๐บ๐ธ
chrisj
2026-06-04 18:45:39
(2 hours ago)
[Thu Jun 04 18:45:39.064227 2026] [proxy_fcgi:error] [pid 201931:tid 201931] [client 172.70.240.86:1 ...
show more
[Thu Jun 04 18:45:39.064227 2026] [proxy_fcgi:error] [pid 201931:tid 201931] [client 172.70.240.86:13803] AH01071: Got error 'Primary script unknown', referer: http://www.vandogh.com/ms-themes.php
[Thu Jun 04 18:45:39.235088 2026] [proxy_fcgi:error] [pid 201931:tid 201931] [client 172.70.240.86:13803] AH01071: Got error 'Primary script unknown', referer: http://www.vandogh.com/chosen.php?p=
[Thu Jun 04 18:45:39.381034 2026] [proxy_fcgi:error] [pid 201931:tid 201931] [client 172.70.240.86:13803] AH01071: Got error 'Primary script unknown', referer: http://www.vandogh.com/file.php
...
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-04 13:07:02
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 09:06:59.187594 2026] [security2:error] [pid 18870:tid 18870] [client 172.70.240.86:11238] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yeswedeliver.org"] [uri "/.git/config"] [unique_id "aiF4c6iJ1vsCtHg99TZa9QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Axel
2026-06-03 22:40:53
(22 hours ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
mnsf
2026-06-02 08:06:45
(2 days ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 08:00:29
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 04:00:15.456009 2026] [security2:error] [pid 19061:tid 19061] [client 172.70.240.86:11922] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "frogdesignmexico.com"] [uri "/.git/config"] [unique_id "ah6Nj4Xi9KYTG78ZqSWiPwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-29 22:08:22
(5 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-28.
show less
Web App Attack
SSH
Hacking
๐ฟ๐ฆ
Tokolosh Hunters
2026-05-14 04:16:48
(3 weeks ago)
AutoBlockWindow-Known bad useragent query-2026-05-14 04:16:47
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-12 03:31:12
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 11 23:31:07.029677 2026] [security2:error] [pid 8805:tid 8838] [client 172.70.240.86:11556] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.boxvalleyrockers.com"] [uri "/.git/config"] [unique_id "agKe-961Doa7Vj4SH9-6KQAAAJg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 22:26:21
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 18:26:16.837602 2026] [security2:error] [pid 25610:tid 25631] [client 172.70.240.86:12377] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eatdrinkgroove.com"] [uri "/.git/config"] [unique_id "af5jCMnhbiPgQbAArOWKwwAAAJE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
webanyone
2026-05-08 19:00:13
(3 weeks ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 08:10:30
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 04:10:24.339505 2026] [security2:error] [pid 6794:tid 6794] [client 172.70.240.86:11445] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "batfry.com"] [uri "/.git/config"] [unique_id "af2acBoQxsneeiDz7qhxyAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-07 17:27:26
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 13:27:16.929975 2026] [security2:error] [pid 30420:tid 30420] [client 172.70.240.86:10187] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.cincypcs.net"] [uri "/.env"] [unique_id "afzLdD0MQXr3t4YiVUlMngAAAAE"], referer: https://www.google.com/search?q=mail.cincypcs.net
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WellSpring
2026-05-07 13:44:34
(4 weeks ago)
wordpress scan on 575.today/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security layer
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-29 21:08:48
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 29 17:08:40.041710 2026] [security2:error] [pid 7549:tid 7549] [client 172.70.240.86:13871] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mcefa.org.general.graphics"] [uri "/.env.backup"] [unique_id "afJzWGXcA0sA09kHx1SDRAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-26 05:39:55
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 26 01:39:52.411233 2026] [security2:error] [pid 8681:tid 8681] [client 172.70.240.86:13741] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "roughexports.com"] [uri "/.git/config"] [unique_id "ae2lKLpQK9pRFlpSXSEaLgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack