๐ฌ๐ง
Axel
2026-07-21 23:42:02
(1 hour ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/HEAD Se ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/HEAD Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐ฉ๐ช
Ba-Yu
2026-07-21 23:36:17
(2 hours ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ฌ๐ง
consul.to
2026-07-21 13:55:17
(11 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ฎ๐น
CoreTech srl
2026-07-21 12:28:58
(13 hours ago)
cloudlinux2 fail2ban: 2026-07-21 14:24:11,510 fail2ban.filter [1927]: INFO [plesk-proftpd ...
show more
cloudlinux2 fail2ban: 2026-07-21 14:24:11,510 fail2ban.filter [1927]: INFO [plesk-proftpd] Found 27.29.164.167 - 2026-07-21 14:24:11cloudlinux2 fail2ban: 2026-07-21 14:24:14,247 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 212.34.23.171 - 2026-07-21 14:24:13cloudlinux2 fail2ban: 2026-07-21 14:24:49,211 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 140.248.75.141 - 2026-07-21 14:24:49cloudlinux2 fail2ban: 2026-07-21 14:24:50,021 fail2ban.filter [1927]: INFO [recidive] Found 140.248.75.141 - 2026-07-21 14:24:50cloudlinux2 fail2ban: 2026-07-21 14:24:50,014 fail2ban.actions [1927]: NOTICE [plesk-modsecurity] Ban 140.248.75.141cloudlinux2 fail2ban: 2026-07-21 14:24:49,000 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 140.248.75.141 - 2026-07-21 14:24:48cloudlinux2 fail2ban: 2026-07-21 14:24:49,926 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 140.248.75.141 - 2026-07-21 14:24:49cloudlinux2 fail2ban: 2026-
show less
FTP Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-21 08:34:16
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 140.248.75.45 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 140.248.75.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 04:34:11.293791 2026] [security2:error] [pid 1833690:tid 1833690] [client 140.248.75.45:41962] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "victorvictor.biz"] [uri "/.git/HEAD"] [unique_id "al8vAz5RTEZ-oVStDxOkQwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-07-21 05:14:16
(20 hours ago)
4 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-21 02:23:05
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 140.248.75.45 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 140.248.75.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 22:22:58.977864 2026] [security2:error] [pid 3543915:tid 3543915] [client 140.248.75.45:48650] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bigpanda.expert.blockdredge.com"] [uri "/.git/HEAD"] [unique_id "al7YAjYdOth9WhmFAOvlcQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 21:55:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 140.248.75.45 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 140.248.75.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 17:55:41.799367 2026] [security2:error] [pid 12906:tid 12906] [client 140.248.75.45:10864] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lamineparke.com"] [uri "/.git/HEAD"] [unique_id "al6ZXS3hn6ZlBax2ABkzBgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 19:36:00
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 140.248.75.45 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 140.248.75.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 15:35:53.439938 2026] [security2:error] [pid 1807098:tid 1807098] [client 140.248.75.45:35118] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "1educare.gemexpressions.com"] [uri "/.git/HEAD"] [unique_id "al54mSpyG1QHoiet6htokQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 17:13:03
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 140.248.75.45 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 140.248.75.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 13:12:59.007112 2026] [security2:error] [pid 2334781:tid 2335087] [client 140.248.75.45:33384] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.internationalacademyofprojectmanagement.com.aafm.us"] [uri "/.git/HEAD"] [unique_id "al5XG2zHlR3h2-05tlJ9RwAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-07-20 14:45:03
(1 day ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 140.248.75.45 (GB/United Kingdom/-): ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 140.248.75.45 (GB/United Kingdom/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-20 08:28:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 140.248.75.45 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 140.248.75.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 04:28:20.791421 2026] [security2:error] [pid 3302:tid 3302] [client 140.248.75.45:3878] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fitzmail.com"] [uri "/.git/config"] [unique_id "al3cJPohm3734w4EyWS4eQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-07-20 00:05:34
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 15:30:19
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 140.248.75.45 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 140.248.75.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 11:30:12.526304 2026] [security2:error] [pid 31336:tid 31336] [client 140.248.75.45:62652] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.americanureport.com"] [uri "/.git/HEAD"] [unique_id "alzthOhN-tH9P5tDsJ9ArAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-07-19 05:37:45
(2 days ago)
[SunJul1907:37:38.6491562026][security2:error][pid3964496:tid3964722][client140.248.75.45:0]ModSecur ...
show more
[SunJul1907:37:38.6491562026][security2:error][pid3964496:tid3964722][client140.248.75.45:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"365\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"cpanel.inserzioniticino.ch\"][uri\"/.git/config\"][unique_id\"alxiosR0vztDjZyqI8QuAwAAAQU\"]
show less
Hacking
Web App Attack