๐บ๐ธ
TPI-Abuse
2026-08-22 09:42:28
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 137.184.220.227 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.220.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 05:42:22.835620 2026] [security2:error] [pid 16407:tid 16407] [client 137.184.220.227:35900] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "xrp589.info"] [uri "/.git/config"] [unique_id "aolu_m4s4CT-uK-YPGSOVQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 08:44:25
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 137.184.220.227 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.220.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 04:44:20.230397 2026] [security2:error] [pid 11428:tid 11428] [client 137.184.220.227:33614] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "susanleeward.com"] [uri "/.git/config"] [unique_id "aolhZO9UIEHPauxWx_sFtwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-22 08:32:10
(4 hours ago)
137.184.220.227 - - [22/Aug/2026:16:32:09 +0800] "GET /.git/config HTTP/1.1" 301 242 "-" "Mozilla/5. ...
show more
137.184.220.227 - - [22/Aug/2026:16:32:09 +0800] "GET /.git/config HTTP/1.1" 301 242 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ท๐ด
iulianh
2026-08-22 05:36:13
(7 hours ago)
80,443
Brute-Force
SSH
๐ซ๐ท
LRob
2026-08-22 05:18:59
(7 hours ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: /.git/config
show less
Hacking
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-22 05:18:56
(7 hours ago)
cloudlinux2 fail2ban: 2026-08-22 07:13:51,572 fail2ban.filter [1480]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-08-22 07:13:51,572 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 165.22.2.254 - 2026-08-22 07:13:51cloudlinux2 fail2ban: 2026-08-22 07:13:54,622 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 165.22.2.254 - 2026-08-22 07:13:54cloudlinux2 fail2ban: 2026-08-22 07:14:09,223 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 49.42.166.62 - 2026-08-22 07:14:09cloudlinux2 fail2ban: 2026-08-22 07:14:19,245 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 137.184.220.227 - 2026-08-22 07:14:19cloudlinux2 fail2ban: 2026-08-22 07:14:18,344 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 62.238.122.232 - 2026-08-22 07:14:18cloudlinux2 fail2ban: 2026-08-22 07:14:21,202 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 137.184.220.227 - 2026-08-22 07:14:21cloudlinux2 fail2ban: 2026-08-22 07:15:24,794 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 49.42.166.62 - 2026-08-22 07
show less
Brute-Force
๐ฌ๐ง
openstrike.co.uk
2026-08-22 05:15:39
(7 hours ago)
2 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
๐ฉ๐ช
ghostwarriors
2026-08-22 04:50:28
(8 hours ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 04:09:42
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 137.184.220.227 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.220.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 00:09:38.684807 2026] [security2:error] [pid 28336:tid 28336] [client 137.184.220.227:49126] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wisdomwfo.com"] [uri "/.git/config"] [unique_id "aokhAq2MzVbpvcbCz-xeowAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-22 03:21:02
(9 hours ago)
Unauthorized SSH login attempts
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-08-22 01:38:11
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 137.184.220.227 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.220.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 21:38:07.748000 2026] [security2:error] [pid 19994:tid 19994] [client 137.184.220.227:52340] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zendogenpets.com"] [uri "/.git/config"] [unique_id "aoj9f0xPmPfL54yeYQRohgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
โจ
2026-08-22 01:05:10
(12 hours ago)
Domain : redirect.netenergy.uk
Rule : config
2026-08-22 01:03:09 217.194.210.152 GET /.git/config - ...
show more
Domain : redirect.netenergy.uk
Rule : config
2026-08-22 01:03:09 217.194.210.152 GET /.git/config - 80 - 172.70.231.27 HTTP/1.1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36 - thirstyworkwatercoolers.com 404 8 0 1455 447 79 - 137.184.220.227
show less
Hacking
SQL Injection
๐ฌ๐ง
andypiper
2026-08-22 01:01:09
(12 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐ง๐ช
cmbplf
2026-08-22 00:33:09
(12 hours ago)
187 requests with url.path */.git/config
186 requests with url.path *.git/*
Brute-Force
Bad Web Bot
๐บ๐ธ
craudiovizai
2026-08-22 00:30:22
(12 hours ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/config. Blocked a ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/config. Blocked at the edge.
show less
Web App Attack
Bad Web Bot