๐บ๐ธ
TPI-Abuse
2026-09-16 02:59:07
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.199.161.137 (137.161.199.104.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 104.199.161.137 (137.161.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 22:59:01.837108 2026] [security2:error] [pid 491:tid 491] [client 104.199.161.137:57000] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.chilako.com"] [uri "/.git/config"] [unique_id "aqoF9QP8BC18TwBZ1vw_cgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-16 02:28:20
(4 days ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-16 02:22:18
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.199.161.137 (137.161.199.104.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 104.199.161.137 (137.161.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 22:22:11.763522 2026] [security2:error] [pid 20540:tid 20540] [client 104.199.161.137:42398] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.chiggerland.digifonics.com"] [uri "/.git/config"] [unique_id "aqn9UxjbMmhP9LOKtyEPuwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
ALPHANET
2026-09-16 01:57:44
(4 days ago)
web exploits
Hacking
Exploited Host
Web App Attack
๐ฌ๐ง
consul.to
2026-09-16 01:49:02
(4 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-15 22:00:26
(4 days ago)
Auto-ban: >3000 req/min op 2026-09-15
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-15 21:10:16
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.199.161.137 (137.161.199.104.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 104.199.161.137 (137.161.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 17:10:11.006886 2026] [security2:error] [pid 12384:tid 12384] [client 104.199.161.137:33296] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cheynans.mmldesign.com"] [uri "/.git/config"] [unique_id "aqm0M-5L3r9u_7_4qt4SXQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-09-15 21:07:26
(4 days ago)
Web App Attack
๐ฉ๐ช
SCHAPPY
2026-09-15 19:32:41
(4 days ago)
Brute-force attack to non-existent web resources, HTTP code 404.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 18:00:11
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.199.161.137 (137.161.199.104.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 104.199.161.137 (137.161.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 14:00:05.147921 2026] [security2:error] [pid 2087:tid 2087] [client 104.199.161.137:38482] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cherryblossomplayers.royal-barbershop.com"] [uri "/.git/config"] [unique_id "aqmHpZb93DrFGgCn22NC1gAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-09-15 17:18:11
(4 days ago)
Try to access /.git/config
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-15 15:25:04
(4 days ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐บ๐ธ
dot.mg
2026-09-15 14:30:14
(4 days ago)
Bruteforce
Bad Web Bot
๐ณ๐ฑ
Alt255
2026-09-15 10:41:51
(4 days ago)
[ti-10al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-10al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 104.199.161.137 - - [15/Sep/2026:12:41:36 +0200] "GET /.git/config HTTP/1.1" 301 409 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 10:05:38
(4 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack