Anonymous
2026-08-28 04:33:37
(5 days ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐ณ๐ฑ
homeshowdomain.nl
2026-08-26 21:59:27
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-25.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-25 11:49:13
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 07:49:08.700780 2026] [security2:error] [pid 1565:tid 1565] [client 143.244.54.23:51875] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "websitesforauthors.design"] [uri "/.git/config"] [unique_id "ao2BNIRWTmho_j9mKG8OxgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-25 11:04:17
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 10:18:11
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 06:18:07.206442 2026] [security2:error] [pid 32108:tid 32108] [client 143.244.54.23:42169] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tmcbizdev.com"] [uri "/.git/config"] [unique_id "ao1r39tYPBYIsg8s6Y9IkQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 09:16:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 05:16:45.619029 2026] [security2:error] [pid 10356:tid 10356] [client 143.244.54.23:45343] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "psdinnersready.com"] [uri "/.git/config"] [unique_id "ao1dfZsoCHpMTf_VVG3LtwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 08:43:42
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 04:43:39.249122 2026] [security2:error] [pid 25108:tid 25108] [client 143.244.54.23:39415] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "maidsinmalta.com"] [uri "/.git/config"] [unique_id "ao1Vu2_oY3VRZG_C5FFjTQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 07:57:17
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 03:57:12.006842 2026] [security2:error] [pid 22312:tid 22312] [client 143.244.54.23:43955] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jessicalevant.com"] [uri "/.git/config"] [unique_id "ao1K2CSdH4KJacLND2qkyAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 06:53:30
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 02:53:22.204634 2026] [security2:error] [pid 1219377:tid 1219487] [client 143.244.54.23:26025] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "danfriel.com"] [uri "/.git/config"] [unique_id "ao074hZj29ZxZ2W7ZIdI_QAAAg0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
IT Infraestructura
2026-08-25 06:33:00
(1 week ago)
Illegal Resource Access Request blocked to URL: /.git/config(GET)
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 06:10:22
(1 week ago)
(mod_security) mod_security (id:949110) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com ...
show more
(mod_security) mod_security (id:949110) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 02:10:18.543232 2026] [security2:error] [pid 32263:tid 32263] [client 143.244.54.23:27683] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "bluerockdragon.com"] [uri "/.git/config"] [unique_id "ao0xypgHs3ONbPGMnr-8SAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 05:33:55
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 01:33:50.928065 2026] [security2:error] [pid 4430:tid 4430] [client 143.244.54.23:59339] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hotpay.co"] [uri "/.git/config"] [unique_id "ao0pPmBaHkxGzBP9stmntQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 05:07:15
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 143.244.54.23 (unn-143-244-54-23.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 01:07:09.386822 2026] [security2:error] [pid 11360:tid 11450] [client 143.244.54.23:62891] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "adprospb.com"] [uri "/.git/config"] [unique_id "ao0i_SE43_PNX5EeV8MvoQAAAQc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-25 04:19:56
(1 week ago)
Multiple Git Repository Information Disclosure attempt.
Hacking
๐จ๐ฆ
polycoda
2026-08-25 04:16:12
(1 week ago)
AutoBlock: โ๏ธ Configuration File Access (Non Decay-Based)
Hacking
Web App Attack