๐ณ๐ฑ
BlueWire Hosting
2026-09-08 18:55:54
(1 day ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 02:11:05
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.208.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.208.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 22:11:01.754589 2026] [security2:error] [pid 20177:tid 20177] [client 172.70.208.2:11557] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.herecometheplanes.com"] [uri "/.git/HEAD"] [unique_id "aoO_NQ5OQ5u4LgjWQW0WXAAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 03:53:47
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.208.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.208.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:53:42.777779 2026] [security2:error] [pid 18685:tid 18685] [client 172.70.208.2:14027] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.omahareact.org"] [uri "/.git/config"] [unique_id "aoKFxlIoMB1aA2__BWwAAgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 01:24:58
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.208.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.208.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 21:24:50.875123 2026] [security2:error] [pid 9119:tid 9119] [client 172.70.208.2:13143] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.turtlehill.org"] [uri "/.git/config"] [unique_id "aoJi4k_sbYKolySakXHgsgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 10:28:29
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.208.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.208.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 06:28:22.051610 2026] [security2:error] [pid 14022:tid 14022] [client 172.70.208.2:9488] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tavo.info"] [uri "/.git/HEAD"] [unique_id "aoGQxtzXxcnoE0qumWZGegAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-11 09:33:06
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.208.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.208.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 05:32:59.229515 2026] [security2:error] [pid 3780013:tid 3780013] [client 172.70.208.2:12202] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.teamwakimphotography.com"] [uri "/.git/config"] [unique_id "anrsS2zRrdSuLHspF9rg9gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-11 03:23:33
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.208.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.208.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 10 23:23:27.890313 2026] [security2:error] [pid 21578:tid 21578] [client 172.70.208.2:12183] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rambleandprose.cyberclay.net"] [uri "/.git/HEAD"] [unique_id "anqVr6m-99NaKDpk5EzMPQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-10 05:25:01
(4 weeks ago)
Web App Attack
๐บ๐ธ
mawan
2026-07-23 09:36:50
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-07-19 20:37:32
(1 month ago)
172.70.208.2 - - [19/Jul/2026:23:37:32 +0300] "GET /admin/file-manager/initialize HTTP/2.0" 404 0 "- ...
show more
172.70.208.2 - - [19/Jul/2026:23:37:32 +0300] "GET /admin/file-manager/initialize HTTP/2.0" 404 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Hacking
Web App Attack
๐ณ๐ฑ
COMPLEX
2026-06-19 03:35:59
(2 months ago)
Unsolicited TCP traffic | Action: DROP | Port 8443
Brute-Force
๐บ๐ธ
mawan
2026-06-18 15:21:22
(2 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ฆ๐บ
oncord
2026-06-17 06:37:28
(2 months ago)
Form spam
Web Spam
๐ต๐ฑ
Jacqb
2026-06-06 18:24:19
(3 months ago)
Adres potencjalnie niebezpieczny
Brute-Force
Web App Attack
Bad Web Bot
๐ณ๐ฑ
wlt-blocker
2026-05-15 11:40:26
(3 months ago)
Unauthorized access to webpage admin
Web App Attack