π³π±
homeshowdomain.nl
2026-06-16 22:03:19
(5 days ago)
Auto-ban: >3000 req/min op 2026-06-16
Web App Attack
SSH
Hacking
πΊπΈ
billybobby
2026-05-20 17:22:12
(1 month ago)
Blocked by UFW [80/tcp] | SPT: 11942 | TTL: 58 | LEN: 60 | TOS: 0x00 β’ Reported by: github.com/sefin ...
show more
Blocked by UFW [80/tcp] | SPT: 11942 | TTL: 58 | LEN: 60 | TOS: 0x00 β’ Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
πΊπΈ
lostswordfish.com
2026-04-18 13:04:03
(2 months ago)
Wordfence waf block on kcuar
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 14:31:46
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 10:31:41.265207 2026] [security2:error] [pid 20068:tid 20068] [client 104.23.253.141:12667] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.tekrav.com"] [uri "/config/.env.local"] [unique_id "ac_PTdhLtUghXnCb9kvBvQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-03-29 21:06:20
(2 months ago)
Scanning/Probing (13)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 05:08:38
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 21 01:08:32.049950 2026] [security2:error] [pid 14439:tid 14463] [client 104.23.253.141:10419] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.lead-sleds.com"] [uri "/.env_config"] [unique_id "ab4n0Iafd2hEYvS4V7fgLAAAAJc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 04:29:57
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 21 00:29:52.239822 2026] [security2:error] [pid 28355:tid 28355] [client 104.23.253.141:14195] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "edscontracting.com"] [uri "/.env.backup"] [unique_id "ab4ewFe86KCwWBE2c2fgAgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 03:51:02
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 23:50:55.911198 2026] [security2:error] [pid 13989:tid 13989] [client 104.23.253.141:9659] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.holistichealth4u2.com"] [uri "/.envrc"] [unique_id "ab4Vn4strKrBNKne3pdUKAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-03-20 14:08:22
(3 months ago)
Scanning/Probing (15)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 09:23:08
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 05:23:00.982801 2026] [security2:error] [pid 6206:tid 6206] [client 104.23.253.141:13804] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.swampoodlegrounds.com"] [uri "/.env.production.local"] [unique_id "ab0R9EYb80gm7TveUDba4gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 08:13:18
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 04:13:10.386325 2026] [security2:error] [pid 16200:tid 16291] [client 104.23.253.141:12957] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.boracayboats.com"] [uri "/var/www/.env"] [unique_id "ab0BlrlbKV00IBNPOwT7AQAAAQg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 07:03:37
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 03:03:33.945826 2026] [security2:error] [pid 1359:tid 1359] [client 104.23.253.141:11556] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.humandesignanalysis.org"] [uri "/.env.local.backup"] [unique_id "abzxRfG3pRH3hrZcYLul-wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 04:18:21
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 00:18:15.468800 2026] [security2:error] [pid 4890:tid 4890] [client 104.23.253.141:11768] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.glolady.com"] [uri "/docker/.env"] [unique_id "abzKh_kt3cUxrvS1vL1kGAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 03:57:02
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 23:56:52.111269 2026] [security2:error] [pid 19118:tid 19118] [client 104.23.253.141:13052] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.syvox.net"] [uri "/.env.orig"] [unique_id "abzFhBjqzKvKj9-u303gBAAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 03:39:51
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.253.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 23:39:46.643779 2026] [security2:error] [pid 4865:tid 4865] [client 104.23.253.141:12171] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.assheton.com"] [uri "/.env.save"] [unique_id "abzBghbaivdibuR5oHwrVAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack