Anonymous
2026-09-20 01:20:46
(14 hours ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: CA, Attack patterns: Webs ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: CA, Attack patterns: Webshell probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-19 19:54:39
(19 hours ago)
[ti-03tr] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-03tr] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 142.93.149.23 - - [19/Sep/2026:21:54:30 +0200] "GET /.git/config HTTP/1.1" 404 3252 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 16:29:06
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 142.93.149.23 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.149.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 12:29:03.865730 2026] [security2:error] [pid 11380:tid 11380] [client 142.93.149.23:56900] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gcdata.wisdomwfm.com"] [uri "/.git/config"] [unique_id "aq64T2dMqQNPzNczv45tzgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 14:25:13
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 142.93.149.23 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.149.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 10:25:05.930711 2026] [security2:error] [pid 7718:tid 7718] [client 142.93.149.23:42820] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gavinnine.com.evannine.com"] [uri "/.git/config"] [unique_id "aq6bQfmqNwyKrH_WN07kfgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
JustMeHere
2026-09-19 13:37:51
(1 day ago)
[Sat Sep 19 09:37:46.396741 2026] [security2:error] [pid 824:tid 949] [client 142.93.149.23:33214] M ...
show more
[Sat Sep 19 09:37:46.396741 2026] [security2:error] [pid 824:tid 949] [client 142.93.149.23:33214] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.15.0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "gateway.yorknation.com"] [uri "/.git/config"] [unique_id "aq6QKtYntf5NpBIaGe3tawAAAEU"]
...
show less
Web App Attack
๐บ๐ธ
NetVexor
2026-09-19 12:16:23
(1 day ago)
Attack source identified and submitted via NetVexor BGP Blackhole Network
Port Scan
Hacking
Brute-Force
๐ธ๐ฌ
Cloudkul Cloudkul
2026-09-19 11:06:39
(1 day ago)
Attempted Not Found (404 status code) requests on our application, more than 30% of their total requ ...
show more
Attempted Not Found (404 status code) requests on our application, more than 30% of their total requests.
show less
Brute-Force
Web App Attack
๐บ๐ธ
xmission.com
2026-09-19 10:31:07
(1 day ago)
Blocked by UFW (TCP on 80)
Source port: 38170
TTL: 52
Packet length: 60
TOS: 0x00
This report (for ...
show more
Blocked by UFW (TCP on 80)
Source port: 38170
TTL: 52
Packet length: 60
TOS: 0x00
This report (for 142.93.149.23) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Web App Attack
๐ฉ๐ช
raph
2026-09-19 10:16:59
(1 day ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐ฉ๐ช
NewGastroline
2026-09-19 10:16:15
(1 day ago)
Malicious request blocked by CrowdSec on gastro-prod1.boreus.de
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-19 09:43:35
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-19 09:37:03
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 142.93.149.23 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.149.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 05:36:57.792236 2026] [security2:error] [pid 21466:tid 21576] [client 142.93.149.23:59516] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "garyjahrig.com"] [uri "/.git/config"] [unique_id "aq5XubXpXd4G18xJwTw0cQAAAgw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 08:59:37
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 142.93.149.23 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.149.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 04:59:31.589412 2026] [security2:error] [pid 8914:tid 8914] [client 142.93.149.23:52524] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "garnetcreek.com"] [uri "/.git/config"] [unique_id "aq5O81V8IsdbrXN0YwXUPQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-19 08:56:12
(1 day ago)
Web App Attack
Brute-Force
Web App Attack
Anonymous
2026-09-19 01:30:04
(1 day ago)
CrowdSec decision: crowdsecurity/CVE-2017-9841 (origin: crowdsec)
Port Scan