๐ง๐ช
madeit
2026-08-20 18:21:55
(4 days ago)
Web App Attack
๐ฉ๐ช
Blexyel
2026-08-19 23:41:44
(5 days ago)
172.70.135.63 - - [20/Aug/2026:01:41:44 +0200] "GET /wp-includes/SimplePie/wp-login.php HTTP/1.1" 30 ...
show more
172.70.135.63 - - [20/Aug/2026:01:41:44 +0200] "GET /wp-includes/SimplePie/wp-login.php HTTP/1.1" 301 169 "-" "-" "136.243.2.38"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 09:24:10
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 05:24:02.831748 2026] [security2:error] [pid 4187:tid 4187] [client 172.70.135.63:13499] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.digitalmarketing-group.com"] [uri "/.git/config"] [unique_id "aoLTMidc6yVXt94IZbIRdQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 08:23:53
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 04:23:47.585244 2026] [security2:error] [pid 26847:tid 26847] [client 172.70.135.63:12694] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "americanureport.com"] [uri "/.git/config"] [unique_id "aoLFE4Bn_j4fUU4VtjAjywAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 07:43:03
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:42:54.610159 2026] [security2:error] [pid 617:tid 617] [client 172.70.135.63:13408] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.inversionestalarame.com"] [uri "/.git/HEAD"] [unique_id "aoK7fvSpiQgDwjE_8Men6wAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 01:33:59
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 21:33:55.231148 2026] [security2:error] [pid 24634:tid 24634] [client 172.70.135.63:11704] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.stoneybluff.com"] [uri "/.git/HEAD"] [unique_id "aoJlA4_56pJ9K4WQrTuOoAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Sรฉfora Srl
2026-08-03 20:04:29
(3 weeks ago)
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache ...
show more
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache-badbot jail
show less
Bad Web Bot
๐ฉ๐ช
abdubhai
2026-08-03 03:42:38
(3 weeks ago)
172.70.135.63 - - [03/Aug/2026:0
...
Brute-Force
๐บ๐ธ
mnsf
2026-04-07 02:06:04
(4 months ago)
Scanning/Probing (17)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 16:34:28
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 12:34:22.865559 2026] [security2:error] [pid 23348:tid 23348] [client 172.70.135.63:12286] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.jeremy-olson.com"] [uri "/server/.env"] [unique_id "acqmDkk5j-yCryd6ddKmZAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 15:07:29
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 11:07:18.418198 2026] [security2:error] [pid 29170:tid 29170] [client 172.70.135.63:11833] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.superstargambling.com"] [uri "/.env2"] [unique_id "acqRpj86XA0J2lDOMWnczQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 13:57:42
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 09:57:37.921632 2026] [security2:error] [pid 3349:tid 3349] [client 172.70.135.63:11331] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.lemoulinavent.org"] [uri "/private/.env"] [unique_id "acqBUZTXu7U5lGDzQ7T_UgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 12:42:08
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 08:42:00.636241 2026] [security2:error] [pid 754:tid 754] [client 172.70.135.63:13752] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.wisecoautomotive.com"] [uri "/.env.production"] [unique_id "acpvmBxFjsi1em_Z-c9HfgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 11:43:43
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 07:43:34.203730 2026] [security2:error] [pid 10399:tid 10399] [client 172.70.135.63:10353] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.denisfrison.com"] [uri "/api/.env"] [unique_id "acph5sAPTkvLKGDwNM-F9gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 05:51:55
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.135.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 01:51:51.462774 2026] [security2:error] [pid 15029:tid 15029] [client 172.70.135.63:12385] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.cvoguemag.com"] [uri "/backend/.env"] [unique_id "acoPdxmXok9iue5ITnsg3AAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack