๐ง๐ช
madeit
2026-09-22 14:37:21
(3 days ago)
Web App Attack
๐ง๐ช
madeit
2026-09-14 13:56:30
(1 week ago)
Web App Attack
๐ง๐ช
madeit
2026-09-04 16:48:29
(3 weeks ago)
Web App Attack
๐ช๐ธ
robotstxt
2026-08-30 06:09:18
(3 weeks ago)
172.70.80.242 - - [30/Aug/2026:06:07:45 +0000] "GET /wp-admin.php HTTP/1.1" 404 12 "-" "Mozilla/5.0 ...
show more
172.70.80.242 - - [30/Aug/2026:06:07:45 +0000] "GET /wp-admin.php HTTP/1.1" 404 12 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36" "52.139.37.240" edge="172.70.80.242"
172.70.80.242 - - [30/Aug/2026:06:07:55 +0000] "GET /cgi-bin/xmrlpc.php HTTP/1.1" 404 31733 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36" "52.139.37.240" edge="172.70.80.242"
172.70.80.242 - - [30/Aug/2026:06:08:13 +0000] "GET /cgi-bin/index.php HTTP/1.1" 404 12 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36" "52.139.37.240" edge="172.70.80.242"
172.70.80.242 - - [30/Aug/2026:06:08:33 +0000] "GET /cgi-bin/wp-login.php HTTP/1.1" 404 31732 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36" "52.139.37.240" edge="172.70.80.242"
172.70.80.242 - - [30/A
...
show less
Bad Web Bot
Anonymous
2026-08-28 15:36:15
(4 weeks ago)
172.70.80.242 - - [28/Aug/2026:08:36:14 -0700] "GET /template/js/template.js HTTP/1.1" 200 7157 "htt ...
show more
172.70.80.242 - - [28/Aug/2026:08:36:14 -0700] "GET /template/js/template.js HTTP/1.1" 200 7157 "https://aimsagency.ltcglobal.com/login" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.7922.137 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
...
show less
Brute-Force
SSH
๐ง๐ช
madeit
2026-08-15 21:27:39
(1 month ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-23 03:01:11
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 172.70.80.242 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 172.70.80.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 22 23:01:04.159861 2026] [security2:error] [pid 6156:tid 6156] [client 172.70.80.242:11880] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.josephshv.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.josephshv.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "ajn28Bs7aaAxTSqzl4xdUwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-22 22:01:03
(3 months ago)
Auto-ban: >3000 req/min op 2026-06-22
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-21 05:05:14
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.80.242 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.80.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 01:05:04.722934 2026] [security2:error] [pid 8296:tid 8296] [client 172.70.80.242:12221] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.easttnpros.com.savingshvac.com"] [uri "/.env.local"] [unique_id "ajdxAPQ01uOnKu782vD8KwAAAAs"], referer: https://www.google.com/search?q=www.easttnpros.com.savingshvac.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-10 16:05:24
(3 months ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-06-09 00:06:59
(3 months ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-06-04 12:05:47
(3 months ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-06-04 07:05:30
(3 months ago)
Abuse Detected (2)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-06-03 08:07:28
(3 months ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 21:37:32
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 172.70.80.242 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 172.70.80.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 17:37:29.296089 2026] [security2:error] [pid 27757:tid 27757] [client 172.70.80.242:12349] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.drmaterna.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.drmaterna.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "ag4pmcpb_cCMV0I0vF5cCQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack