Anonymous
2026-07-20 13:10:07
(2 days ago)
Banned by Fail2Ban on server
Web App Attack
๐ฉ๐ช
mygcode.de
2026-07-20 13:09:11
(2 days ago)
Scanning for Exploits
Bad Web Bot
๐บ๐ธ
Matthew Ping
2026-07-20 12:15:03
(2 days ago)
ModSecurity rule 949110 triggered on banks. Web application attack blocked by CSF/LFD.
Web App Attack
Hacking
๐ฎ๐น
Inartis
2026-07-20 11:50:23
(2 days ago)
104.199.81.179 - - [20/Jul/2026:13:50:17 +0200] "GET /.git/config HTTP/1.1" 403 3107 "-" "Mozilla/5. ...
show more
104.199.81.179 - - [20/Jul/2026:13:50:17 +0200] "GET /.git/config HTTP/1.1" 403 3107 "-" "Mozilla/5.0 (compatible; Amzn-SearchBot/1.0; +https://developer.amazon.com/support/amazonbot)"
104.199.81.179 - - [20/Jul/2026:13:50:18 +0200] "GET /.env HTTP/1.1" 403 3107 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
104.199.81.179 - - [20/Jul/2026:13:50:19 +0200] "GET /.env.example HTTP/1.1" 403 3107 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; Perplexity-User/1.0; +https://perplexity.ai/perplexity-user"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 11:19:56
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.199.81.179 (179.81.199.104.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 104.199.81.179 (179.81.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 07:19:50.193806 2026] [security2:error] [pid 9002:tid 9002] [client 104.199.81.179:38736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.tsiwny.org"] [uri "/.git/HEAD"] [unique_id "al4EVpJRGyy2wra196fsUQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Apache
2026-07-20 11:05:58
(2 days ago)
(mod_security) mod_security (id:930130) triggered by 104.199.81.179 (BE/Belgium/179.81.199.104.bc.go ...
show more
(mod_security) mod_security (id:930130) triggered by 104.199.81.179 (BE/Belgium/179.81.199.104.bc.googleusercontent.com): 5 in the last 300 secs (CF_ENABLE)
show less
Brute-Force
Web App Attack
๐ซ๐ท
IRISIO
2026-07-20 09:07:10
(2 days ago)
scans/SQL injection/spam posts : 351 queries
Web App Attack
SQL Injection
๐ณ๐ฟ
Antinson
2026-07-20 08:47:27
(2 days ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐ฉ๐ช
Inamin
2026-07-20 08:17:07
(2 days ago)
104.199.81.179 - - [20/Jul/2026:16:16:53 +0800] "GET /.aws/credentials HTTP/2.0" 404 153 "-" "Mozill ...
show more
104.199.81.179 - - [20/Jul/2026:16:16:53 +0800] "GET /.aws/credentials HTTP/2.0" 404 153 "-" "Mozilla/5.0 (compatible; Applebot-Extended/0.1; +http://www.apple.com/go/applebot)"
104.199.81.179 - - [20/Jul/2026:16:17:05 +0800] "GET /login HTTP/2.0" 404 153 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/26.2 Safari/605.1.15"
...
show less
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-07-20 07:26:01
(2 days ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-20 07:13:58
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 104.199.81.179 (179.81.199.104.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 104.199.81.179 (179.81.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 03:13:54.084614 2026] [security2:error] [pid 454723:tid 454723] [client 104.199.81.179:48074] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||monteriggioni.net|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "monteriggioni.net"] [uri "/rclone.conf"] [unique_id "al3KsiZuqm_p4uLoT7KZcgAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-20 07:05:17
(2 days ago)
Sensitive Configuration File Disclosure.
Hacking
๐ฉ๐ช
FeG Deutschland
2026-07-20 06:16:23
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 127
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 06:09:10
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.199.81.179 (179.81.199.104.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 104.199.81.179 (179.81.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 02:09:05.778953 2026] [security2:error] [pid 11685:tid 11685] [client 104.199.81.179:33174] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.stmaarten-boatcharters.com"] [uri "/.git/config"] [unique_id "al27gRmwbzcsiQH4DW8A1AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-07-20 06:00:57
(2 days ago)
Bad bot ignoring robot.txt
Bad Web Bot