Anonymous
2026-09-06 08:45:02
(30 minutes ago)
suspicious request in access.log
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 07:23:21
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 03:23:13.431124 2026] [security2:error] [pid 2900:tid 2900] [client 168.222.97.212:44004] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alianzallc.com"] [uri "/.git/HEAD"] [unique_id "ap0U4c_aHaneyW1KuyTEeQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
CoreTech srl
2026-09-06 07:03:56
(2 hours ago)
cloudlinux2 fail2ban: 2026-09-06 08:59:28,370 fail2ban.filter [2048]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-06 08:59:28,370 fail2ban.filter [2048]: INFO [plesk-modsecurity] Found 151.51.143.145 - 2026-09-06 08:59:28cloudlinux2 fail2ban: 2026-09-06 08:59:50,231 fail2ban.actions [2048]: NOTICE [plesk-modsecurity] Unban 185.177.72.66cloudlinux2 fail2ban: 2026-09-06 09:00:01,530 fail2ban.filter [2048]: INFO [plesk-modsecurity] Found 2.28.51.145 - 2026-09-06 09:00:01cloudlinux2 fail2ban: 2026-09-06 09:00:01,517 fail2ban.filter [2048]: INFO [plesk-modsecurity] Found 2.28.51.145 - 2026-09-06 09:00:01cloudlinux2 fail2ban: 2026-09-06 09:00:44,792 fail2ban.filter [2048]: INFO [plesk-modsecurity] Found 168.222.97.212 - 2026-09-06 09:00:44cloudlinux2 fail2ban: 2026-09-06 09:00:54,323 fail2ban.filter [2048]: INFO [plesk-wordpress] Found 162.0.235.246 - 2026-09-06 09:00:54cloudlinux2 fail2ban: 2026-09-06 09:01:10,336 fail2ban.actions [2048]: NOTICE [plesk-modsecurity] Unban 35.220.204.112cloudlinux2 fail2ban: 2026-09-06 09:01:36,
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 06:43:08
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 02:43:03.872297 2026] [security2:error] [pid 30908:tid 30908] [client 168.222.97.212:44680] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alexandriamelnikoff.com"] [uri "/.git/HEAD"] [unique_id "ap0Ld-gJF3sWY8b6fkhK4QAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 06:15:50
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 02:15:43.504384 2026] [security2:error] [pid 25193:tid 25193] [client 168.222.97.212:36110] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alecmcatee.com"] [uri "/.git/HEAD"] [unique_id "ap0FD7i_ZIaCqb0D0HnZ1AAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-06 05:42:36
(3 hours ago)
[ssd5.kdns.gr] httpd-config-scan: sites=www.alchemy.com.gr; logs=/var/log/httpd/domains/alchemy.com. ...
show more
[ssd5.kdns.gr] httpd-config-scan: sites=www.alchemy.com.gr; logs=/var/log/httpd/domains/alchemy.com.gr.log; samples=/.git/HEAD
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 05:27:32
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 01:27:25.507858 2026] [security2:error] [pid 8088:tid 8088] [client 168.222.97.212:47488] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "albertarmenlive.com"] [uri "/.git/HEAD"] [unique_id "apz5vf-E7JxOjnZRRKoLGQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 04:47:20
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 00:47:14.964551 2026] [security2:error] [pid 25613:tid 25613] [client 168.222.97.212:47532] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alanbeckwith.com"] [uri "/.git/HEAD"] [unique_id "apzwUpaMlUuIOILMPKt5wQAAAGk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 04:28:47
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 00:28:43.234245 2026] [security2:error] [pid 27209:tid 27209] [client 168.222.97.212:42904] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "al-harbi.com"] [uri "/.git/HEAD"] [unique_id "apzr-0vUJWyVTyOsQg_T0gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-06 03:05:20
(6 hours ago)
Abuse Detected (9)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 00:12:43
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 20:12:39.346842 2026] [security2:error] [pid 1704:tid 1704] [client 168.222.97.212:53428] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aico-sal.com"] [uri "/.git/HEAD"] [unique_id "apyv99xUHpcYx_KTN4qyDwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-05 22:01:45
(11 hours ago)
Auto-ban: >3000 req/min op 2026-09-05
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-09-05 21:37:53
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 17:37:47.326109 2026] [security2:error] [pid 31020:tid 31020] [client 168.222.97.212:57730] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "agenticapocalypse.com"] [uri "/.git/HEAD"] [unique_id "apyLq-7mHzGEhkTYBo90ZAAAADE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 21:03:27
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 17:03:20.701540 2026] [security2:error] [pid 11033:tid 11033] [client 168.222.97.212:52458] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "agapeaccounting.com"] [uri "/.git/HEAD"] [unique_id "apyDmGmh1a1KR422V_gdYwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 17:41:00
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 168.222.97.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 13:40:52.589975 2026] [security2:error] [pid 5007:tid 5007] [client 168.222.97.212:41860] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "adoniahenterprises.com"] [uri "/.git/HEAD"] [unique_id "apxUJNbp_mMCOmu2w-duwgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack