Anonymous
2026-06-10 09:45:35
(5 days ago)
172.70.240.194 - - [10/Jun/2026:09:45:34 +0000] "GET /wp-admin/install.php?step=1 HTTP/1.1" 404 437 ...
show more
172.70.240.194 - - [10/Jun/2026:09:45:34 +0000] "GET /wp-admin/install.php?step=1 HTTP/1.1" 404 437 "-" "http://ashleybutcher.eu/wp-admin/install.php?step=1"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-04 15:05:21
(1 week ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 13:43:08
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.194 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 09:43:05.128957 2026] [security2:error] [pid 10859:tid 10859] [client 172.70.240.194:10639] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jazziiafoundation.org"] [uri "/.git/config"] [unique_id "aiGA6bCTTyfqDc2Mkrw9AgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 12:25:28
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.194 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 08:25:24.133308 2026] [security2:error] [pid 16459:tid 16459] [client 172.70.240.194:14269] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hanabritgermanshepherds.com"] [uri "/.git/config"] [unique_id "ah7LtAL44H7OKXxmduDu8QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-28 16:35:04
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.194 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 28 12:34:59.847585 2026] [security2:error] [pid 9153:tid 9153] [client 172.70.240.194:10726] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "db.ctemdr.com"] [uri "/.git/config"] [unique_id "ahhus4oApxEWY3FhGdQ3qwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-05-26 18:58:10
(2 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
mutebot.net
2026-05-22 00:00:14
(3 weeks ago)
SRC=172.70.240.194, PROTO=TCP, SPT=11549, DPT=2087
SRC=172.70.240.194, PROTO=TCP, SPT=11549, DPT=208 ...
show more
SRC=172.70.240.194, PROTO=TCP, SPT=11549, DPT=2087
SRC=172.70.240.194, PROTO=TCP, SPT=11549, DPT=2087
SRC=172.70.240.194, PROTO=TCP, SPT=11549, DPT=2087
SRC=172.70.240.194, PROTO=TCP, SPT=11549, DPT=2087
SRC=172.70.240.194, PROTO=TCP, SPT=11549, DPT=2087
show less
Port Scan
๐ซ๐ฎ
inlink.ltd
2026-05-14 17:26:11
(1 month ago)
Known malicious PHP file or CMS probe
Web App Attack
๐บ๐ธ
mawan
2026-05-13 03:29:12
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 03:27:03
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.194 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 23:26:59.059376 2026] [security2:error] [pid 26926:tid 26926] [client 172.70.240.194:9536] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "puoci.com"] [uri "/.git/config"] [unique_id "af6pg1jHkOun8fgFPSvdigAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-05-07 01:43:34
(1 month ago)
[ThuMay0703:43:29.0346612026][security2:error][pid2244052:tid2244643][client172.70.240.194:0]ModSecu ...
show more
[ThuMay0703:43:29.0346612026][security2:error][pid2244052:tid2244643][client172.70.240.194:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"mail.annunci-ticino.ch.81-17-25-250.cpanel.site\"][uri\"/.env.development\"][unique_id\"afvuQRZyKdlqvjRNyS2_GwAAAQE\"]\,referer:https://www.google.com/search\?q=mail.annunci-ticino.ch.81-17-25-250.cpanel.site
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 19:16:11
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.194 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 15:16:04.732007 2026] [security2:error] [pid 24502:tid 24502] [client 172.70.240.194:11065] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.naturessecretresort.com"] [uri "/.git/config"] [unique_id "afOqdEWcjXIxdmTIY5S_2gAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 14:13:14
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.194 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 10:13:06.678165 2026] [security2:error] [pid 13290:tid 13290] [client 172.70.240.194:11675] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.z-industrial.com"] [uri "/.git/config"] [unique_id "afNjcmFI2E4h-3WjXxmVQwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 09:11:35
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.194 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 05:11:31.063923 2026] [security2:error] [pid 11020:tid 11036] [client 172.70.240.194:12193] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.smarterproductions.com"] [uri "/.git/config"] [unique_id "afMcw0I1Dhyavxknq_2_xwAAAY4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 05:44:54
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.194 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 01:44:50.020253 2026] [security2:error] [pid 23542:tid 23587] [client 172.70.240.194:12839] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.propertyinspectorsinc.com"] [uri "/.git/config"] [unique_id "afLsUqhQ7rVGkRgKCfZWtQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack