๐ฎ๐น
mediarama.com
2026-08-29 17:22:33
(23 hours ago)
Banned by Fail2Ban
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-23 22:00:27
(6 days ago)
Auto-ban: >3000 req/min op 2026-08-23
Web App Attack
SSH
Hacking
๐ฉ๐ช
neckaralb-admin.de
2026-08-23 04:00:36
(1 week ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 17:32:51
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 13:32:47.075812 2026] [security2:error] [pid 9113:tid 9113] [client 104.23.209.75:9883] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gotomywebmail.com.globalweb123.com"] [uri "/.env.production"] [unique_id "aondP_Ikf8NSjcaswckJJwAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
Valhalla
2026-08-22 16:41:29
(1 week ago)
Ewww, a file system command: /.env.local
Hacking
Web App Attack
๐ฉ๐ช
www.mammazone.it
2026-08-19 20:43:58
(1 week ago)
[Wed Aug 19 22:43:58.282916 2026] [proxy_fcgi:error] [pid 4163541] [client 104.23.209.75:24759] AH01 ...
show more
[Wed Aug 19 22:43:58.282916 2026] [proxy_fcgi:error] [pid 4163541] [client 104.23.209.75:24759] AH01071: Got error 'Primary script unknown'
[Wed Aug 19 22:43:58.604687 2026] [proxy_fcgi:error] [pid 4163541] [client 104.23.209.75:24759] AH01071: Got error 'Primary script unknown'
...
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-19 02:44:34
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 22:44:30.171801 2026] [security2:error] [pid 10217:tid 10217] [client 104.23.209.75:10949] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.westoaksurgentcare.com"] [uri "/.git/config"] [unique_id "aoUYjpuRv3kdD0eRc7dJhAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 03:14:53
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 23:14:45.540143 2026] [security2:error] [pid 28920:tid 28920] [client 104.23.209.75:12381] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.bigislandhawaiirealty.com"] [uri "/.git/HEAD"] [unique_id "aoPOJTplYDH3yYMt8AwR1AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 09:05:21
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 05:04:57.683097 2026] [security2:error] [pid 18432:tid 18432] [client 104.23.209.75:10290] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.joyfulservice.com"] [uri "/.git/HEAD"] [unique_id "aoLOuQqJhZyQi9d7k4XH6gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 06:22:39
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 02:22:31.716260 2026] [security2:error] [pid 12823:tid 12823] [client 104.23.209.75:10498] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.exresearch.com"] [uri "/.git/config"] [unique_id "aoKopyqwDt4QEasnHBkfcwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 05:28:29
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:28:22.874227 2026] [security2:error] [pid 29235:tid 29260] [client 104.23.209.75:11863] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.malia97.com"] [uri "/.git/config"] [unique_id "aoKb9swEy-CzjmaJwfHXlgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 04:38:38
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 00:38:33.448586 2026] [security2:error] [pid 6586:tid 6586] [client 104.23.209.75:12393] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pleasefixmycomputer.com"] [uri "/.git/config"] [unique_id "aoKQSdiINnX_8MSTh43xSAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 00:49:58
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 20:49:50.151125 2026] [security2:error] [pid 11204:tid 11204] [client 104.23.209.75:13404] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.lumentravel.com"] [uri "/.git/HEAD"] [unique_id "aoJarqUrnSLRRHK_tXwMIAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 07:39:55
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:39:47.845128 2026] [security2:error] [pid 4036:tid 4036] [client 104.23.209.75:10203] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.desoucey.com"] [uri "/.git/HEAD"] [unique_id "aoFpQ4poniLdvtqUNUJ7pgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-08-16 05:54:33
(2 weeks ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 1 hits.
show less
Web App Attack