๐บ๐ธ
mnsf
2026-02-19 03:05:20
(3 months ago)
Scanning/Probing (23)
Brute-Force
Web App Attack
Anonymous
2026-02-19 01:05:12
(3 months ago)
WAF repeated trigger detected by Fail2Ban
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 23:28:26
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.166.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.166.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 18:28:21.471279 2026] [security2:error] [pid 15546:tid 15546] [client 209.50.166.155:64451] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vgforever.com"] [uri "/admin/.git/config"] [unique_id "aZZLFci9FHqgf8OT6QfeoQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 20:05:12
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.166.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.166.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 15:05:05.112544 2026] [security2:error] [pid 26612:tid 26612] [client 209.50.166.155:12747] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tractiondrive.com"] [uri "/admin/.env"] [unique_id "aZYbcdZoah0XlNKwaYVLpQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-02-18 19:13:56
(3 months ago)
Probing websites for vulnerabilities
Web App Attack
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-02-18 18:40:19
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.166.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.166.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 13:40:12.589329 2026] [security2:error] [pid 18619:tid 18619] [client 209.50.166.155:34487] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thinkerblox.com"] [uri "/api/.env"] [unique_id "aZYHjIhIXhfyCrwSeLzwfgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 13:20:05
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.166.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.166.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 08:19:58.818313 2026] [security2:error] [pid 32018:tid 32018] [client 209.50.166.155:54119] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "willoughbywolf.com"] [uri "/.env"] [unique_id "aZW8fpB6rZV_50Et9NrVPQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 12:34:33
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.166.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.166.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 07:34:24.912018 2026] [security2:error] [pid 20682:tid 20682] [client 209.50.166.155:61779] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "weddingcp.com"] [uri "/.env"] [unique_id "aZWx0E-NN4QRRVYHxlAi-AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 11:44:27
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.166.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.166.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 06:44:17.481224 2026] [security2:error] [pid 15421:tid 15421] [client 209.50.166.155:23329] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wallpaperpro.com"] [uri "/.env.save"] [unique_id "aZWmEX0-hW9N1zhZAkik4wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
iNetWorker
2026-01-20 00:44:24
(4 months ago)
trolling for resource vulnerabilities
Web App Attack
๐ฎ๐น
VHosting
2025-12-23 13:00:19
(5 months ago)
Detected attack and reported by a human
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
Anonymous
2025-12-12 17:53:32
(5 months ago)
botnet
DDoS Attack
๐ณ๐ฑ
homeshowdomain.nl
2025-11-25 23:03:36
(6 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2025-11-24.
show less
Hacking
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2025-11-24 06:30:55
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.166.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.166.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:30:46.742817 2025] [security2:error] [pid 13260:tid 13260] [client 209.50.166.155:59121] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.campbellsclan.com"] [uri "/.git/HEAD"] [unique_id "aSP7lnc1oUaqjQTqb_uObQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:34:42
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.166.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.166.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:34:36.964509 2025] [security2:error] [pid 3810:tid 3810] [client 209.50.166.155:33861] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.acmax.com"] [uri "/.env"] [unique_id "aSPgXPecN0-xqkHQozhwCwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack