๐ท๐บ
DZBOT
2026-05-22 07:07:41
(2 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-19 02:32:31
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.223.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.223.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 18 22:32:24.855483 2026] [security2:error] [pid 7880:tid 7880] [client 104.23.223.24:10963] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.pikcasa.com"] [uri "/.env"] [unique_id "agvLuEgw7ESLYatCSWwsxQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-17 10:37:28
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.223.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.223.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 17 06:37:24.096039 2026] [security2:error] [pid 7919:tid 7919] [client 104.23.223.24:12550] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "esysapps.com"] [uri "/.git/config"] [unique_id "agmaZGpgdVNYrKxzrqg5bQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-12 19:35:36
(3 weeks ago)
(caddyscan) Scanner path probe from 104.23.223.24 (SE/Sweden/-): 5 in the last 3600 secs; Ports: *; ...
show more
(caddyscan) Scanner path probe from 104.23.223.24 (SE/Sweden/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 104.23.223.24 - - [12/May/2026:19:33:18 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.23.223.24 - - [12/May/2026:19:33:50 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.23.223.24 - - [12/May/2026:19:34:03 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.23.223.24 - - [12/May/2026:19:35:09 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.23.223.24 - - [12/May/2026:19:35:28 +0000] "GET /.git/config HTTP/1.1"
show less
Port Scan
๐ฉ๐ช
FeG Deutschland
2026-05-12 17:12:41
(3 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
Anonymous
2026-04-23 20:00:29
(1 month ago)
Web App Attack
Brute-Force
Web App Attack
Anonymous
2026-04-20 18:18:50
(1 month ago)
Web App Attack
Brute-Force
Web App Attack
๐ณ๐ฑ
jjnxpct
2026-04-19 03:49:35
(1 month ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /wordpress/wp-admin/setup-config.php (Rule ID: 930130) - Restricted File Access Attempt
show less
Web App Attack
Hacking
๐ณ๐ฑ
jjnxpct
2026-04-18 03:49:20
(1 month ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /wp-admin/setup-config.php (Rule ID: 930130) - Restricted File Access Attempt
show less
Web App Attack
Hacking
๐ณ๐ฑ
jjnxpct
2026-04-15 03:49:16
(1 month ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /wp-admin/setup-config.php (Rule ID: 930130) - Restricted File Access Attempt
show less
Web App Attack
Hacking
๐บ๐ธ
octageeks.com
2026-04-13 04:06:37
(1 month ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐ณ๐ฑ
jjnxpct
2026-04-13 03:47:43
(1 month ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /wordpress/wp-admin/setup-config.php (Rule ID: 930130) - Restricted File Access Attempt
show less
Web App Attack
Hacking
๐ฉ๐ช
Libra
2026-04-12 07:22:44
(1 month ago)
Fail2ban jail=apache-ddos increase=10
Web App Attack
๐ณ๐ฑ
jjnxpct
2026-04-11 03:48:12
(1 month ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /wp-admin/setup-config.php (Rule ID: 930130) - Restricted File Access Attempt
show less
Web App Attack
Hacking
๐ณ๐ฑ
jjnxpct
2026-04-08 04:16:55
(1 month ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /wp-admin/setup-config.php (Rule ID: 930130) - Restricted File Access Attempt
show less
Web App Attack
Hacking