π«π·
dynamix
2026-10-06 16:23:14
(1 day ago)
Multiple WAF Violations
Web App Attack
πΈπ¬
drewf.ink
2026-09-30 00:45:09
(1 week ago)
[00:45] Attempted HTTPS access to an exposed .git/config
Web App Attack
π―π΅
S.O.B.A. Dev.
2026-09-20 10:44:04
(2 weeks ago)
Persistent port scanning or vulnerability scanning
Port Scan
π§πͺ
madeit
2026-09-15 11:19:05
(3 weeks ago)
Web App Attack
π§πͺ
madeit
2026-09-03 11:25:44
(1 month ago)
Web App Attack
π©πͺ
Grossmann-Gruppe
2026-08-26 06:37:20
(1 month ago)
Plesk Fail2Ban: plesk-modsecurity
Hacking
Brute-Force
π©πͺ
Grossmann-Gruppe
2026-08-19 15:41:38
(1 month ago)
Plesk Fail2Ban: plesk-modsecurity
Hacking
Brute-Force
πΊπΈ
TPI-Abuse
2026-08-18 01:22:09
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.103 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 21:22:01.148339 2026] [security2:error] [pid 31592:tid 31592] [client 162.158.108.103:9513] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.embeddedtrade.com"] [uri "/.git/config"] [unique_id "aoOzuQ88_4-tJtcFAeC7wwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-17 09:04:04
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.103 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 05:03:58.289408 2026] [security2:error] [pid 19810:tid 19810] [client 162.158.108.103:12538] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rachel-heiko.com.owenmail.com"] [uri "/.git/HEAD"] [unique_id "aoLOfmkdAw28Ec3uRBQoWwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-17 03:46:31
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.103 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:46:25.402453 2026] [security2:error] [pid 14482:tid 14482] [client 162.158.108.103:13020] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.adventiststoday.org"] [uri "/.git/HEAD"] [unique_id "aoKEEeaKN2qs02_KoZ38AAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-17 02:24:45
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.103 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 22:24:38.523236 2026] [security2:error] [pid 1881:tid 1881] [client 162.158.108.103:13228] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stewhist.org"] [uri "/.git/HEAD"] [unique_id "aoJw5kyk8I7wGMiIRZRg-QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-16 08:51:46
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.103 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 04:51:18.506344 2026] [security2:error] [pid 29299:tid 29353] [client 162.158.108.103:12289] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.digitaltalkingbible.com"] [uri "/.git/config"] [unique_id "aoF6BgLyoKgJUrMqDG1aUQAAAJg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mawan
2026-08-06 20:07:42
(2 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
πΊπΈ
mawan
2026-07-09 03:39:57
(2 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-11 05:14:06
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.103 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 11 01:14:00.802678 2026] [security2:error] [pid 15133:tid 15133] [client 162.158.108.103:14124] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.curiousnarwhal.gregorii.com"] [uri "/.env"] [unique_id "agFlmDvdYgC9gD02-MWjbwAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack