๐บ๐ธ
TPI-Abuse
2026-09-27 13:37:39
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 107.150.65.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 107.150.65.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 09:37:36.439418 2026] [security2:error] [pid 2424:tid 2424] [client 107.150.65.105:46507] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "1derfulwaysrv.com"] [uri "/.git/HEAD"] [unique_id "arkcIHNz-Tl4lG6BDWwWswAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 04:03:04
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 107.150.65.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 107.150.65.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 00:03:01.125483 2026] [security2:error] [pid 12531:tid 12548] [client 107.150.65.105:4172] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eafm.org"] [uri "/.git/HEAD"] [unique_id "arSg9aNyGt_EwZ9GQ34t7gAAAMY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 02:49:16
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 107.150.65.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 107.150.65.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 22:49:10.719725 2026] [security2:error] [pid 12717:tid 12717] [client 107.150.65.105:4852] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "todi.org"] [uri "/.git/HEAD"] [unique_id "arSPpjQnw87FHTt_a_QDxwAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 18:03:24
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 107.150.65.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 107.150.65.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 14:03:17.929891 2026] [security2:error] [pid 6775:tid 6775] [client 107.150.65.105:58473] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "versallis.com"] [uri "/.git/HEAD"] [unique_id "arFxZWE8GV-Qy0kqM5bYRgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 12:34:20
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 107.150.65.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 107.150.65.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 08:34:16.270001 2026] [security2:error] [pid 20185:tid 20185] [client 107.150.65.105:24305] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.usedrouter.com"] [uri "/.git/HEAD"] [unique_id "arEkSESOb_cpHcvU9SXZTwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 10:56:19
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 107.150.65.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 107.150.65.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 06:56:10.147805 2026] [security2:error] [pid 22409:tid 22409] [client 107.150.65.105:13446] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.unwaved.com"] [uri "/.git/HEAD"] [unique_id "arENSon8d-x4PqzLtGKakQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 06:41:32
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 107.150.65.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 107.150.65.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 02:41:26.764517 2026] [security2:error] [pid 1186:tid 1186] [client 107.150.65.105:17500] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "twixmixy.com"] [uri "/.git/HEAD"] [unique_id "arDRlseeahArdG22teK3TwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 23:07:11
(1 week ago)
Automated web scanner. Requested suspicious paths: /.git/HEAD. UTC: 2026-09-20 22:59:41.
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-20 22:00:25
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-19.
show less
Web App Attack
SSH
Hacking
๐ฟ๐ฆ
conure.sh
2026-09-20 17:50:59
(1 week ago)
csagent: score 20.5: 404 noise floor x2, secrets grab x2; 2 domain(s) in 0s
Web App Attack
๐บ๐ธ
Rip
2026-09-20 08:47:42
(1 week ago)
Restricted File Access Attempts
Port Scan
Web App Attack
๐จ๐ญ
backslash
2026-09-20 04:03:07
(1 week ago)
block ruleset bad bot: misc bad content F608233CC4C86EE814CE8DDDA9C4A0D3C79882F6
Bad Web Bot
๐บ๐ฆ
URAN Publishing Service
2026-09-19 06:14:42
(1 week ago)
[19/Sep/2026:09:14:42 +0300] -- 107.150.65.105 Ban reason: User-Agent Python-urllib
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-19 01:51:16
(1 week ago)
[cb-07al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-07al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 107.150.65.105 - - [19/Sep/2026:03:51:12 +0200] "GET /.git/HEAD HTTP/1.1" 301 497 "-" "Python-urllib/3.10"
...
show less
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-19 00:28:57
(1 week ago)
cloudlinux2 fail2ban: 2026-09-19 02:24:03,134 fail2ban.filter [1813]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-09-19 02:24:03,134 fail2ban.filter [1813]: INFO [plesk-wordpress] Found 92.251.29.82 - 2026-09-19 02:24:02cloudlinux2 fail2ban: 2026-09-19 02:24:41,860 fail2ban.filter [1813]: INFO [plesk-wordpress] Found 216.24.219.232 - 2026-09-19 02:24:41cloudlinux2 fail2ban: 2026-09-19 02:24:41,608 fail2ban.filter [1813]: INFO [plesk-wordpress] Found 216.24.219.215 - 2026-09-19 02:24:41cloudlinux2 fail2ban: 2026-09-19 02:24:52,405 fail2ban.filter [1813]: INFO [plesk-wordpress] Found 216.73.163.214 - 2026-09-19 02:24:52cloudlinux2 fail2ban: 2026-09-19 02:25:18,265 fail2ban.filter [1813]: INFO [plesk-modsecurity] Found 107.150.65.105 - 2026-09-19 02:25:18cloudlinux2 fail2ban: 2026-09-19 02:25:18,117 fail2ban.filter [1813]: INFO [plesk-modsecurity] Found 142.234.203.132 - 2026-09-19 02:25:18cloudlinux2 fail2ban: 2026-09-19 02:25:44,273 fail2ban.filter [1813]: INFO [plesk-wordpress] Found 136.144.43.161 - 2026-09-19 02:25:4
show less
Web App Attack