๐ฉ๐ช
Blexyel
2026-07-19 06:14:54
(5 days ago)
104.23.213.188 - - [19/Jul/2026:08:14:53 +0200] "GET /wp-content/wp-login.php HTTP/1.1" 301 162 "-" ...
show more
104.23.213.188 - - [19/Jul/2026:08:14:53 +0200] "GET /wp-content/wp-login.php HTTP/1.1" 301 162 "-" "-"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-25 01:18:28
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 21:18:25.943438 2026] [security2:error] [pid 11572:tid 11572] [client 104.23.213.188:25224] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wholesaleict.digbie.com"] [uri "/.env.backup"] [unique_id "ajyB4fS4xu1VPoutT8iOdAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-25 16:33:16
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 25 12:33:08.165491 2026] [security2:error] [pid 23207:tid 23207] [client 104.23.213.188:12469] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "musicalmuses.com"] [uri "/.env.development"] [unique_id "ahR5xFBl8oaqaDkEi_mOdQAAAAQ"], referer: https://www.google.com/search?q=musicalmuses.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
tavis.page
2026-05-18 05:10:38
(2 months ago)
Blocked by UFW on server [443/tcp]
Source port: 12973
TTL: 55
Packet length: 60
TOS: 0x00
This repo ...
show more
Blocked by UFW on server [443/tcp]
Source port: 12973
TTL: 55
Packet length: 60
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-05-15 08:47:27
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 04:47:14.251992 2026] [security2:error] [pid 20655:tid 20669] [client 104.23.213.188:12550] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ihcsb.gryphix.com"] [uri "/.env.dusk.local"] [unique_id "agbdkgS8NqowuojCS1PJvgAAAUw"], referer: https://www.google.com/search?q=www.ihcsb.gryphix.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-15 07:29:46
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 03:29:37.028617 2026] [security2:error] [pid 14406:tid 14406] [client 104.23.213.188:10706] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "intelligent-design.net"] [uri "/.env.dev"] [unique_id "agbLYZLHVxUi0dF57oqH6AAAAB0"], referer: https://www.google.com/search?q=intelligent-design.net
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 17:34:12
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 13:34:06.352174 2026] [security2:error] [pid 7082:tid 7082] [client 104.23.213.188:14002] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zazuza.com"] [uri "/.git/config"] [unique_id "af9wDnJwpJvCcHcd0iQJ0gAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-07 12:05:26
(3 months ago)
Scanning/Probing (11)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-04-06 11:05:13
(3 months ago)
Scanning/Probing (17)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-04-05 00:05:31
(3 months ago)
Too many Status 40X (22)
Scanning/Probing (33)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-04-03 23:06:33
(3 months ago)
Scanning/Probing (18)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-29 19:51:29
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 15:51:25.168268 2026] [security2:error] [pid 18260:tid 18260] [client 104.23.213.188:12963] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.nessmonsters.com"] [uri "/server/.env"] [unique_id "acmCvVbYb3DrXo6aDoodcAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-29 18:58:17
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 14:58:12.609354 2026] [security2:error] [pid 26597:tid 26597] [client 104.23.213.188:9973] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aemcmullin.com"] [uri "/config/.env"] [unique_id "acl2RLAF9EETR6GeaGMsIgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-29 17:40:36
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 13:40:28.897216 2026] [security2:error] [pid 29314:tid 29314] [client 104.23.213.188:10877] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.thelastnoel.com"] [uri "/.env.example"] [unique_id "aclkDDj2saV250uey2hotgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-29 17:18:22
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.188 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 13:18:18.464868 2026] [security2:error] [pid 17567:tid 17567] [client 104.23.213.188:9954] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.forerunnersjazz.org"] [uri "/config/.env.local"] [unique_id "acle2i9-REJYzeibtoRLIAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack