๐ณ๐ฑ
homeshowdomain.nl
2026-05-18 22:01:18
(2 weeks ago)
Auto-ban: >3000 req/min op 2026-05-18
Web App Attack
SSH
Hacking
๐ณ๐ฑ
jjnxpct
2026-02-11 04:53:05
(3 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /site/.git/config (Rule ID: 930130) - Restricted File Access Attempt
show less
Hacking
Web App Attack
๐ณ๐ฑ
ReporTR
2026-02-10 09:39:40
(3 months ago)
Repeated malicious activity detected by Fail2Ban jail 'plesk-modsecurity'. TCP connection completed. ...
show more
Repeated malicious activity detected by Fail2Ban jail 'plesk-modsecurity'. TCP connection completed. IP banned.
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 05:16:25
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.56.76 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.56.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 00:16:18.494000 2026] [security2:error] [pid 1163111:tid 1163137] [client 104.207.56.76:27865] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "magusincognito.com"] [uri "/.env.staging"] [unique_id "aYq_IoIkUjRLVk9bu6FHFwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-02-10 04:31:14
(3 months ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-02-10 03:57:30
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.56.76 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.56.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:57:22.304086 2026] [security2:error] [pid 1861808:tid 1861808] [client 104.207.56.76:57715] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ic1.biz"] [uri "/site/.git/config"] [unique_id "aYqsoszrMJT3y-n7cVTo0AAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 02:53:14
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.56.76 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.56.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 21:53:08.154996 2026] [security2:error] [pid 3324:tid 3324] [client 104.207.56.76:53925] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kingdombuilderschurchmd.org"] [uri "/wp/.git/config"] [unique_id "aYqdlFqRg74uUOL8l7hX2wAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 00:48:31
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.56.76 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.56.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 19:48:28.548582 2026] [security2:error] [pid 752:tid 752] [client 104.207.56.76:17401] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "keystonebrass.com"] [uri "/.env.staging"] [unique_id "aYqAXNnb9xLaUlttQR9S2QAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 23:56:13
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.56.76 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.56.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 18:56:00.163485 2026] [security2:error] [pid 2193:tid 2193] [client 104.207.56.76:52831] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kennedysplace.com"] [uri "/.git/config"] [unique_id "aYp0EGNRoRa6iFt9ywcuZgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 21:12:21
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.56.76 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.56.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 16:12:17.008842 2026] [security2:error] [pid 23450:tid 23450] [client 104.207.56.76:19373] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "horizonsoundchicago.com"] [uri "/.env.save"] [unique_id "aYpNsRfNNbsET39LbOD1AwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-01-20 12:50:06
(4 months ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2026-01-07 06:42:14
(4 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
Anonymous
2026-01-05 20:26:34
(5 months ago)
Attempted brute force login to web vpn 9 time(s); last attempt for 2026.01.05 is noted in report tim ...
show more
Attempted brute force login to web vpn 9 time(s); last attempt for 2026.01.05 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-12-21 15:03:55
(5 months ago)
Attempted brute force login to web vpn 162 time(s); last attempt for 2025.12.21 is noted in report t ...
show more
Attempted brute force login to web vpn 162 time(s); last attempt for 2025.12.21 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-12-19 21:34:46
(5 months ago)
Attempted brute force login to web vpn 126 time(s); last attempt for 2025.12.19 is noted in report t ...
show more
Attempted brute force login to web vpn 126 time(s); last attempt for 2025.12.19 is noted in report timestamp
show less
Hacking
Brute-Force