πΊπΈ
TPI-Abuse
2026-07-16 19:18:33
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.25 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.25 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 15:18:29.078577 2026] [security2:error] [pid 25784:tid 25784] [client 172.70.246.25:11870] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "the-megg.com"] [uri "/.git/config"] [unique_id "alkuhcmEzfxlNiXpEv7jMQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
hackthetime
2026-06-17 15:41:09
(1 month ago)
Tried to access /wp-admin/install.php (auto-added by Hype UI)
Web App Attack
πΊπΈ
mnsf
2026-06-10 10:05:24
(1 month ago)
Abuse Detected (1)
Brute-Force
Web App Attack
πΊπΈ
mnsf
2026-06-07 21:05:08
(1 month ago)
Abuse Detected (1)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-02 11:30:37
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.25 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.25 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 07:30:33.280258 2026] [security2:error] [pid 14979:tid 14979] [client 172.70.246.25:9356] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "enriquelaw.com"] [uri "/.git/config"] [unique_id "ah6-2X39O8HXVl4Ik22l0QAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
WellSpring
2026-05-22 06:42:28
(1 month ago)
wordpress scan on 863.today/wp-admin/install.php β WellSpr.ing/NetSentinel civic-AI security layer
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-04-04 05:05:58
(3 months ago)
Too many Status 40X (11)
Scanning/Probing (25)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-04 01:39:39
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.25 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.25 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 21:39:33.509456 2026] [security2:error] [pid 7405:tid 7405] [client 172.70.246.25:13762] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.lumentravel.com"] [uri "/.env.dev"] [unique_id "adBr1T6o8Fz2FKlrgGnTpAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 21:51:00
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.25 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.25 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 17:50:54.914987 2026] [security2:error] [pid 17301:tid 17301] [client 172.70.246.25:10292] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.fundingangelinvestors.com"] [uri "/.git/refs/heads/master"] [unique_id "adA2PmGErZmPanjJVHVwYwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 11:00:02
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.25 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.25 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 06:59:52.115708 2026] [security2:error] [pid 11358:tid 11358] [client 172.70.246.25:12041] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.mairslair.com"] [uri "/.git/refs/heads/master"] [unique_id "ac-dqCxsNzg0UxTpjPCBAQAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
masterguru
2026-04-02 11:28:44
(3 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:Cf-Worker. (5025-201)
Hacking
π³π±
e.fierstra
2026-04-02 09:04:15
(3 months ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
Anonymous
2026-04-01 14:04:21
(3 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
πΊπΈ
myagent.site
2026-03-31 02:16:17
(3 months ago)
Blocking for trying to access an exploit file: /.env.production.bak
Hacking
πΊπΈ
TPI-Abuse
2026-03-30 06:42:24
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.25 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.25 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 02:42:18.808421 2026] [security2:error] [pid 765:tid 765] [client 172.70.246.25:14175] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.waleed-security.com"] [uri "/.env.old"] [unique_id "acobSo0vgKH6AI5_jhsvTQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack