๐ฉ๐ช
BiancaNL
2026-06-27 23:10:19
(7 hours ago)
Fail2Ban: jail=nginx-exploit-probes on <fqdn> (port=<port>)
Hacking
๐ฉ๐ช
BiancaNL
2026-06-20 23:29:10
(1 week ago)
Fail2Ban: jail=nginx-exploit-probes on <fqdn> (port=<port>)
Hacking
๐บ๐ธ
WellSpring
2026-05-22 12:31:14
(1 month ago)
wordpress scan on 215.today/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security layer
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 13:21:10
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 09:21:03.435427 2026] [security2:error] [pid 14174:tid 14332] [client 172.70.246.68:12368] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.almerirock.com"] [uri "/.git/HEAD"] [unique_id "ac--v0qnRWXIjnVx5bvs2QAAAEs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-01 00:14:32
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 31 20:14:23.822315 2026] [security2:error] [pid 32095:tid 32122] [client 172.70.246.68:10846] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.pluralmatrix.com"] [uri "/.env"] [unique_id "acxjXx4R6qIL4tPMgVmyVAAAARg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-03-31 23:31:09
(2 months ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-31 04:43:05
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 31 00:42:54.783701 2026] [security2:error] [pid 14166:tid 14166] [client 172.70.246.68:13458] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.teamrealduck.com"] [uri "/.git/logs/HEAD"] [unique_id "actQzgA8i4nIXO2tp1wbDgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-03-31 01:06:01
(2 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-201)
Hacking
๐บ๐ธ
TPI-Abuse
2026-03-30 11:44:29
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 07:44:25.427776 2026] [security2:error] [pid 29198:tid 29198] [client 172.70.246.68:13223] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "obfetal.com.utilis.net"] [uri "/.env.production"] [unique_id "acpiGR-y2ZZB1Qktyp0Q2AAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 11:14:52
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 07:14:44.542259 2026] [security2:error] [pid 316:tid 316] [client 172.70.246.68:10283] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.firstunitedreserve.com"] [uri "/.git/logs/HEAD"] [unique_id "acpbJMdMTPSVH4UFy1YGlwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 06:32:15
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 02:32:10.604960 2026] [security2:error] [pid 32642:tid 32642] [client 172.70.246.68:10147] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bernardtardy.com"] [uri "/.git/index"] [unique_id "acoY6ujD0MaiMFXW0SqhOgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-03-23 01:50:13
(3 months ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-21 03:26:34
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 23:26:28.668333 2026] [security2:error] [pid 11912:tid 11912] [client 172.70.246.68:13717] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.netguard.us"] [uri "/.env.dist"] [unique_id "ab4P5NfruFiEBAjLaImUDQAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-03-20 10:13:07
(3 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.70.246.68 (DE/Germany/-): 1 in ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.70.246.68 (DE/Germany/-): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 05:41:06
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 01:41:00.668134 2026] [security2:error] [pid 11070:tid 11070] [client 172.70.246.68:13132] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bjennehall.thehallway.net"] [uri "/.env.local"] [unique_id "abzd7CfHbNWA3yflQ5YmfQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack