π§πͺ
madeit
2026-08-21 18:30:52
(11 hours ago)
Web App Attack
πΊπΈ
mawan
2026-08-12 03:01:37
(1 week ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
Anonymous
2026-07-23 07:16:37
(4 weeks ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
Anonymous
2026-07-04 00:02:16
(1 month ago)
172.69.214.103 - - [04/Jul/2026:02:02:14 +0200] "GET //wp-includes/assets/ HTTP/1.1" 404 124 "-" "-" ...
show more
172.69.214.103 - - [04/Jul/2026:02:02:14 +0200] "GET //wp-includes/assets/ HTTP/1.1" 404 124 "-" "-"
172.69.214.103 - - [04/Jul/2026:02:02:14 +0200] "GET /wp-admin/css/colors/midnight/about.php HTTP/1.1" 404 124 "-" "-"
172.69.214.103 - - [04/Jul/2026:02:02:14 +0200] "GET /solo1.php HTTP/1.1" 404 124 "-" "-"
172.69.214.103 - - [04/Jul/2026:02:02:15 +0200] "GET /2P.update.php HTTP/1.1" 404 124 "-" "-"
172.69.214.103 - - [04/Jul/2026:02:02:15 +0200] "GET /k.php HTTP/1.1" 404 124 "-" "-"
172.69.214.103 - - [04/Jul/2026:02:02:15 +0200] "GET /insc.php HTTP/1.1" 404 124 "-" "-"
172.69.214.103 - - [04/Jul/2026:02:02:15 +0200] "GET /u.php?p= HTTP/1.1" 404 124 "-" "-"
172.69.214.103 - - [04/Jul/2026:02:02:15 +0200] "GET /sss.php?p= HTTP/1.1" 404 124 "-" "-"
172.69.214.103 - - [04/Jul/2026:02:02:15 +0200] "GET //aa.php HTTP/1.1" 404 124 "-" "-"
172.69.214.103 - - [04/Jul/2026:02:02:15 +0200] "GET /footer.php HTTP/1.1" 404 124 "-" "-"
172.69.214.103 - - [04/Jul/2026:02:02:15 +0200] "GET /177.php
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-06-16 00:29:38
(2 months ago)
Aggressive web scan
Web App Attack
πΊπΈ
mawan
2026-06-15 00:02:50
(2 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
πΊπΈ
mawan
2026-06-12 08:35:21
(2 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
Anonymous
2026-05-21 15:39:37
(3 months ago)
Aggressive web scan
Web App Attack
Anonymous
2026-05-12 04:49:37
(3 months ago)
Aggressive web scan
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-05 14:15:55
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.103 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 10:15:49.050143 2026] [security2:error] [pid 11556:tid 11556] [client 172.69.214.103:11012] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "numbulary.org"] [uri "/.env.tmp"] [unique_id "adJulVN3NgpLJoSxyoJghwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-05 06:24:56
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.103 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 02:24:49.488425 2026] [security2:error] [pid 20578:tid 20578] [client 172.69.214.103:11617] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.k0cgy.net"] [uri "/.env"] [unique_id "adIAMekrDrfoQqXsmT6fnwAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-05 02:52:07
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.103 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 22:51:55.359030 2026] [security2:error] [pid 15623:tid 15623] [client 172.69.214.103:10486] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.gurneysbottleshop.com"] [uri "/.git/config"] [unique_id "adHOS0ZNnz68W4kow87qCQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-05 00:40:43
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.103 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 20:40:39.793600 2026] [security2:error] [pid 12622:tid 12622] [client 172.69.214.103:9479] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.sykesclan.com"] [uri "/.git/refs/heads/main"] [unique_id "adGvh5CD0tVMzwKy49R10AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-04 19:11:37
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.103 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 15:11:32.787123 2026] [security2:error] [pid 17316:tid 17316] [client 172.69.214.103:12919] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.mangamaster.org"] [uri "/config/.env.local"] [unique_id "adFiZNzjf7ewO_RA7L015wAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-04 17:08:13
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.103 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 13:08:09.317538 2026] [security2:error] [pid 1208:tid 1208] [client 172.69.214.103:11022] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.jerryhetrick.com"] [uri "/.git/refs/heads/main"] [unique_id "adFFeSnRI72nNxoH8nPFXwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack