π§π·
radardatelecom
2026-09-28 22:26:03
(3 days ago)
Blocked by Radar da Telecom firewall β abuseipdb
Bad Web Bot
Web App Attack
π³π±
homeshowdomain.nl
2026-09-28 21:59:10
(3 days ago)
Auto-ban: >3000 req/min op 2026-09-28
Web App Attack
SSH
Hacking
πΊπ¦
URAN Publishing Service
2026-09-28 07:38:02
(3 days ago)
[28/Sep/2026:10:38:02 +0300] -- 158.173.89.238 Ban reason: User-Agent Go-http-client
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 06:55:22
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 158.173.89.238 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 158.173.89.238 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 02:55:15.810961 2026] [security2:error] [pid 20134:tid 20134] [client 158.173.89.238:48451] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wmionline.org"] [uri "/.git/config"] [unique_id "aroPU8JjKP-eJh8fQa3qZgAAAC4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 06:39:04
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 158.173.89.238 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 158.173.89.238 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 02:39:00.487548 2026] [security2:error] [pid 25514:tid 25514] [client 158.173.89.238:35621] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "certifiedfarmersmarkets.org"] [uri "/.git/config"] [unique_id "aroLhOIYnAI7VXfJzJYJ7AAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
e.fierstra
2026-09-28 06:35:46
(3 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
Anonymous
2026-09-28 06:35:17
(3 days ago)
Web probing (3 hits in 24h) on default-vhost,mergel.nu: sensitive-path scans and/or 404 bursts. Repo ...
show more
Web probing (3 hits in 24h) on default-vhost,mergel.nu: sensitive-path scans and/or 404 bursts. Reported by CRMON.
show less
Web App Attack
π³π±
Alt255
2026-09-28 06:28:53
(3 days ago)
[ti-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 158.173.89.238 - - [28/Sep/2026:08:28:45 +0200] "GET /.git/config HTTP/1.1" 301 449 "-" "Go-http-client/1.1"
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-28 06:28:03
(3 days ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
π©πͺ
bescared
2026-09-28 06:21:23
(3 days ago)
F2B - Malicious activity detected. URL Probing. -8ff06ede-
Hacking
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 06:20:32
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 158.173.89.238 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 158.173.89.238 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 02:20:26.340664 2026] [security2:error] [pid 18635:tid 18635] [client 158.173.89.238:24915] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "acquivest.net"] [uri "/.git/config"] [unique_id "aroHKj8dM8UebA17rB1iXAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 05:45:00
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 158.173.89.238 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 158.173.89.238 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 01:44:51.612045 2026] [security2:error] [pid 6922:tid 6922] [client 158.173.89.238:47761] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "workshop.modelengines.info"] [uri "/.git/config"] [unique_id "arn-0_WQcIxypRG62hs22gAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
Eldeberen
2026-09-28 05:32:10
(3 days ago)
Vulnerability scan attempt through HTTP protocol
Web App Attack
π©πͺ
ghostwarriors
2026-09-28 05:20:15
(3 days ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-28 05:15:01
(3 days ago)
158.173.89.238 - - [28/Sep/2026:05:15:01 +0000] "GET /.git/config HTTP/1.1" 302 439 "-" "Go-http-cli ...
show more
158.173.89.238 - - [28/Sep/2026:05:15:01 +0000] "GET /.git/config HTTP/1.1" 302 439 "-" "Go-http-client/1.1"
...
show less
Bad Web Bot
Web App Attack