๐บ๐ธ
TPI-Abuse
2026-07-10 08:26:23
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.250.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.250.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 10 04:26:16.124966 2026] [security2:error] [pid 25038:tid 25038] [client 172.70.250.35:12368] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.langmodels.com"] [uri "/.env.local"] [unique_id "alCsqOkQht8x0Xe1ot2NWgAAAC4"], referer: https://www.google.com/search?q=mail.langmodels.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 21:34:28
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.250.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.250.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 17:34:22.440992 2026] [security2:error] [pid 8917:tid 8917] [client 172.70.250.35:13090] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fabulouswire.net"] [uri "/.git/config"] [unique_id "aiNA3i3NPEUvhzJ1oMXzTQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-05-24 09:42:37
(2 months ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 12:54:31
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.250.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.250.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 08:54:27.754229 2026] [security2:error] [pid 20787:tid 20811] [client 172.70.250.35:13739] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "khalessilaw.com"] [uri "/.git/config"] [unique_id "af3dAwEgPUWo0R6GuzYprAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
trentwiles.com
2026-05-06 21:26:28
(2 months ago)
Unauthorized connection attempt detected from IP address 172.70.250.35 to port 80 [SYD]
Port Scan
๐ฉ๐ช
Sรฉfora Srl
2026-04-26 21:01:59
(3 months ago)
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache ...
show more
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache-badbot jail
show less
Bad Web Bot
Anonymous
2026-04-22 14:50:04
(3 months ago)
| PHPMyAdmin scans (looking for setup.php).
Web App Attack
Hacking
SQL Injection
๐ฎ๐ฉ
gonet.home
2026-04-12 11:35:14
(3 months ago)
Security Event Detected by SOC Gonet: event=alert, hits=1
Brute-Force
๐ฎ๐ฉ
gonet.home
2026-04-11 11:30:15
(3 months ago)
Security Event Detected by SOC Gonet: event=alert, hits=1
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-04-08 20:07:08
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.250.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.250.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 16:07:00.848573 2026] [security2:error] [pid 2667269:tid 2667269] [client 172.70.250.35:12195] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "title6.com"] [uri "/.git/index"] [unique_id "ada1ZJuQtB8X1bvCHCY4cQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-04-07 21:59:46
(3 months ago)
Auto-ban: >3000 req/min op 2026-04-07
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-04 10:13:04
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.250.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.250.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 06:12:56.355052 2026] [security2:error] [pid 1855:tid 1855] [client 172.70.250.35:11428] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.itony.com"] [uri "/.env.local"] [unique_id "adDkKBuc84T4qYpvs6bFRQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 07:34:16
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.250.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.250.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 03:34:11.271745 2026] [security2:error] [pid 7932:tid 7932] [client 172.70.250.35:11578] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.eurosoni.com"] [uri "/.env"] [unique_id "adC-8zG9IrBZoRScyqAJZQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-03 20:05:41
(3 months ago)
Scanning/Probing (18)
Brute-Force
Web App Attack
๐ง๐พ
lns.bz
2026-04-03 13:23:35
(3 months ago)
.env scanning [BY]
Web App Attack