๐ฏ๐ต
S.O.B.A. Dev.
2026-05-09 08:30:30
(1 month ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐ท๐ด
ReporTR
2026-02-06 16:00:57
(4 months ago)
Repeated malicious activity detected by Fail2Ban jail 'plesk-apache'. TCP connection completed. IP b ...
show more
Repeated malicious activity detected by Fail2Ban jail 'plesk-apache'. TCP connection completed. IP banned.
show less
Hacking
Web App Attack
Anonymous
2025-07-17 19:05:05
(11 months ago)
wp admin page access attempt
...
Hacking
Web App Attack
๐ณ๐ฑ
Study Bitcoin ๐ค
2025-05-21 18:40:55
(1 year ago)
Port probe to tcp/80 (http)
[srv125]
Port Scan
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-21 15:34:35
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 172.68.50.84 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.50.84 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 21 11:34:27.488160 2025] [security2:error] [pid 912050:tid 912050] [client 172.68.50.84:10776] [client 172.68.50.84] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.plaiatech.com"] [uri "/login/.env"] [unique_id "Z92HAwyIGyzGTLijSSAgswAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Study Bitcoin ๐ค
2024-12-04 17:16:40
(1 year ago)
Port probe to tcp/80 (http)
[srv125]
Port Scan
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Study Bitcoin ๐ค
2024-12-02 15:04:40
(1 year ago)
Port probe to tcp/443 (https)
[srv130]
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Study Bitcoin ๐ค
2024-11-20 16:38:49
(1 year ago)
Port probe to tcp/443 (https)
[srv125]
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-10-26 14:14:14
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 172.68.50.84 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.50.84 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 26 10:14:09.096361 2024] [security2:error] [pid 6326:tid 6326] [client 172.68.50.84:34234] [client 172.68.50.84] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "colonybet.com"] [uri "/demo/.env"] [unique_id "Zxz5MYioucI3lpZDEfmznQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ฌ
oncord
2024-09-25 21:05:12
(1 year ago)
Form spam
Web Spam
Anonymous
2024-08-30 06:54:55
(1 year ago)
172.68.50.84 - - [30/Aug/2024:08:54:54 +0200] "HEAD /wp-content/uploads/woo-feed/idealo/csv/geizhals ...
show more
172.68.50.84 - - [30/Aug/2024:08:54:54 +0200] "HEAD /wp-content/uploads/woo-feed/idealo/csv/geizhals.csv HTTP/2.0" 304 0 "-" "Geizhals GrabberBot/8.0 (via Mojo; +https://geizhals.at/botinfo)"
show less
Bad Web Bot
๐ฆ๐บ
oncord
2024-06-19 23:17:37
(1 year ago)
Form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2024-04-26 10:46:56
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 172.68.50.84 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.50.84 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 26 06:46:53.292359 2024] [security2:error] [pid 1667060] [client 172.68.50.84:22558] [client 172.68.50.84] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.pixacast.com"] [uri "/.git/config"] [unique_id "ZiuGHYNX1carvTDp-PslQQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-04-22 02:48:26
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 172.68.50.84 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.50.84 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 21 22:48:21.173979 2024] [security2:error] [pid 9314] [client 172.68.50.84:40926] [client 172.68.50.84] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.365soft.top"] [uri "/.git/config"] [unique_id "ZiXP9XpTFfu4CJ0J4fqKRgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-04-04 21:26:08
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 172.68.50.84 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.50.84 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 04 17:26:05.387210 2024] [security2:error] [pid 8058] [client 172.68.50.84:27132] [client 172.68.50.84] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "singlefoot.com"] [uri "/api/.git/config"] [unique_id "Zg8a7bYnIIMF1F6vCZ94twAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack