๐บ๐ธ
mnsf
2026-06-08 04:05:17
(5 hours ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ช๐ธ
Francisco Vallejo
2026-06-05 07:25:33
(3 days ago)
[Fri Jun 05 09:22:51.052392 2026] [core:info] [pid 1219586:tid 130567181944512] [client 172.70.243.2 ...
show more
[Fri Jun 05 09:22:51.052392 2026] [core:info] [pid 1219586:tid 130567181944512] [client 172.70.243.228:11264] AH00128: File does not exist: /var/www/barluna/mcp-servers.json, referer: https://www.google.com/search?q=www.barluna.es
[Fri Jun 05 09:25:25.044036 2026] [core:info] [pid 1219586:tid 130566594750144] [client 172.70.243.228:12030] AH00128: File does not exist: /var/www/barluna/.docker/config.json, referer: https://www.google.com/search?q=www.barluna.es
[Fri Jun 05 09:25:28.078713 2026] [core:info] [pid 1115566:tid 130565957199552] [client 172.70.243.228:12031] AH00128: File does not exist: /var/www/barluna/.aws/credentials, referer: https://www.google.com/search?q=www.barluna.es
[Fri Jun 05 09:25:29.391602 2026] [core:info] [pid 1115566:tid 130566519248576] [client 172.70.243.228:10131] AH00128: File does not exist: /var/www/barluna/.env.production, referer: https://www.google.com/search?q=www.barluna.es
[Fri Jun 05 09:25:32.967830 2026] [core:info] [pid 1115567:tid 13056742730
...
show less
Brute-Force
SSH
๐จ๐ญ
backslash
2026-06-04 05:06:00
(4 days ago)
block ruleset bad bot: misc bad content F608233CC4C86EE814CE8DDDA9C4A0D3C79882F6
Bad Web Bot
๐ซ๐ท
omartin
2026-06-02 10:18:21
(5 days ago)
Critical Vulnerability Scan detected
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-29 22:08:01
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-28.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ช
iNetWorker
2026-05-23 14:53:20
(2 weeks ago)
trolling for resource vulnerabilities
Web App Attack
Anonymous
2026-05-14 02:24:54
(3 weeks ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 17:19:53
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.243.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.243.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 13:19:45.142307 2026] [security2:error] [pid 4893:tid 5013] [client 172.70.243.228:9786] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "teddysdeli.com"] [uri "/.git/config"] [unique_id "af4bMcWoqpEMy3EmqRdwjgAAAI8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-04 15:03:22
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.243.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.243.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 04 11:03:17.859963 2026] [security2:error] [pid 9639:tid 9639] [client 172.70.243.228:11920] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flutetroupeofyakima.org"] [uri "/.git/config"] [unique_id "afi1NTL_NtVDFZsUJHgwKAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 13:01:17
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.243.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.243.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 09:01:13.282278 2026] [security2:error] [pid 14430:tid 14430] [client 172.70.243.228:13186] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.johnatuttle.com"] [uri "/.git/config"] [unique_id "afNSmWDMHfdhBFevibyyeAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 09:19:58
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.243.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.243.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 05:19:51.034789 2026] [security2:error] [pid 26897:tid 26897] [client 172.70.243.228:10487] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.toddgoranson.com"] [uri "/.git/config"] [unique_id "afMet637ChtqLbFCu2TxeAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-24 23:07:27
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.243.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.243.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 24 19:07:20.705973 2026] [security2:error] [pid 20182:tid 20182] [client 172.70.243.228:9543] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "konahawaiirealty.com"] [uri "/.git/config"] [unique_id "aev3qDv-ULBgg1URU9iTMQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-20 21:52:20
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.243.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.243.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 20 17:52:13.934946 2026] [security2:error] [pid 2943534:tid 2943534] [client 172.70.243.228:10432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.angove.biz"] [uri "/.env.development.local"] [unique_id "aeagDfy-xZVV-nb01ilvyAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 06:16:50
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.243.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.243.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 02:16:44.916896 2026] [security2:error] [pid 26998:tid 26998] [client 172.70.243.228:11927] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.asociacionmutualsanjose.com"] [uri "/.env"] [unique_id "adNPzDK-QKVbGMpYaTC6GgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-05 23:05:15
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.243.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.243.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 19:05:09.221951 2026] [security2:error] [pid 29726:tid 29726] [client 172.70.243.228:10378] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.maprada92.com"] [uri "/.env.old"] [unique_id "adLqpTiMR4EzZGdHwGWseQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack