π¦πΊ
oncord
2026-05-28 19:32:06
(1 week ago)
Form spam
Web Spam
π¨π
backslash
2026-05-26 12:57:00
(1 week ago)
block ruleset 6A1105329D233F6F53B9B61CE056BD4DAAE75AB4
Web Spam
π©πͺ
4server
2026-05-13 00:00:49
(3 weeks ago)
[WedMay1302:00:43.6383382026][security2:error][pid812207:tid812281][client104.207.51.199:0]ModSecuri ...
show more
[WedMay1302:00:43.6383382026][security2:error][pid812207:tid812281][client104.207.51.199:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(curl\|wget\|python\|nikto\|sqlmap\|acunetix\|fimap\|dirbuster\|cmsmap\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"217\"][id\"990210\"][msg\"Suspicioususer-agentblocked\"][hostname\"lacer.ch\"][uri\"/wp-json/gravitysmtp/v1/tests/mock-data\"][unique_id\"agO_K-6ETR8VIGFkqKxDBAAAAQI\"]
show less
Port Scan
Brute-Force
Web App Attack
π©πͺ
LRob.fr
2026-03-09 09:30:10
(2 months ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-23 11:58:24
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 23 06:58:19.427994 2026] [security2:error] [pid 16931:tid 16931] [client 104.207.51.199:25349] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "m.gatheringsattheschool.com"] [uri "/.git/config"] [unique_id "aZxA23_FXJ3kWteONAY5fwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π΅π±
ketovoila.pl
2026-02-19 23:22:39
(3 months ago)
ketovoila.pl HONEYPOT traffic: count=1, paths=1; sample_path=ketovoila.pl/; UA=Mozilla/5.0 (Windows ...
show more
ketovoila.pl HONEYPOT traffic: count=1, paths=1; sample_path=ketovoila.pl/; UA=Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36; window=2026-02-19T03:12:48Z..2026-02-19T03:12:48Z
show less
Port Scan
Hacking
Brute-Force
πΊπΈ
TPI-Abuse
2026-02-19 05:58:21
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 19 00:58:14.294991 2026] [security2:error] [pid 24467:tid 24477] [client 104.207.51.199:51319] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kwainet.com"] [uri "/api/.git/config"] [unique_id "aZamdojIA7zkOgt-OWalHAAAAEg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-19 02:11:07
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 21:11:02.366901 2026] [security2:error] [pid 31107:tid 31107] [client 104.207.51.199:15923] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "katherinehowell.us"] [uri "/admin/.git/config"] [unique_id "aZZxNscKhurF4WQ97qaGcAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-18 23:58:22
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 18:58:17.851758 2026] [security2:error] [pid 5569:tid 5569] [client 104.207.51.199:9575] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "virginiajohnstone.com"] [uri "/config/.env"] [unique_id "aZZSGd84inBbh9peLPq9zQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-18 21:02:33
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 16:02:28.594659 2026] [security2:error] [pid 2493675:tid 2493675] [client 104.207.51.199:57151] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ttlatl.com"] [uri "/new/.git/config"] [unique_id "aZYo5Id8XlchigObYv0qmwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-18 18:37:44
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 13:37:40.553022 2026] [security2:error] [pid 1288110:tid 1288128] [client 104.207.51.199:45145] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theyogicat.com"] [uri "/v2/.git/config"] [unique_id "aZYG9O9F_c7x5Ag_cn8wxwAAAU4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-18 13:13:37
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 08:13:29.608620 2026] [security2:error] [pid 26063:tid 26063] [client 104.207.51.199:22457] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wies.name"] [uri "/.env.production"] [unique_id "aZW6-QAzSIEDOjfBuSvFYwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-18 12:10:30
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.51.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.51.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 07:10:24.205703 2026] [security2:error] [pid 23485:tid 23485] [client 104.207.51.199:49977] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wbcsnet.com"] [uri "/.env.production"] [unique_id "aZWsMJN_MSACzH2MehSE0QAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
relianoid.com
2026-01-31 16:25:26
(4 months ago)
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web Spam
π©πͺ
Packets-Decreaser.NET
2025-12-29 14:01:52
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam