๐ง๐ช
madeit
2026-09-01 04:22:30
(1 month ago)
Web App Attack
๐บ๐ธ
craudiovizai
2026-08-15 12:30:14
(1 month ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. Blocked at the edge.
show less
Web App Attack
Bad Web Bot
๐ซ๐ฎ
Erpelstolz
2026-08-13 06:36:09
(1 month ago)
external host: 172.70.242.221 - - [13/Aug/2026:08:36:08 +0200] "GET /wp-admin/install.php?step=1 HTT ...
show more
external host: 172.70.242.221 - - [13/Aug/2026:08:36:08 +0200] "GET /wp-admin/install.php?step=1 HTTP/1.1" 301 325 "-" "http://erpelstolz.com/wp-admin/install.php?step=1" CF-Ray:a2a5b427aa799217-FRA CF-IP:-
show less
Web App Attack
๐ง๐ช
madeit
2026-08-08 11:51:16
(1 month ago)
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-08-05 15:48:51
(1 month ago)
172.70.242.221 - - [05/Aug/2026:18:48:51 +0300] "GET /wp-login.php HTTP/1.1" 301 162 "-" "-"
...
Hacking
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-08-02 17:45:49
(1 month ago)
172.70.242.221 - - [02/Aug/2026:20:45:49 +0300] "GET /.well-known/security.txt HTTP/1.1" 301 162 "-" ...
show more
172.70.242.221 - - [02/Aug/2026:20:45:49 +0300] "GET /.well-known/security.txt HTTP/1.1" 301 162 "-" "Mozilla/5.0 (l9scan/2.0.33e27393e2431313e2838313; +https://leakix.net)"
...
show less
Hacking
Web App Attack
๐ท๐บ
DZBOT
2026-07-31 15:05:53
(2 months ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-07-17 16:05:51
(2 months ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
Anonymous
2026-07-06 04:31:09
(2 months ago)
Blocked by firewall on hugin [8443/tcp] | Rule: UFW | SPT: 13765 | TTL: 57 | LEN: 60 | TOS: 0x00 โข R ...
show more
Blocked by firewall on hugin [8443/tcp] | Rule: UFW | SPT: 13765 | TTL: 57 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-05-09 03:53:41
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.221 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 23:53:35.913181 2026] [security2:error] [pid 12905:tid 12905] [client 172.70.242.221:14096] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cabanaconstructionandpaving.com"] [uri "/.git/config"] [unique_id "af6vv7NJWJ0glM3GP8WivQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 03:35:32
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.221 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 23:35:29.930903 2026] [security2:error] [pid 3680:tid 3680] [client 172.70.242.221:11182] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boardingatthewedge.com"] [uri "/.git/config"] [unique_id "af6rgWnpu6AEsKJh_5RPrAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-13 18:16:30
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.221 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 13 14:16:22.181436 2026] [security2:error] [pid 2608854:tid 2608854] [client 172.70.242.221:11583] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.meshbagsandmore.com"] [uri "/.git/config"] [unique_id "ad0y9t4_NtXXhxo7HwITaQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-11 09:10:14
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.221 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 11 05:10:07.249831 2026] [security2:error] [pid 1412585:tid 1412585] [client 172.70.242.221:11675] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.chicagowca.com"] [uri "/.git/config"] [unique_id "adoP75LTIur2Zz9AjSgGggAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Axel
2026-04-08 22:24:02
(5 months ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-04-08 18:45:21
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.221 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 14:45:15.680349 2026] [security2:error] [pid 206514:tid 206514] [client 172.70.242.221:12086] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.travelswithfriends.com"] [uri "/.git/config"] [unique_id "adaiO6ptFUiMjuySAcYFgwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack