1368]: {"time": ...
show more
[fail2ban Auto Report] 2025-11-10T00:18:48.933192-05:00 caninebox anubis_biblioreads[1368]: {"time":"2025-11-10T05:18:48.932928761Z","level":"INFO","source":{"function":"github.com/TecharoHQ/anubis/lib.(*Server).checkRules","file":"github.com/TecharoHQ/[email protected] /lib/anubis.go","line":269},"msg":"explicit deny","subsystem":"anubis","host":"biblioreads.canine.tools","method":"HEAD","path":"/","user_agent":"","accept_language":"","priority":"","x-forwarded-for":"104.23.190.35","x-real-ip":"104.23.190.35","host":"biblioreads.canine.tools","check_result":{"name":"bot/no-user-agent-string","rule":"DENY","weight":15}}
...
show less
Bad Web Bot