π§πͺ
madeit
2026-08-29 14:41:22
(3 days ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-17 07:10:42
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:10:37.096247 2026] [security2:error] [pid 22262:tid 22262] [client 172.70.174.158:10725] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.microscopedia.com"] [uri "/.git/HEAD"] [unique_id "aoKz7c4l1QxOzSVQ7DSObAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-17 00:49:17
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 20:49:13.362586 2026] [security2:error] [pid 3399:tid 3399] [client 172.70.174.158:12873] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.comicpreservation.com"] [uri "/.git/config"] [unique_id "aoJaiZNNSR-pbU7bNOt8wAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-16 07:55:59
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:55:54.359699 2026] [security2:error] [pid 12008:tid 12008] [client 172.70.174.158:12586] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mypensees.com"] [uri "/.git/HEAD"] [unique_id "aoFtCrZzpn--E5388Eb7iwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-21 09:14:00
(2 months ago)
172.70.174.158 - - [21/Jun/2026:11:13:59 +0200] "GET //wp-includes/ID3/license.txt HTTP/1.1" 404 441 ...
show more
172.70.174.158 - - [21/Jun/2026:11:13:59 +0200] "GET //wp-includes/ID3/license.txt HTTP/1.1" 404 441 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
172.70.174.158 - - [21/Jun/2026:11:13:59 +0200] "GET //wp-includes/ID3/license.txt HTTP/1.1" 404 246 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
172.70.174.158 - - [21/Jun/2026:11:13:59 +0200] "GET //blog/wp-includes/wlwmanifest.xml HTTP/1.1" 404 441 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
172.70.174.158 - - [21/Jun/2026:11:13:59 +0200] "GET //blog/wp-includes/wlwmanifest.xml HTTP/1.1" 404 246 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
172.70.174.158 - - [21/Jun/2026:11:13:59 +0200] "GET //web/wp-includes/wlwmanifest.xml HTTP/1.1" 404 4
...
show less
Brute-Force
Web App Attack
π³π±
homeshowdomain.nl
2026-05-14 22:06:33
(3 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-13.
show less
Web App Attack
SSH
Hacking
πΊπΈ
mnsf
2026-04-29 02:05:08
(4 months ago)
Login Too Frequent (6)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-06 01:26:47
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 21:26:42.750342 2026] [security2:error] [pid 19045:tid 19045] [client 172.70.174.158:10127] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "antoniorufino.com"] [uri "/.env.staging"] [unique_id "adML0nx1tpCr97oZXuIuXAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-05 10:51:26
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 06:51:18.299081 2026] [security2:error] [pid 916:tid 916] [client 172.70.174.158:10607] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.millcitymakers.com"] [uri "/.env1"] [unique_id "adI-pqCctPHu4J6nFfDoJwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-04 22:27:13
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 18:26:55.759020 2026] [security2:error] [pid 25185:tid 25185] [client 172.70.174.158:11350] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.notariaramirez.cl"] [uri "/.env.production"] [unique_id "adGQL81p61uf_sxJIDxcBQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-04 21:03:37
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 17:03:31.125267 2026] [security2:error] [pid 11402:tid 11402] [client 172.70.174.158:10583] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.hppagewideflorida.com"] [uri "/private/.env"] [unique_id "adF8o7SxeVEw1EwBelCPMwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-04 14:19:37
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 10:19:31.144723 2026] [security2:error] [pid 22731:tid 22731] [client 172.70.174.158:9670] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.ianpearce.tv"] [uri "/.env.tmp"] [unique_id "adEd81Is6WST4UgIWkYJMwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 20:28:52
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 16:28:45.531984 2026] [security2:error] [pid 32392:tid 32392] [client 172.70.174.158:12994] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.davisound.com"] [uri "/.env.local"] [unique_id "adAi_fKGGkLauwU9fBA22AAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 18:05:13
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 14:04:58.982647 2026] [security2:error] [pid 21086:tid 21086] [client 172.70.174.158:13277] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nealschonbook.com"] [uri "/.env.staging"] [unique_id "adABSvZvkaV6UMrbTzUFlAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 13:45:28
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.174.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 09:45:19.310379 2026] [security2:error] [pid 21932:tid 21932] [client 172.70.174.158:9588] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.thehomemailbox.com"] [uri "/.env.example"] [unique_id "ac_Eb2TVez9NdgvRr9OvIQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack