🇳🇱
ipoac.nl
2026-09-20 00:11:07
(1 day ago)
ipoac.nl:80 158.173.79.226 - - [20/Sep/2026:02:11:01 +0200] ipoac.nl "GET /.git/config HTTP/1.1" 403 ...
show more
ipoac.nl:80 158.173.79.226 - - [20/Sep/2026:02:11:01 +0200] ipoac.nl "GET /.git/config HTTP/1.1" 403 1661 "-" "Go-http-client/1.1"
show less
Bad Web Bot
🇦🇺
2000cn.com.au
2026-09-19 00:12:40
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇧🇪
voormedia
2026-09-19 00:08:31
(2 days ago)
Accessed trap at '/.git/config'
Web App Attack
🇳🇴
jad-abuse
2026-09-18 00:25:58
(3 days ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 2 hits.
show less
Web App Attack
🇺🇸
oncord
2026-07-05 10:04:53
(2 months ago)
Form spam
Web Spam
🇦🇺
oncord
2026-06-19 16:27:02
(3 months ago)
Form spam
Web Spam
🇺🇸
TPI-Abuse
2026-06-05 07:33:07
(3 months ago)
(mod_security) mod_security (id:210801) triggered by 158.173.79.226 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210801) triggered by 158.173.79.226 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 03:33:03.029810 2026] [security2:error] [pid 685:tid 774] [client 158.173.79.226:57753] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||cornell61.org|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "cornell61.org"] [uri "/license.txt"] [unique_id "aiJ7r_s2QMIXfWYIgFADygAAAE4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-05 06:49:16
(3 months ago)
(mod_security) mod_security (id:210801) triggered by 158.173.79.226 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210801) triggered by 158.173.79.226 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 02:49:09.705185 2026] [security2:error] [pid 9809:tid 9809] [client 158.173.79.226:32415] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||www.cmgpartners.com|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "www.cmgpartners.com"] [uri "/license.txt"] [unique_id "aiJxZXf2VboY6CLrWUMV6wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-05 04:38:43
(3 months ago)
(mod_security) mod_security (id:210801) triggered by 158.173.79.226 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210801) triggered by 158.173.79.226 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 00:38:38.186413 2026] [security2:error] [pid 18053:tid 18053] [client 158.173.79.226:31885] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||brevardzen.org|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "brevardzen.org"] [uri "/license.txt"] [unique_id "aiJSzs0PKueEf2iVjp45jQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-05-28 21:14:33
(3 months ago)
Web attack/malicious scanning detected
Web App Attack
🇦🇺
oncord
2026-05-28 19:35:57
(3 months ago)
Form spam
Web Spam
🇬🇧
consul.to
2026-05-26 14:15:14
(3 months ago)
Web attack/malicious scanning detected
Web App Attack