π§πͺ
madeit
2026-09-23 17:05:24
(7 hours ago)
Web App Attack
π«π·
dynamix
2026-09-17 02:16:35
(6 days ago)
Multiple WAF Violations
Web App Attack
π§πͺ
madeit
2026-09-14 13:37:26
(1 week ago)
Web App Attack
π§πͺ
madeit
2026-09-07 09:01:46
(2 weeks ago)
Web App Attack
π§πͺ
madeit
2026-08-25 12:16:38
(4 weeks ago)
Web App Attack
π§πͺ
madeit
2026-08-14 04:32:21
(1 month ago)
Web App Attack
πΊπΈ
mnsf
2026-06-10 12:05:34
(3 months ago)
Abuse Detected (1)
Brute-Force
Web App Attack
π²π½
octageeks.com
2026-06-10 04:37:45
(3 months ago)
Wordpress malicious attack:[octawp]
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-09 01:24:15
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 172.69.130.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 172.69.130.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 21:24:11.548488 2026] [security2:error] [pid 21569:tid 21569] [client 172.69.130.228:13764] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.wolfmachine.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.wolfmachine.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "aidrO26u2uCxkrMTgQNDSgAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-08 08:15:35
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 04:15:30.486027 2026] [security2:error] [pid 2148376:tid 2148376] [client 172.69.130.228:13807] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.grabnerconsulting.com"] [uri "/.env.local"] [unique_id "adYOoqEOHXEU3ZD_G2LkcwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-07 20:49:18
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 16:49:11.707458 2026] [security2:error] [pid 1921885:tid 1921885] [client 172.69.130.228:13754] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.notariaarauco.cl"] [uri "/.env_backup"] [unique_id "adVtx5jPHECX-iOyh_gWmAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-07 05:17:05
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 01:17:02.329747 2026] [security2:error] [pid 950923:tid 950923] [client 172.69.130.228:10471] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.swhinc.net"] [uri "/.env.dist"] [unique_id "adSTTjUA2IsdY7b5I5Av2wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-07 04:54:22
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 00:54:18.960463 2026] [security2:error] [pid 693435:tid 693435] [client 172.69.130.228:11099] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.pjv.us"] [uri "/.env.tmp"] [unique_id "adSN-n0jGobCdQJq6jWELAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-06 12:29:57
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 08:29:51.250967 2026] [security2:error] [pid 10171:tid 10171] [client 172.69.130.228:12514] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.calstarsfarm.com.herston.net"] [uri "/.env.dev"] [unique_id "adOnPyDNEBOGBv2z2chIfQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-06 08:02:26
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 04:02:16.834271 2026] [security2:error] [pid 16006:tid 16006] [client 172.69.130.228:11426] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.intolifeproductions.com"] [uri "/.env.local"] [unique_id "adNoiIeaNFGDQ4GdAf5q6AAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack