๐ฉ๐ช
Grossmann-Gruppe
2026-08-25 00:03:01
(38 minutes ago)
Plesk Fail2Ban: plesk-modsecurity
Hacking
Brute-Force
๐ฑ๐น
NotACaptcha
2026-08-24 22:33:29
(2 hours ago)
webserver:443 [25/Aug/2026] "GET /.git/HEAD HTTP/1.1" 403 5801 "-" "Mozilla/5.0 (Windows NT 10.0; W ...
show more
webserver:443 [25/Aug/2026] "GET /.git/HEAD HTTP/1.1" 403 5801 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
show less
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-24 22:02:55
(2 hours ago)
Auto-ban: >3000 req/min op 2026-08-24
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-24 21:32:54
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 17:32:49.964249 2026] [security2:error] [pid 10883:tid 10883] [client 104.23.160.20:12391] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.railfanfromseo.com"] [uri "/.git/config"] [unique_id "aoy4gWIkTmODNzkD-nWvMgAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 18:00:43
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 14:00:39.536403 2026] [security2:error] [pid 12570:tid 12570] [client 104.23.160.20:13036] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.towermedia.net"] [uri "/.git/HEAD"] [unique_id "aoyGxxMXIqc4AExzU3XtWwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 17:08:23
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 13:08:15.732582 2026] [security2:error] [pid 25529:tid 25529] [client 104.23.160.20:10998] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.renju.net"] [uri "/.git/HEAD"] [unique_id "aox6f-sxqdKci0FlwZCaWAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 15:06:55
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 11:06:48.555932 2026] [security2:error] [pid 13446:tid 13446] [client 104.23.160.20:10286] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.register-yacht-bvi.com"] [uri "/.git/HEAD"] [unique_id "aoxeCM3a59mhaCr6zYS66AAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 13:47:12
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 09:47:04.415893 2026] [security2:error] [pid 4180:tid 4180] [client 104.23.160.20:9476] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.bergenoaks.com"] [uri "/.git/config"] [unique_id "aoxLWLcLbvOqABVBoxTjmAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 12:36:24
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 08:36:20.165137 2026] [security2:error] [pid 21205:tid 21205] [client 104.23.160.20:9216] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "winwithbrad.com"] [uri "/.git/config"] [unique_id "aow6xGjqgHrdFZoVEVWo_gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Little Iguana
2026-08-24 12:09:55
(12 hours ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
๐ง๐ช
madeit
2026-08-24 09:53:29
(14 hours ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 08:36:52
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 04:36:46.036357 2026] [security2:error] [pid 3469354:tid 3469379] [client 104.23.160.20:10040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ucamp.net"] [uri "/.git/config"] [unique_id "aowCnqHYVLHWkbSGNzxwWQAAAJc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 06:38:10
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 02:38:05.027151 2026] [security2:error] [pid 29201:tid 29201] [client 104.23.160.20:12250] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.sendvalentinecard.com"] [uri "/.git/config"] [unique_id "aovmzdXN5j8ckmFVmN4IjQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 06:13:51
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 02:13:43.064218 2026] [security2:error] [pid 4237:tid 4237] [client 104.23.160.20:14089] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "movilock.aguasolar.com"] [uri "/.git/HEAD"] [unique_id "aovhF8yuDxP-89Q4AY7gBgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 05:08:38
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 01:08:32.854082 2026] [security2:error] [pid 17857:tid 17857] [client 104.23.160.20:9484] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.livesteamtracks.info"] [uri "/.git/HEAD"] [unique_id "aovR0GVUcdsXFuHv5QwX9wAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack