π³π΄
jad-abuse
2026-06-14 22:15:57
(4 days ago)
ThreatFeed automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_admin. Ob ...
show more
ThreatFeed automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_admin. Observed by 1 sensor(s); 1 hits.
show less
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-08 20:37:27
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 16:37:20.174003 2026] [security2:error] [pid 9489:tid 9489] [client 172.70.248.136:9577] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "radio.bluegrassexpressband.com"] [uri "/.git/config"] [unique_id "aicoAPMbHSlkC3YXLz2WdwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-04 14:40:27
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 10:40:20.126729 2026] [security2:error] [pid 334:tid 334] [client 172.70.248.136:13218] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "accsbg.org"] [uri "/.git/config"] [unique_id "aiGOVJ4PlUm6eL9f76Wc7QAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-03 00:19:33
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 20:19:27.357625 2026] [security2:error] [pid 12061:tid 12061] [client 172.70.248.136:11563] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "al-harbi.com"] [uri "/.git/config"] [unique_id "ah9zD60yLLqomewlOs1UpgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-06-02 22:05:12
(2 weeks ago)
Abuse Detected (1)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-02 17:33:29
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 13:33:24.779070 2026] [security2:error] [pid 28314:tid 28483] [client 172.70.248.136:11483] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "learndoexplore.com"] [uri "/.git/config"] [unique_id "ah8T5PBruJ24dtF7XHNXRgAAAgA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-02 13:57:32
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 09:57:28.222133 2026] [security2:error] [pid 3588:tid 3588] [client 172.70.248.136:9704] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "travelimts.com"] [uri "/.git/config"] [unique_id "ah7hSKrv3BtfLO_WSV26KAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-02 12:33:17
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 08:33:12.962452 2026] [security2:error] [pid 28325:tid 28325] [client 172.70.248.136:10176] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pacepk.com"] [uri "/.git/config"] [unique_id "ah7NiM_19t02R7hFOOx94QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
wimaxnz
2026-05-30 03:57:42
(2 weeks ago)
Automated report from 247 Guardian: repeated malicious activity detected. | reason=nginx_badpath
Brute-Force
SSH
Port Scan
πΊπΈ
wimaxnz
2026-05-29 01:48:58
(3 weeks ago)
Automated report from 247 Guardian: repeated malicious activity detected. | reason=nginx_badpath
Brute-Force
SSH
Port Scan
π·πΊ
DZBOT
2026-05-26 09:58:43
(3 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-05-12 11:44:14
(1 month ago)
invalid request
Bad Web Bot
Web App Attack
πΊπΈ
WellSpring
2026-05-12 03:11:34
(1 month ago)
wordpress scan on 502.today/wp-admin/install.php β WellSpr.ing/NetSentinel civic-AI security layer
Bad Web Bot
Web App Attack
Anonymous
2026-04-18 12:40:04
(2 months ago)
| SQL injection attempt.
Web App Attack
Hacking
SQL Injection
π«π·
masterguru
2026-04-07 02:55:14
(2 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-196)
Hacking