π¨π
π¨π Hosting
2026-07-17 05:10:21
(4 days ago)
Automated WAF report: 200-300 blocked requests from this IP detected by our WAF.
Bad Web Bot
Web App Attack
π¦πΊ
screwlooseit.com.au
2026-07-17 02:58:40
(4 days ago)
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/ec2-15-152-144-160.ap-northeast-3 ...
show more
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/ec2-15-152-144-160.ap-northeast-3.compute.amazonaws.com
show less
Web App Attack
π³π±
homeshowdomain.nl
2026-07-16 22:06:25
(4 days ago)
Auto-ban: >3000 req/min op 2026-07-16
Web App Attack
SSH
Hacking
πΊπΈ
TPI-Abuse
2026-07-16 22:04:01
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 15.152.144.160 (ec2-15-152-144-160.ap-northeast ...
show more
(mod_security) mod_security (id:210492) triggered by 15.152.144.160 (ec2-15-152-144-160.ap-northeast-3.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 18:03:57.189164 2026] [security2:error] [pid 1322:tid 1322] [client 15.152.144.160:39912] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "music.grhall.com"] [uri "/.git/config"] [unique_id "allVTYwCUVrRI3lgUjRSpAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-16 20:24:48
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 15.152.144.160 (ec2-15-152-144-160.ap-northeast ...
show more
(mod_security) mod_security (id:210492) triggered by 15.152.144.160 (ec2-15-152-144-160.ap-northeast-3.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 16:24:44.804796 2026] [security2:error] [pid 32504:tid 32504] [client 15.152.144.160:53226] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "musicalmuses.com"] [uri "/.git/config"] [unique_id "alk-DC9tTf7ktCUf7z-rwwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
ger-stg-sifi1
2026-07-16 19:25:47
(4 days ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
π«π·
dynamix
2026-07-16 17:29:34
(4 days ago)
Multiple WAF Violations
Web App Attack
πΏπ¦
conure
2026-07-16 17:09:24
(4 days ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 0s
Web App Attack
π¬π§
gigatech
2026-07-16 14:55:03
(4 days ago)
Webserver Probing
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-16 14:34:05
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 15.152.144.160 (ec2-15-152-144-160.ap-northeast ...
show more
(mod_security) mod_security (id:210492) triggered by 15.152.144.160 (ec2-15-152-144-160.ap-northeast-3.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 10:34:01.220314 2026] [security2:error] [pid 5426:tid 5426] [client 15.152.144.160:59986] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "murphylumber.ca"] [uri "/.git/config"] [unique_id "aljr2e1GS8Ji-8to27lEbgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
pltcldvlpr
2026-07-16 08:58:21
(4 days ago)
CMS/framework probe: 15.152.144.160 - - [16/Jul/2026:10:58:20 +0200] "GET /.git/config HTTP/1.1" 401 ...
show more
CMS/framework probe: 15.152.144.160 - - [16/Jul/2026:10:58:20 +0200] "GET /.git/config HTTP/1.1" 401 590 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" asn=16509 org="Amazon.com, Inc." country=JP
...
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-16 06:31:07
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 15.152.144.160 (ec2-15-152-144-160.ap-northeast ...
show more
(mod_security) mod_security (id:210492) triggered by 15.152.144.160 (ec2-15-152-144-160.ap-northeast-3.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 02:31:02.256709 2026] [security2:error] [pid 32562:tid 32562] [client 15.152.144.160:50386] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "munchiwrapcom.lasertherapyoc.com"] [uri "/.git/config"] [unique_id "alh6ptbcbITHkr2m6BHKxQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
consul.to
2026-07-16 01:04:44
(5 days ago)
Web attack/malicious scanning detected
Web App Attack
π²πΎ
Rizzy
2026-07-16 00:39:41
(5 days ago)
Multiple WAF Violations
Brute-Force
Web App Attack
Anonymous
2026-07-15 21:01:15
(5 days ago)
Multiple web server 400 error codes from same source ip
Web App Attack