๐ท๐บ
DZBOT
2026-08-09 09:36:38
(3 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ท๐บ
DZBOT
2026-07-13 12:24:56
(1 month ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-03 08:13:45
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 03 04:13:41.634137 2026] [security2:error] [pid 26301:tid 26301] [client 172.70.242.68:13579] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "andrejblatnik.com"] [uri "/.git/config"] [unique_id "afcDtaybyHF34PS2tI0evQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 13:37:57
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 09:37:50.251510 2026] [security2:error] [pid 13197:tid 13197] [client 172.70.242.68:10570] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.donutlocations.com"] [uri "/.git/config"] [unique_id "afNbLudkkXfdzouKUDmyzgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
octageeks.com
2026-04-15 04:06:17
(4 months ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-14 02:10:36
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 13 22:10:32.215745 2026] [security2:error] [pid 32167:tid 32167] [client 172.70.242.68:11851] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.superlamb.com"] [uri "/.git/config"] [unique_id "ad2iGBQ8W0GmCCPTdlGL5gAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-13 18:31:25
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 13 14:31:21.887741 2026] [security2:error] [pid 2658817:tid 2658817] [client 172.70.242.68:9337] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.von-s.com"] [uri "/.git/config"] [unique_id "ad02ebk7NwSPOM7iMIPFwQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-04-09 03:14:35
(4 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 00:03:31
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 20:03:26.541465 2026] [security2:error] [pid 1592652:tid 1592652] [client 172.70.242.68:9412] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.zztp.ws"] [uri "/.git/config"] [unique_id "adWbTrzLKRImh2Yz_Z5s4QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-07 17:14:48
(4 months ago)
Aggressive web scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 11:05:08
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 07:05:04.746924 2026] [security2:error] [pid 2677001:tid 2677026] [client 172.70.242.68:12155] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gavinblair.shaneblair.com"] [uri "/.git/config"] [unique_id "adTk4B2tGXX7f2HfX24KmQAAAJQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-06 19:05:35
(4 months ago)
Scanning/Probing (22)
Brute-Force
Web App Attack
๐ฉ๐ช
Hary74656
2026-04-05 10:49:55
(4 months ago)
[Sun Apr 05 12:49:46.300952 2026] [security2:error] [pid 499768:tid 499839] [client 172.70.242.68:13 ...
show more
[Sun Apr 05 12:49:46.300952 2026] [security2:error] [pid 499768:tid 499839] [client 172.70.242.68:13020] [client 172.70.242.68] ModSecurity: Access denied with code 403 (phase 2). Pattern match "Search Engine" at TX:httpbl_msg. [file "/usr/share/modsecurity-crs/rules/REQUEST-910-IP-REPUTATION.conf"] [line "199"] [id "910150"] [msg "HTTP Blacklist match for search engine IP"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-reputation-ip"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [hostname "at.aschi.at"] [uri "/.env.dev"] [unique_id "adI-SSwSAXsApH6rOmMrUgAAAEY"]
[Sun Apr 05 12:49:46.316221 2026] [security2:error] [pid 499768:tid 499841] [client 172.70.242.68:13020] [client 172.70.242.68] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/.env" at REQUEST_FILENAME. [file "/usr/share/modsecurity-crs/rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Restrict
...
show less
Web App Attack
Anonymous
2026-04-05 04:22:30
(4 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ฉ๐ช
XICTRON
2026-04-04 09:45:03
(4 months ago)
ModSecurity rule violation detected by Fail2Ban
Web App Attack