๐ท๐บ
DZBOT
2026-06-15 20:42:21
(12 hours ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 12:53:51
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.126 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 08:53:43.629681 2026] [security2:error] [pid 31204:tid 31204] [client 172.70.246.126:13558] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "simplyexquisitetravels.com"] [uri "/.env.dev"] [unique_id "ai1S1_XlJ_dPaSwnQE06fQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-05-20 13:01:54
(3 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
WellSpring
2026-05-13 15:45:00
(1 month ago)
wordpress scan on safesenders.org/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security l ...
show more
wordpress scan on safesenders.org/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security layer
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
mawan
2026-04-17 21:49:18
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
Anonymous
2026-04-09 20:46:37
(2 months ago)
Aggressive web scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 13:36:25
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.126 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 09:36:18.803810 2026] [security2:error] [pid 22966:tid 22966] [client 172.70.246.126:12666] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.threewild.com"] [uri "/.git/config"] [unique_id "ac_CUgjVHx8WtfIO0tHntQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-03 05:05:38
(2 months ago)
Scanning/Probing (26)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-02 12:43:12
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.126 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 08:43:04.382828 2026] [security2:error] [pid 22720:tid 22720] [client 172.70.246.126:11360] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "grexicon.com"] [uri "/.env.production"] [unique_id "ac5kWJrhvZwga4PaP7zGqwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-02 09:41:07
(2 months ago)
(mod_security) mod_security triggered on hostname [redacted] 172.70.246.126 (DE/Germany/-)
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-04-01 23:01:29
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.126 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 01 19:01:20.007518 2026] [security2:error] [pid 9692:tid 9692] [client 172.70.246.126:14167] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.awcadvocate.com"] [uri "/.git/config"] [unique_id "ac2jwJ4MMH6VzXAPcdwW_wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-01 00:03:45
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.126 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 31 20:03:38.064154 2026] [security2:error] [pid 8885:tid 8885] [client 172.70.246.126:13665] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "michaeltravis.com"] [uri "/.git/logs/HEAD"] [unique_id "acxg2iULvPxyd5XdeHI-AAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-03-31 22:05:41
(2 months ago)
Scanning/Probing (16)
Brute-Force
Web App Attack
๐ฉ๐ช
Bedios GmbH
2026-03-31 17:53:25
(2 months ago)
Login credentials theft attempt
Hacking
๐บ๐ธ
TPI-Abuse
2026-03-31 02:28:14
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.126 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 22:27:54.707418 2026] [security2:error] [pid 26983:tid 26983] [client 172.70.246.126:13863] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.anxietymd.com"] [uri "/.env"] [unique_id "acsxKp0_RD3ibyl5hU49dwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack