๐บ๐ธ
mnsf
2026-06-10 18:05:33
(15 hours ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 02:27:31
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 172.70.80.55 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 172.70.80.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 22:27:24.139298 2026] [security2:error] [pid 20753:tid 20753] [client 172.70.80.55:11425] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.callalbany.com|F|2"] [data "[email protected] "] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.callalbany.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "aijLjJ6CCJZA-EM-uEVasgAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-09 00:07:41
(2 days ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-06-07 09:01:15
(4 days ago)
172.70.80.55 - - [07/Jun/2026:12:01:15 +0300] "GET /as.php HTTP/1.1" 301 162 "-" "-"
...
Hacking
Web App Attack
๐บ๐ธ
mnsf
2026-06-05 10:07:08
(5 days ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ฉ๐ช
acadeova
2026-06-05 09:07:52
(6 days ago)
๐จ Recon detected (nft drop)
SRC=172.70.80.55
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(journa ...
show more
๐จ Recon detected (nft drop)
SRC=172.70.80.55
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐บ๐ธ
mnsf
2026-06-04 03:05:37
(1 week ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-05-28 08:01:09
(2 weeks ago)
172.70.80.55 - - [28/May/2026:11:01:08 +0300] "GET /wp-admin/js/ HTTP/2.0" 404 0 "-" "-"
...
Hacking
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-05-26 13:16:50
(2 weeks ago)
172.70.80.55 - - [26/May/2026:16:16:49 +0300] "GET /.git/config HTTP/2.0" 404 0 "-" "Mozilla/5.0 (l9 ...
show more
172.70.80.55 - - [26/May/2026:16:16:49 +0300] "GET /.git/config HTTP/2.0" 404 0 "-" "Mozilla/5.0 (l9scan/2.0.33e27393e2431313e2838313; +https://leakix.net)"
...
show less
Hacking
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-05-18 11:21:26
(3 weeks ago)
172.70.80.55 - - [18/May/2026:14:21:24 +0300] "GET /wp-content/index.php HTTP/1.1" 404 789 "-" "Mozi ...
show more
172.70.80.55 - - [18/May/2026:14:21:24 +0300] "GET /wp-content/index.php HTTP/1.1" 404 789 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
172.70.80.55 - - [18/May/2026:14:21:24 +0300] "GET /wp-content/plugins/beteng88/ws83.php HTTP/1.1" 404 789 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 21:58:13
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.80.55 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.80.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 17:58:07.599146 2026] [security2:error] [pid 2736044:tid 2736044] [client 172.70.80.55:13145] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.skeletron.com"] [uri "/.env.staging"] [unique_id "adbPb3TKtxTw12HpDj3WHgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 16:25:21
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.80.55 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.80.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 12:25:16.325571 2026] [security2:error] [pid 2352837:tid 2352837] [client 172.70.80.55:9875] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sharonmauldin.stardancertantra.com"] [uri "/public/.env"] [unique_id "adaBbAVhoRiMPbLTiJcixwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 02:00:49
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.80.55 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.80.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 22:00:45.945736 2026] [security2:error] [pid 945596:tid 945596] [client 172.70.80.55:13862] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "omegacares.com.au.tckgbookkeeping.biz"] [uri "/.git/refs/heads/main"] [unique_id "adRlTa46XBwIgtaDceOgNAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 01:14:13
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.80.55 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.80.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 21:14:08.859146 2026] [security2:error] [pid 749329:tid 749391] [client 172.70.80.55:13352] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.charteredfinancialmanager.com"] [uri "/.env.test"] [unique_id "adRaYLAyJPzLZTDtrMMhUgAAAZc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 05:42:55
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.80.55 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.80.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 01:42:51.316549 2026] [security2:error] [pid 22347:tid 22347] [client 172.70.80.55:13858] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "elegantweddinginvitations.com"] [uri "/.env.json"] [unique_id "adNH22-A5P-c3hhbrvhmswAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack