๐ฒ๐พ
Rizzy
2026-06-16 07:34:59
(6 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 06:52:29
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 217.160.255.92 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 217.160.255.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 02:52:23.809449 2026] [security2:error] [pid 5850:tid 5850] [client 217.160.255.92:58196] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "airtechconsulting.com"] [uri "/.env.local"] [unique_id "ajDyp_lseRCoMm8I5VoRxQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 06:34:48
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 217.160.255.92 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 217.160.255.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 02:34:45.233655 2026] [security2:error] [pid 24234:tid 24234] [client 217.160.255.92:46618] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aimer.es"] [uri "/.env"] [unique_id "ajDuhdcuS_KWPzirmjvd7gAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 06:16:25
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 217.160.255.92 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 217.160.255.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 02:16:20.812192 2026] [security2:error] [pid 31252:tid 31252] [client 217.160.255.92:60610] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ahsigns.com"] [uri "/.env.dev"] [unique_id "ajDqNCIxNk4_QFGbkf4jewAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-06-16 04:58:19
(9 hours ago)
(mod_security) mod_security (id:949110) triggered by 217.160.255.92 (DE/Germany/-): N in the last X ...
show more
(mod_security) mod_security (id:949110) triggered by 217.160.255.92 (DE/Germany/-): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 04:29:28
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 217.160.255.92 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 217.160.255.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 00:29:22.042296 2026] [security2:error] [pid 6331:tid 6331] [client 217.160.255.92:35728] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "advancedmotorsports.com"] [uri "/.env.local"] [unique_id "ajDRIqnIb6meneWkZNUkagAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 04:10:06
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 217.160.255.92 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 217.160.255.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 00:09:57.879008 2026] [security2:error] [pid 18794:tid 18794] [client 217.160.255.92:60410] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "admiralpointe.com"] [uri "/core/.env"] [unique_id "ajDMleihx93CJMu6vFI-EAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-06-16 03:56:20
(10 hours ago)
Bad bot ignoring robot.txt
Bad Web Bot
๐ง๐ท
Halux
2026-06-16 03:27:27
(10 hours ago)
217.160.255.92 Probing protected path or service
Web App Attack
Anonymous
2026-06-16 03:18:15
(10 hours ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ฉ๐ช
4server
2026-06-16 03:17:34
(10 hours ago)
[TueJun1605:17:30.2056432026][security2:error][pid1154380:tid1154395][client217.160.255.92:0]ModSecu ...
show more
[TueJun1605:17:30.2056432026][security2:error][pid1154380:tid1154395][client217.160.255.92:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"acquaallaspina.ch\"][uri\"/.env.prod\"][unique_id\"ajDASsPBq2nx2D_R5kw3iQAAAEw\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 03:11:07
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 217.160.255.92 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 217.160.255.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 23:11:02.926322 2026] [security2:error] [pid 28307:tid 28365] [client 217.160.255.92:58214] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aclarityforensics.com"] [uri "/.env.backup"] [unique_id "ajC-xtNysL3rGHAwQbMoRwAAAMA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-16 03:10:22
(10 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ซ๐ท
dwmp
2026-06-16 03:01:21
(11 hours ago)
[16/Jun/2026:05:01:21.235230 +0200] ajC8gdEmlsEBKJHxOA1KZQAAAJg 217.160.255.92 43070 38.242.227.117 ...
show more
[16/Jun/2026:05:01:21.235230 +0200] ajC8gdEmlsEBKJHxOA1KZQAAAJg 217.160.255.92 43070 38.242.227.117 7081
[16/Jun/2026:05:01:21.236333 +0200] ajC8gd7c-ThvOWcf@lQPjQAAAFg 217.160.255.92 43072 38.242.227.117 7081
[16/Jun/2026:05:01:21.236839 +0200] ajC8gaY7M5AFIK8Bxe5JlgAAAAA 217.160.255.92 43076 38.242.227.117 7081
...
show less
Brute-Force
SSH
๐ฌ๐ง
consul.to
2026-06-16 02:49:31
(11 hours ago)
Web attack/malicious scanning detected
Web App Attack