π§πͺ
madeit
2026-10-05 18:12:20
(21 hours ago)
Web App Attack
πΊπΈ
billybobby
2026-05-26 16:21:32
(4 months ago)
Blocked by UFW [80/tcp] | SPT: 12947 | TTL: 58 | LEN: 60 | TOS: 0x00 β’ Reported by: github.com/sefin ...
show more
Blocked by UFW [80/tcp] | SPT: 12947 | TTL: 58 | LEN: 60 | TOS: 0x00 β’ Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
π©πͺ
F242
2026-04-13 22:00:45
(5 months ago)
Wordpress soft lock
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-02 05:16:06
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 01:16:01.372470 2026] [security2:error] [pid 32690:tid 32690] [client 172.70.111.142:9643] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cuteswimwear.brazilianbottom.com"] [uri "/core/.env"] [unique_id "ac37kTKZgvRCQFzmhdWPFAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-30 05:35:19
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 01:35:15.157831 2026] [security2:error] [pid 6885:tid 6885] [client 172.70.111.142:10051] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.kuddlkat.com"] [uri "/.env.test"] [unique_id "acoLk3vR4NBSi_7ZXZvafwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 03:48:51
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 23:48:47.483805 2026] [security2:error] [pid 12338:tid 12338] [client 172.70.111.142:9404] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.thewhispertwins.com"] [uri "/.env.save"] [unique_id "ab4VH495T4ssq9udHG7rVgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 00:15:45
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 20:15:40.289007 2026] [security2:error] [pid 10433:tid 10433] [client 172.70.111.142:11923] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.blessedhavenfarm.com"] [uri "/.env.tmp"] [unique_id "ab3jLJBFWWkHSYvi3KPfrQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 08:08:18
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 04:08:10.848198 2026] [security2:error] [pid 5787:tid 5787] [client 172.70.111.142:10689] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.petiteplaisanceconservationfund.org"] [uri "/.env.production"] [unique_id "ab0AamyTcQc7o7U5lAUaHgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 07:36:28
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 03:36:23.053619 2026] [security2:error] [pid 1828:tid 1828] [client 172.70.111.142:10539] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.flightclaimservices.com"] [uri "/.env_secret"] [unique_id "abz49ysrAaapQu9GxfJu_AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 03:39:33
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 23:39:25.195930 2026] [security2:error] [pid 2827:tid 2827] [client 172.70.111.142:12412] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.geriart.qu1ck.com"] [uri "/.env.development"] [unique_id "abzBbfpT7-qlxbrNwJqeiwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 01:56:28
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 21:56:21.036621 2026] [security2:error] [pid 17466:tid 17466] [client 172.70.111.142:10641] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.ctrussell.us"] [uri "/.env_settings"] [unique_id "abypRWedGIBxL5xQ9coMXgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-19 11:50:16
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 07:50:08.818005 2026] [security2:error] [pid 17107:tid 17107] [client 172.70.111.142:13238] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.lg.cloudex.link"] [uri "/.env.example"] [unique_id "abvi8EXbHz2uwlnRa66KzwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-17 03:47:41
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.111.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 16 23:47:35.939949 2026] [security2:error] [pid 29481:tid 29481] [client 172.70.111.142:10116] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lookatpriscoolwebsite.click"] [uri "/.env"] [unique_id "abjO1w-vsu5NHg3NA2-etwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
octageeks.com
2026-03-15 04:08:53
(6 months ago)
Wordpress malicious attack:[octablocked]
Web App Attack
πͺπΈ
el-brujo
2026-02-28 14:56:00
(7 months ago)
28/Feb/2026:15:56:00.288712 +0100Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
28/Feb/2026:15:56:00.288712 +0100Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 172.70.111.142] ModSecurity: Warning. detected SQLi using libinjection with fingerprint 's)&f(' [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-942-APPLICATION-ATTACK-SQLI.conf"] [line "66"] [id "942100"] [msg "SQL Injection Attack Detected via libinjection"] [data "Matched Data: s)&f( found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36'))AND/**/UPDATEXML(10744,CONCAT('.','~',(SELECT/**/(ELT(10744=10744,1))),'~'),6158) AND (('wK9MWJiO' LIKE 'wK9MWJiO"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-sqli"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/152/248/66"] [tag "PCI/6.5.2"] [hostname "status.elhacker.net"] [uri "/"] [unique_id "aaMCALzmuz9c2m75Bfm_IQADviI"]
...
show less
Hacking
Web App Attack