๐บ๐ธ
TPI-Abuse
2026-09-03 01:51:07
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.199.236.79 (79.236.199.104.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 104.199.236.79 (79.236.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 21:51:00.539722 2026] [security2:error] [pid 11422:tid 11451] [client 104.199.236.79:49960] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.omniuscorp.com"] [uri "/htdocs/.git/config"] [unique_id "apjShJCiaXK1I9c2diq-LgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-09-03 01:00:37
(3 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 00:55:44
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.199.236.79 (79.236.199.104.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 104.199.236.79 (79.236.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 20:55:40.929375 2026] [security2:error] [pid 26716:tid 26716] [client 104.199.236.79:43752] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nuegrapes.com"] [uri "/www/.git/config"] [unique_id "apjFjOxsVN8AdQRKSPbeVwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
โจ
2026-09-02 23:44:16
(4 hours ago)
Domain : greencloudsolar.co.uk
Rule : config
2026-09-02 23:43:18 79.171.39.6 GET /app/.git/config - ...
show more
Domain : greencloudsolar.co.uk
Rule : config
2026-09-02 23:43:18 79.171.39.6 GET /app/.git/config - 443 - 104.199.236.79 HTTP/1.1 crusader-worker/1.0 - greencloudsolar.co.uk 404 8 0 1455 108 759 - -
show less
Hacking
SQL Injection
๐ณ๐ฑ
homeshowdomain.nl
2026-09-02 22:00:55
(6 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-01.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ช
iNetWorker
2026-09-02 19:28:16
(9 hours ago)
trolling for resource vulnerabilities
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-09-02 16:08:01
(12 hours ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [ice01,ice02,wa01,wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 14:55:12
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.199.236.79 (79.236.199.104.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 104.199.236.79 (79.236.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 10:55:08.422173 2026] [security2:error] [pid 8495:tid 8495] [client 104.199.236.79:35482] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "loupgaroubooks.com"] [uri "/app/.git/config"] [unique_id "apg4zAdmbCXmuGhxfGNVggAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-02 14:01:47
(14 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 09:57:22
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.199.236.79 (79.236.199.104.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 104.199.236.79 (79.236.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 05:57:14.459436 2026] [security2:error] [pid 8316:tid 8316] [client 104.199.236.79:53766] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "7livesahead.lucid-events.com"] [uri "/site/.git/config"] [unique_id "apfy-r4hCgxpvDRAHxDpSAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-02 08:43:57
(19 hours ago)
cloudlinux2 fail2ban: 2026-09-02 10:39:48,600 fail2ban.filter [1472]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-09-02 10:39:48,600 fail2ban.filter [1472]: INFO [plesk-wordpress] Found 134.122.43.141 - 2026-09-02 10:39:48cloudlinux2 fail2ban: 2026-09-02 10:39:52,810 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 117.99.132.183 - 2026-09-02 10:39:52cloudlinux2 fail2ban: 2026-09-02 10:39:55,491 fail2ban.actions [1472]: NOTICE [plesk-modsecurity] Unban 36.78.24.215cloudlinux2 fail2ban: 2026-09-02 10:40:25,134 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 117.99.132.183 - 2026-09-02 10:40:25cloudlinux2 fail2ban: 2026-09-02 10:40:25,541 fail2ban.actions [1472]: NOTICE [plesk-modsecurity] Ban 117.99.132.183cloudlinux2 fail2ban: 2026-09-02 10:40:25,547 fail2ban.filter [1472]: INFO [recidive] Found 117.99.132.183 - 2026-09-02 10:40:25cloudlinux2 fail2ban: 2026-09-02 10:41:33,984 fail2ban.filter [1472]: INFO [plesk-wordpress] Found 216.24.219.9 - 2026-09-02 10:41:33cloudlinux2 fail2ban: 2026-09-02 10:41:33,947 fail2
show less
Web App Attack
Anonymous
2026-09-02 08:26:23
(20 hours ago)
Web Server Exposed Git Repository Information Disclosure.
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-02 07:35:14
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.199.236.79 (79.236.199.104.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 104.199.236.79 (79.236.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 03:35:06.271828 2026] [security2:error] [pid 731:tid 731] [client 104.199.236.79:36652] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "roguetechtalks.com"] [uri "/api/.git/config"] [unique_id "apfRqpm0dRZKxsp27BySbQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-02 06:48:47
(21 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 06:00:26
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.199.236.79 (79.236.199.104.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 104.199.236.79 (79.236.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 02:00:20.731844 2026] [security2:error] [pid 13104:tid 13104] [client 104.199.236.79:54072] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.retiredatlast.com"] [uri "/backend/.git/config"] [unique_id "ape7dEaV3q-AHkCiZeEsvAAAADc"]
show less
Brute-Force
Bad Web Bot
Web App Attack