Anonymous
2026-09-02 19:15:13
(9 minutes ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
๐ท๐บ
russian-kurort.ru
2026-09-02 19:11:00
(13 minutes ago)
SYN flood
DDoS Attack
Hacking
๐ฉ๐ช
jbcrn
2026-09-02 19:07:20
(16 minutes ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. Requested honeypot path: /. User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
YF
2026-09-02 19:00:14
(24 minutes ago)
Distributed subnet attack โ coordinated scanning from multiple IPs in the same /24
DDoS Attack
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-09-02 18:07:34
(1 hour ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure probe. Evidence: AttackPattern: /\.git (Match: /.git)
show less
Hacking
Brute-Force
Web App Attack
๐ฒ๐พ
Rizzy
2026-09-02 17:32:56
(1 hour ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 17:32:46
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 169.40.142.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 169.40.142.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 13:32:41.441346 2026] [security2:error] [pid 20054:tid 20054] [client 169.40.142.133:34560] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "abeltours.com"] [uri "/wp-config.php.bak"] [unique_id "aphduaYuHowGua5zj4nBjgAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 17:04:41
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 169.40.142.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 169.40.142.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 13:04:34.361172 2026] [security2:error] [pid 16732:tid 16732] [client 169.40.142.133:60614] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "healthmarkcounseling.com"] [uri "/wp-config.php.bak"] [unique_id "aphXIss7gU4aSTG3yYEWzAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 15:33:13
(3 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 14:48:26
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 169.40.142.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 169.40.142.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 10:48:21.085269 2026] [security2:error] [pid 29311:tid 29318] [client 169.40.142.133:33058] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alzooma.com"] [uri "/.git/config"] [unique_id "apg3NaAWvuOeo5CnbE4sAgAAAEU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 13:47:48
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 169.40.142.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 169.40.142.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 09:47:43.429247 2026] [security2:error] [pid 9531:tid 9531] [client 169.40.142.133:43314] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "albionglobalmarketing.com"] [uri "/.git/config"] [unique_id "apgo_3S-LgGNKlZpT6ncaAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 13:23:16
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 169.40.142.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 169.40.142.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 09:23:12.257042 2026] [security2:error] [pid 32025:tid 32025] [client 169.40.142.133:15028] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aireaconditionado.aguasolar.com"] [uri "/.git/config"] [unique_id "apgjQOQm6c_FrwOR5zuyigAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-09-02 13:12:51
(6 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
mnsf
2026-09-02 13:05:34
(6 hours ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
Anonymous
2026-09-02 12:36:27
(6 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking