๐จ๐ฟ
Prcek
2026-09-09 07:28:45
(3 hours ago)
PortScan:HOST=172.69.166.44,DPORTS=443
Port Scan
๐ง๐ช
madeit
2026-08-28 07:23:30
(1 week ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 01:14:49
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.166.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.166.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 21:14:44.282428 2026] [security2:error] [pid 32185:tid 32185] [client 172.69.166.44:13327] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.rdj.us"] [uri "/.git/HEAD"] [unique_id "aoOyBBadoaHcBgF7KreauQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-17 19:21:25
(3 weeks ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 08:44:12
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.166.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.166.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 04:44:06.916781 2026] [security2:error] [pid 741:tid 741] [client 172.69.166.44:13152] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "topnotchupholstery.com"] [uri "/.git/config"] [unique_id "aoLJ1kNocsTOgDEjhNTO2wAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 08:18:38
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.166.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.166.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 04:18:32.991640 2026] [security2:error] [pid 16089:tid 16089] [client 172.69.166.44:10173] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.30daysout.com"] [uri "/.git/config"] [unique_id "aoLD2NwDJiJg7e5l2kNhWwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 06:23:04
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.166.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.166.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 02:22:59.509297 2026] [security2:error] [pid 26491:tid 26491] [client 172.69.166.44:12182] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.sophcomp.com"] [uri "/.git/config"] [unique_id "aoKowxIHsxGExAXpGcpWGAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 01:41:15
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.166.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.166.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 21:41:11.736036 2026] [security2:error] [pid 394:tid 394] [client 172.69.166.44:11447] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nihlabs.org"] [uri "/.git/config"] [unique_id "aoJmtzlEnS31f6d4TCbMTQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-14 01:30:03
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.166.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.166.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 13 21:29:56.412390 2026] [security2:error] [pid 3277805:tid 3277809] [client 172.69.166.44:12053] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.olivelawn.com"] [uri "/.git/config"] [unique_id "an5vlEKoUPzjn8V19V1mbwAAAQI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Sรฉfora Srl
2026-06-30 00:02:06
(2 months ago)
Failed attempt detected by Fail2Ban in plesk-wordpress jail
Web App Attack
๐บ๐ธ
mawan
2026-06-19 23:19:40
(2 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐จ๐ณ
ThreatBook.io
2025-10-13 22:40:01
(10 months ago)
2025-10-13 12:17:42 /file2.php
2025-10-13 12:18:16 /wp-content/plugins/shell/ff2.php
2025-10-13 12:1 ...
show more
2025-10-13 12:17:42 /file2.php
2025-10-13 12:18:16 /wp-content/plugins/shell/ff2.php
2025-10-13 12:17:39 /wp-content/themes/about.php
show less
Web App Attack
๐จ๐ณ
ThreatBook.io
2025-09-06 22:36:54
(1 year ago)
2025-09-06 04:27:06 /docs/api/org/apache/catalina/core/StandardContext.html
2025-09-06 04:09:15 /doc ...
show more
2025-09-06 04:27:06 /docs/api/org/apache/catalina/core/StandardContext.html
2025-09-06 04:09:15 /docs/cgi-howto.html
show less
Web App Attack
๐ฎ๐ฉ
hermawan
2025-08-22 09:48:32
(1 year ago)
[Fri Aug 22 16:46:38.349012 2025] [security2:error] [pid 493897:tid 139823552554688] [client 172.69. ...
show more
[Fri Aug 22 16:46:38.349012 2025] [security2:error] [pid 493897:tid 139823552554688] [client 172.69.166.44:38194] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "CF-Connecting-IP" at REQUEST_HEADERS_NAMES:Cf-Connecting-Ip. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "375"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: CF-Connecting-IP found within REQUEST_HEADERS_NAMES:Cf-Connecting-Ip: Cf-Connecting-Ip request_line = GET /images/Klimatologi/Infografis/Infografis-Iklim/Perubahan_Iklim/Infografis_Perubahan_Iklim_Jawa_Timur-600.webp HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/Klimatologi/Infografis/Infografis-Iklim/Perubahan_Iklim/Infografis_Perubahan_Iklim_Jawa_Timur-600.webp"] [unique_id "aKg8fk-TObuoEHtYFuj3EAABwhg"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[493922] [u3wMFTGEAFw] [aKg8fk-TObuoEHtYFuj3EAABwhg] keep_
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-08-21 12:43:54
(1 year ago)
[Thu Aug 21 19:43:14.815616 2025] [security2:error] [pid 338539:tid 140634993112768] [client 172.69. ...
show more
[Thu Aug 21 19:43:14.815616 2025] [security2:error] [pid 338539:tid 140634993112768] [client 172.69.166.44:14320] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "CF-Connecting-IP" at REQUEST_HEADERS_NAMES:Cf-Connecting-Ip. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "375"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: CF-Connecting-IP found within REQUEST_HEADERS_NAMES:Cf-Connecting-Ip: Cf-Connecting-Ip request_line = GET /images/Klimatologi/Infografis/Infografis-Iklim/Klimat_Story/2024/Infografis_Himbauan_Waspada_Suhu_Panas_Ekstrem-v2-600.webp HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/Klimatologi/Infografis/Infografis-Iklim/Klimat_Story/2024/Infografis_Himbauan_Waspada_Suhu_Panas_Ekstrem-v2-600.webp"] [unique_id "aKcUYs0VSqTV0N2DVitQpgAD1BM"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[338559] [wgjQbt+R6EE] [aKcUYs
...
show less
Hacking
Web App Attack