๐ง๐ช
madeit
2026-09-29 07:08:42
(2 days ago)
Web App Attack
๐ง๐ท
chronos
2026-09-13 17:08:00
(2 weeks ago)
2026-09-13 13:42:47 UTC-3||Unauthorized connection attempt detected for port scanning
Port Scan
๐บ๐ธ
johnkarlhill
2026-09-13 05:15:16
(2 weeks ago)
WebKnight blocked malicious web request on johnkarlhill.com
Brute-Force
SSH
๐ฉ๐ช
abdubhai
2026-08-29 05:03:05
(1 month ago)
104.22.101.221 - - [29/Aug/2026:
...
Brute-Force
๐ฉ๐ช
neckaralb-admin.de
2026-08-23 04:00:21
(1 month ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
Anonymous
2026-08-18 09:42:59
(1 month ago)
104.22.101.221 - - [18/Aug/2026:09:42:56 +0000] "GET /1.php HTTP/2.0" 404 3578 "-" "-" "20.7.73.61"
...
show more
104.22.101.221 - - [18/Aug/2026:09:42:56 +0000] "GET /1.php HTTP/2.0" 404 3578 "-" "-" "20.7.73.61"
104.22.101.221 - - [18/Aug/2026:09:42:57 +0000] "GET /wp-content/x/index.php HTTP/2.0" 404 3584 "-" "-" "20.7.73.61"
104.22.101.221 - - [18/Aug/2026:09:42:57 +0000] "GET /wp-content/index.php HTTP/2.0" 404 3581 "-" "-" "20.7.73.61"
104.22.101.221 - - [18/Aug/2026:09:42:57 +0000] "GET /as.php HTTP/2.0" 404 3576 "-" "-" "20.7.73.61"
104.22.101.221 - - [18/Aug/2026:09:42:57 +0000] "GET /wp-content/themes/admin.php HTTP/2.0" 404 3586 "-" "-" "20.7.73.61"
104.22.101.221 - - [18/Aug/2026:09:42:58 +0000] "GET /wp-config-sample.php HTTP/2.0" 404 3588 "-" "-" "20.7.73.61"
104.22.101.221 - - [18/Aug/2026:09:42:58 +0000] "GET /wp-includes/blocks/shortcode/index.php HTTP/2.0" 404 3597 "-" "-" "20.7.73.61"
104.22.101.221 - - [18/Aug/2026:09:42:58 +0000] "GET /cgi-bin/index.php HTTP/2.0" 404 3585 "-" "-" "20.7.73.61"
104.22.101.221 - - [18/Aug/2026:09:42:58 +0000] "GET /an.php HTTP/2.0" 404 3578 "-" "
...
show less
Port Scan
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-18 03:00:23
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.22.101.221 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.101.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 23:00:15.040791 2026] [security2:error] [pid 16909:tid 16909] [client 104.22.101.221:10583] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.marcosbarraza.net"] [uri "/.git/HEAD"] [unique_id "aoPKv_QvP-IMzqMWt7yW2QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-17 13:28:24
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 08:55:51
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.22.101.221 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.101.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 04:55:47.578006 2026] [security2:error] [pid 13371:tid 13371] [client 104.22.101.221:9324] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.naturallyneworleans.com"] [uri "/.git/HEAD"] [unique_id "aoLMkx75qc5EVegvAOtWYgAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 07:09:01
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.22.101.221 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.101.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:08:52.859964 2026] [security2:error] [pid 5605:tid 5605] [client 104.22.101.221:14243] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.catherineseress.com"] [uri "/.git/config"] [unique_id "aoKzhM-BSRr4id9i9xYCYwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-16 22:01:35
(1 month ago)
Auto-ban: >3000 req/min op 2026-08-16
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-16 07:53:46
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.22.101.221 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.101.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:53:40.790541 2026] [security2:error] [pid 23729:tid 23729] [client 104.22.101.221:11711] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "xcingenieria.com"] [uri "/.git/HEAD"] [unique_id "aoFshLZmS97NZJMlWUXZHQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-16 07:15:51
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 05:26:04
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.22.101.221 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.101.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 01:25:57.801851 2026] [security2:error] [pid 5834:tid 5834] [client 104.22.101.221:11678] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.bsa1688.com"] [uri "/.git/HEAD"] [unique_id "aoFJ5aU-CvPW2iieGdvtAgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 04:41:57
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.22.101.221 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.101.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 00:41:52.316870 2026] [security2:error] [pid 8625:tid 8625] [client 104.22.101.221:9985] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "onlinelinks.qu1ck.com"] [uri "/.git/config"] [unique_id "aoE_kFS4rhV6JFyqS4QH7QAAADQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack