๐ฌ๐ง
consul.to
2026-07-21 06:27:30
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-07-21 06:20:14
(1 day ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ฉ๐ช
iNetWorker
2026-07-21 03:10:19
(1 day ago)
trolling for resource vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 19:07:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 140.248.75.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 140.248.75.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 15:07:00.563729 2026] [security2:error] [pid 31418:tid 31418] [client 140.248.75.24:8104] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.maycockfamily.com"] [uri "/.git/HEAD"] [unique_id "al5x1KD4hNOzgvaiqfmLDQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 19:28:13
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 140.248.75.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 140.248.75.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 15:28:06.234375 2026] [security2:error] [pid 1780:tid 1780] [client 140.248.75.24:40822] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.fourminutedecision.com"] [uri "/.git/HEAD"] [unique_id "al0lRuYYzOGw-HnPMLvV6AAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-07-19 14:50:25
(2 days ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 140.248.75.24 (GB/United Kingdom/-): ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 140.248.75.24 (GB/United Kingdom/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-19 13:36:15
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 140.248.75.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 140.248.75.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 09:36:09.996971 2026] [security2:error] [pid 24792:tid 24814] [client 140.248.75.24:34674] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.adprosfla.com"] [uri "/.git/config"] [unique_id "alzSyRdqHBFAvV8BRe2JrwAAAJM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-07-19 03:36:03
(3 days ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 140.248.75.24 (DE/Germany/-): 1 in ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 140.248.75.24 (DE/Germany/-): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 02:46:56
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 140.248.75.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 140.248.75.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 22:46:49.285320 2026] [security2:error] [pid 31082:tid 31082] [client 140.248.75.24:23908] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.memelearning.net"] [uri "/.git/HEAD"] [unique_id "alw6meWknzlQYJFVk_mZKgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 02:17:44
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 140.248.75.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 140.248.75.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 22:17:38.206772 2026] [security2:error] [pid 1085760:tid 1085760] [client 140.248.75.24:60978] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.srich.com"] [uri "/.git/config"] [unique_id "alwzwnFBGCuEbuS3WPkFcAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 01:06:54
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 140.248.75.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 140.248.75.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 21:06:48.936157 2026] [security2:error] [pid 22398:tid 22398] [client 140.248.75.24:56972] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.vitaminpolis.vittariadesign.com"] [uri "/.git/config"] [unique_id "alwjKAZzvLwzIm7H82TSswAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
billfor
2026-07-17 08:45:50
(4 days ago)
140.248.75.24 - - [17/Jul/2026:04:45:45 -0400] "GET /.git/HEAD HTTP/1.1" 404 0 "-" "Mozilla/5.0 (Win ...
show more
140.248.75.24 - - [17/Jul/2026:04:45:45 -0400] "GET /.git/HEAD HTTP/1.1" 404 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:126.0) Gecko/20100101 Firefox/126.0"
show less
Web App Attack
๐ฎ๐น
CoreTech srl
2026-07-17 06:28:56
(5 days ago)
cloudlinux2 fail2ban: 2026-07-17 08:24:09,777 fail2ban.filter [1598]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-07-17 08:24:09,777 fail2ban.filter [1598]: INFO [plesk-modsecurity] Found 140.248.75.147 - 2026-07-17 08:24:09cloudlinux2 fail2ban: 2026-07-17 08:24:09,765 fail2ban.filter [1598]: INFO [plesk-modsecurity] Found 140.248.75.147 - 2026-07-17 08:24:09cloudlinux2 fail2ban: 2026-07-17 08:24:59,452 fail2ban.filter [1598]: INFO [plesk-modsecurity] Found 140.248.75.24 - 2026-07-17 08:24:59cloudlinux2 fail2ban: 2026-07-17 08:24:59,462 fail2ban.filter [1598]: INFO [plesk-modsecurity] Found 140.248.75.24 - 2026-07-17 08:24:59cloudlinux2 fail2ban: 2026-07-17 08:25:32,761 fail2ban.filter [1598]: INFO [plesk-wordpress] Found 193.36.225.3 - 2026-07-17 08:25:32cloudlinux2 fail2ban: 2026-07-17 08:25:52,339 fail2ban.filter [1598]: INFO [plesk-modsecurity] Found 140.248.75.180 - 2026-07-17 08:25:52cloudlinux2 fail2ban: 2026-07-17 08:25:52,348 fail2ban.filter [1598]: INFO [plesk-modsecurity] Found 140.248.75.180 - 2026-07-17 08
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-17 05:33:09
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 140.248.75.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 140.248.75.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 17 01:33:06.071684 2026] [security2:error] [pid 311539:tid 311539] [client 140.248.75.24:2634] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.jeffautry.com"] [uri "/.git/HEAD"] [unique_id "alm-kh56EiV73QJJjNqKQwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-17 03:53:54
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 140.248.75.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 140.248.75.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 23:53:48.627613 2026] [security2:error] [pid 27499:tid 27499] [client 140.248.75.24:3624] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.natchezbicycle.com"] [uri "/.git/config"] [unique_id "almnTL4OueEwyN5IWfzUcAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack