🇺🇸
TPI-Abuse
2026-07-31 14:53:52
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.28.225.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.28.225.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 10:53:47.869387 2026] [security2:error] [pid 638843:tid 638843] [client 104.28.225.30:26334] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mena365.gulftelecom.com"] [uri "/.env"] [unique_id "amy2-0lfSGovJ5II9pNSFQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-31 09:52:16
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.28.225.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.28.225.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 05:52:09.581545 2026] [security2:error] [pid 2506699:tid 2506699] [client 104.28.225.30:23300] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "meltonspace.com"] [uri "/.env.development"] [unique_id "amxwSedIDC2RoGqWBEtL9wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇪🇸
XiDeRo
2026-07-30 23:47:01
(4 weeks ago)
IP bloqueada por puntuación de karma acumulada (Guardian Web v2).
Port Scan
Web App Attack
🇮🇹
Progetto1
2026-06-12 02:21:02
(2 months ago)
Mail - Multiple failed login attempts
Brute-Force
Exploited Host
Anonymous
2026-06-09 20:44:44
(2 months ago)
104.28.225.30 - - [10/Jun/2026:04:44:44 +0800] "GET /.git/config HTTP/1.1" 404 196 "-" "Mozilla/5.0 ...
show more
104.28.225.30 - - [10/Jun/2026:04:44:44 +0800] "GET /.git/config HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36"
...
show less
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-06-09 12:52:34
(2 months ago)
Web attack/malicious scanning detected
Web App Attack
🇨🇦
TechnoSolutions CL
2026-06-08 03:03:51
(2 months ago)
104.28.225.30 - - [08/Jun/2026:03:00:29 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (M ...
show more
104.28.225.30 - - [08/Jun/2026:03:00:29 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36"
104.28.225.30 - - [08/Jun/2026:03:03:51 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36"
...
show less
Hacking
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
nekopavel
2026-06-07 23:21:12
(2 months ago)
104.28.225.30 - - [08/Jun/2026:01:21:06 +0200]"GET /.git/HEAD HTTP/1.1" 404 19"-" dash.neko.chat "Mo ...
show more
104.28.225.30 - - [08/Jun/2026:01:21:06 +0200]"GET /.git/HEAD HTTP/1.1" 404 19"-" dash.neko.chat "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36""0.004" "0.003""Las Vegas" "US"
104.28.225.30 - - [08/Jun/2026:01:21:06 +0200]"GET /.git/config HTTP/1.1" 404 19"-" dash.neko.chat "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36""0.004" "0.003""Las Vegas" "US"
104.28.225.30 - - [08/Jun/2026:01:21:09 +0200]"GET /.git/HEAD HTTP/1.1" 404 19"-" data.neko.chat "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36""0.004" "0.003""Las Vegas" "US"
...
show less
Hacking
Bad Web Bot
Web App Attack
🇮🇩
Burayot
2026-06-07 10:20:55
(2 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 104.28.225.30 (US/United States/-): ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 104.28.225.30 (US/United States/-): 1 in the last 3600 secs
show less
Web App Attack
🇨🇭
lufi
2026-06-07 06:02:35
(2 months ago)
2026-06-07 08:02:34 104.28.225.30: blacklistedPath: /.git/HEAD
...
Web Spam
Brute-Force
Hacking
Web App Attack
🇮🇪
Coolnagour
2026-06-06 18:24:55
(2 months ago)
httpprobe: banned during check /
Web App Attack
🇦🇺
2000cn.com.au
2026-06-06 08:02:49
(2 months ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇩🇪
Bedios GmbH
2026-06-06 02:04:11
(2 months ago)
Login credentials theft attempt
Hacking
🇩🇪
sdos.es
2026-06-05 19:28:58
(2 months ago)
"Restricted File Access Attempt - Matched Data: /.git/ found within REQUEST_FILENAME: /.git/config"
Web App Attack
🇫🇷
pm33
2026-06-05 18:07:51
(2 months ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack