๐จ๐ฟ
Prcek
2026-09-19 16:03:37
(4 days ago)
PortScan:HOST=104.23.253.153,DPORTS=443
Port Scan
๐ง๐ช
madeit
2026-09-05 18:25:11
(2 weeks ago)
Web App Attack
๐ง๐ช
madeit
2026-08-14 16:11:21
(1 month ago)
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-07-09 04:09:57
(2 months ago)
Wordpress malicious attack:[octaflood]
Web App Attack
Anonymous
2026-07-02 13:08:28
(2 months ago)
Probing for common web apps (e.g. wordpress) or invalid web tech (e.g. Querying for PHP services on ...
show more
Probing for common web apps (e.g. wordpress) or invalid web tech (e.g. Querying for PHP services on a non-PHP site) /login
show less
Web App Attack
๐ฉ๐ช
acadeova
2026-05-31 17:57:58
(3 months ago)
๐จ Recon detected (nft drop)
SRC=104.23.253.153
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=104.23.253.153
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-04-04 18:32:29
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.253.153 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.253.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 14:32:20.676921 2026] [security2:error] [pid 31734:tid 31734] [client 104.23.253.153:9642] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.lazymanvegan.com"] [uri "/config/.env"] [unique_id "adFZNAUoX01dgWdgvd2slwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
yukon.ca
2026-03-22 18:23:35
(6 months ago)
Web Server Enforcement Violation: Sensitive Configuration File Disclosure
Port:80
Hacking
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-03-21 04:25:12
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.253.153 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.253.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 21 00:25:06.436701 2026] [security2:error] [pid 30007:tid 30007] [client 104.23.253.153:14034] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.theledman.net"] [uri "/api/.env"] [unique_id "ab4dorG7g0X1iTwXs7NT-wAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-21 02:37:07
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.253.153 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.253.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 22:37:03.844188 2026] [security2:error] [pid 2433:tid 2433] [client 104.23.253.153:9742] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.medusakenya.com"] [uri "/.env.development.local"] [unique_id "ab4ET58yUtCH5qqULfr7VgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-03-21 00:17:01
(6 months ago)
Scanning/Probing (16)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-21 00:01:49
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.253.153 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.253.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 20:01:46.079621 2026] [security2:error] [pid 6345:tid 6345] [client 104.23.253.153:10337] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fatcavestudios.fatcavemedia.com"] [uri "/home/.env"] [unique_id "ab3f6rbz7UYV9nsf1ZmWGQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-03-20 18:08:01
(6 months ago)
Scanning/Probing (14)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 07:57:06
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.253.153 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.253.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 03:57:00.927402 2026] [security2:error] [pid 3143:tid 3143] [client 104.23.253.153:10499] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.manosentuayuda.org"] [uri "/public/.env"] [unique_id "abz9zKGsyPRDk29A_O0HNAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 06:51:20
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.253.153 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.253.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 02:51:09.424924 2026] [security2:error] [pid 6154:tid 6154] [client 104.23.253.153:10056] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.kewlkarz.com"] [uri "/.git/refs/heads/main"] [unique_id "abzuXeleBDq61YFrizGOBQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack