๐บ๐ธ
craudiovizai
2026-10-11 00:30:32
(13 hours ago)
Automated honeypot detection. blocked ip against a Next.js application. Paths: /wp-admin/install.php ...
show more
Automated honeypot detection. blocked ip against a Next.js application. Paths: /wp-admin/install.php?step=1, /wp-admin/install.php. Blocked at the edge.
show less
Bad Web Bot
๐ณ๐ฑ
homeshowdomain.nl
2026-10-10 22:00:40
(15 hours ago)
Auto-ban: >3000 req/min op 2026-10-10
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-10 18:16:51
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.22.219.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.219.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 14:16:46.864472 2026] [security2:error] [pid 24851:tid 24851] [client 104.22.219.49:13727] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whiterhinogroup.net"] [uri "/.git/config"] [unique_id "asqBDij_k5n5eP5SZGK4rgAAAFg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-10 17:40:06
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.22.219.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.219.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 13:39:56.387856 2026] [security2:error] [pid 28283:tid 28283] [client 104.22.219.49:11714] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "michaelandkatie.us"] [uri "/.git/config"] [unique_id "asp4bHj_tDVZ8Gyq-7LNrAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-10 16:19:03
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.22.219.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.219.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 12:18:56.020830 2026] [security2:error] [pid 21482:tid 21482] [client 104.22.219.49:11330] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.soundtrax.net"] [uri "/.git/config"] [unique_id "asplcHvaicv9Y2luEBMSSQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-10 15:35:27
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.22.219.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.219.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 11:35:23.216914 2026] [security2:error] [pid 17136:tid 17136] [client 104.22.219.49:11805] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gegraphics.biz"] [uri "/.git/config"] [unique_id "aspbO0vdDWQZHiq9TuWxZgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-10 08:29:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.22.219.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.219.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 04:29:00.129769 2026] [security2:error] [pid 28063:tid 28063] [client 104.22.219.49:10328] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "creationorevolution.net"] [uri "/.git/config"] [unique_id "asn3TIEbf2RJckMWA_TZzAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
altenglaner
2026-10-10 07:41:17
(1 day ago)
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ba ...
show more
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ban.
show less
Hacking
Web App Attack
Anonymous
2026-10-10 00:50:39
(1 day ago)
Wordpress vulnerability scanning
...
Web App Attack
๐บ๐ธ
craudiovizai
2026-10-10 00:30:37
(1 day ago)
Automated honeypot detection. blocked ip against a Next.js application. Paths: /wp-admin/install.php ...
show more
Automated honeypot detection. blocked ip against a Next.js application. Paths: /wp-admin/install.php, /wp-admin/install.php?step=1. Blocked at the edge.
show less
Bad Web Bot
๐ณ๐ฑ
MM-bot
2026-10-09 23:30:57
(1 day ago)
URL-probe: HTTP/2 GET request on /.git/config (2026-10-10 01:30:57 UTC+2)
Web App Attack
Hacking
๐ซ๐ท
tecnicorioja
2026-10-09 22:01:09
(1 day ago)
wp-login attack [09/Oct/2026:04:03:11
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 21:57:49
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 104.22.219.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:949110) triggered by 104.22.219.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 17:57:41.172205 2026] [security2:error] [pid 25316:tid 25316] [client 104.22.219.49:9220] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "tikehaubookings.com"] [uri "/.git/config"] [unique_id "asljVVwHS_bjahPmzLGebwAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 17:00:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.22.219.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.219.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 13:00:30.469560 2026] [security2:error] [pid 22158:tid 22158] [client 104.22.219.49:11079] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nrvoutdoors.com"] [uri "/.git/config"] [unique_id "askdrjsO8uL-1tZdoNViogAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 14:50:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.22.219.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.219.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 10:50:14.773593 2026] [security2:error] [pid 19950:tid 19950] [client 104.22.219.49:12771] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lawson-insurance.com"] [uri "/.git/config"] [unique_id "asj_Jq-t9kdA-DFwZXLkqwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack