πΊπΈ
TPI-Abuse
2026-07-28 00:57:11
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 13.213.53.102 (ec2-13-213-53-102.ap-southeast-1 ...
show more
(mod_security) mod_security (id:210492) triggered by 13.213.53.102 (ec2-13-213-53-102.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 20:57:04.829854 2026] [security2:error] [pid 803:tid 803] [client 13.213.53.102:36970] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rdu.kmp.net"] [uri "/.git/config"] [unique_id "amf-YJEHa2usbnmrhAl5ngAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-27 16:12:42
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 13.213.53.102 (ec2-13-213-53-102.ap-southeast-1 ...
show more
(mod_security) mod_security (id:210492) triggered by 13.213.53.102 (ec2-13-213-53-102.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 12:12:38.945312 2026] [security2:error] [pid 4092288:tid 4092288] [client 13.213.53.102:51646] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "renperfco.com"] [uri "/.git/config"] [unique_id "ameDdqqJXyhwY9jxYB3fYgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-27 13:05:09
(1 day ago)
Blocked: Reason='Vulnerability probing β PHP scan detected (41/60 min)'; Requests=41
Port Scan
πΊπΈ
TPI-Abuse
2026-07-27 12:49:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 13.213.53.102 (ec2-13-213-53-102.ap-southeast-1 ...
show more
(mod_security) mod_security (id:210492) triggered by 13.213.53.102 (ec2-13-213-53-102.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 08:49:16.178769 2026] [security2:error] [pid 3821915:tid 3821915] [client 13.213.53.102:36138] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "renjunews.renju.net"] [uri "/.git/config"] [unique_id "amdTzLPWRRwhEWbzpy1HlQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΉ
RenΓ© Hickersberger
2026-07-27 10:43:14
(1 day ago)
malicious bot detected: violations="hit-honeypot"; user_agent="Mozilla/5.0 (Windows NT 10.0; Win64; ...
show more
malicious bot detected: violations="hit-honeypot"; user_agent="Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
show less
Web App Attack
π³π±
sernate
2026-07-27 00:09:16
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 13.213.53.102 (SG/Singapore/ec2-13-213-53-102.a ...
show more
(mod_security) mod_security (id:210492) triggered by 13.213.53.102 (SG/Singapore/ec2-13-213-53-102.ap-southeast-1.compute.amazonaws.com): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_MODSEC
show less
Brute-Force
π³π±
WeCloudit-Anti-Abuse
2026-07-26 23:15:25
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
π³π±
Site.eu
2026-07-26 14:54:15
(2 days ago)
Excessive multi-domain requests
Brute-Force
π«π·
masterguru
2026-07-26 00:01:12
(2 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
π¬π§
WebNiraj
2026-07-25 13:17:25
(3 days ago)
(mod_security) mod_security (id:949110) triggered by 13.213.53.102 (SG/Singapore/ec2-13-213-53-102.a ...
show more
(mod_security) mod_security (id:949110) triggered by 13.213.53.102 (SG/Singapore/ec2-13-213-53-102.ap-southeast-1.compute.amazonaws.com): 5 in the last 3600 secs [SIGMA]
show less
Brute-Force
π²πΎ
Rizzy
2026-07-25 12:06:08
(3 days ago)
Multiple WAF Violations
Brute-Force
Web App Attack
π³πΏ
Antinson
2026-07-25 12:02:59
(3 days ago)
Scraping with a high error ratio and request rate
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-07-24 22:30:44
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 13.213.53.102 (ec2-13-213-53-102.ap-southeast-1 ...
show more
(mod_security) mod_security (id:210492) triggered by 13.213.53.102 (ec2-13-213-53-102.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 18:30:40.384882 2026] [security2:error] [pid 29013:tid 29013] [client 13.213.53.102:54128] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.strippolefitness.michaelward.com"] [uri "/.git/config"] [unique_id "amPnkDzddF08S8ZbrZsvOgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
homeshowdomain.nl
2026-07-24 21:59:09
(3 days ago)
Auto-ban: >3000 req/min op 2026-07-24
Web App Attack
SSH
Hacking
πΏπ¦
conure
2026-07-24 20:58:42
(3 days ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 0s
Web App Attack