๐ง๐ช
madeit
2026-09-18 00:31:42
(10 hours ago)
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-09-09 06:10:39
(1 week ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐จ๐ญ
4server
2026-09-06 11:27:18
(1 week ago)
[SunSep0613:27:13.6019592026][security2:error][pid451504:tid451574][client172.68.164.63:0]ModSecurit ...
show more
[SunSep0613:27:13.6019592026][security2:error][pid451504:tid451574][client172.68.164.63:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.vetreriaperletti.ch.81-17-25-250.cpanel.site\"][uri\"/.env.bak\"][unique_id\"ap1OEQ9nNljAk8m1TCojKAAAAgU\"]
show less
Hacking
Web App Attack
๐ง๐ช
madeit
2026-09-03 10:27:09
(2 weeks ago)
Web App Attack
๐ซ๐ท
chengkev
2026-08-29 00:26:18
(2 weeks ago)
Esta IP fue detectada por CrowdSec, activando crowdsecurity/jira_cve-2021-26086
Web App Attack
Hacking
๐บ๐ธ
MPL
2026-08-18 15:34:46
(4 weeks ago)
tcp/443 (5 or more attempts)
Port Scan
๐บ๐ธ
TPI-Abuse
2026-08-17 23:00:44
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.68.164.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.164.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 19:00:36.369829 2026] [security2:error] [pid 2641:tid 2696] [client 172.68.164.63:12929] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.bobchaos.com"] [uri "/.git/config"] [unique_id "aoOSlGDQwiL-IkEoTeyN9AAAAVI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 08:55:30
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.68.164.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.164.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 04:55:22.665567 2026] [security2:error] [pid 5171:tid 5171] [client 172.68.164.63:13052] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.fishtales.jbaydeliveries.com"] [uri "/.git/HEAD"] [unique_id "aoLMek4Vov0MwzOcFAig3AAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 03:02:31
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.68.164.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.164.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:02:25.287332 2026] [security2:error] [pid 22197:tid 22197] [client 172.68.164.63:10411] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.book-runningonempty.coolingsprings.org"] [uri "/.git/config"] [unique_id "aoJ5wevz7bHliZMfoVuOmAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-16 21:59:15
(1 month ago)
Auto-ban: >3000 req/min op 2026-08-16
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-14 20:43:26
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.68.164.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.164.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 14 16:43:17.877918 2026] [security2:error] [pid 13342:tid 13342] [client 172.68.164.63:13213] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mpservice.com.sv"] [uri "/.git/config"] [unique_id "an995ZjxGpbc2MhCMuFdywAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-13 05:33:39
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.68.164.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.164.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 13 01:33:31.491788 2026] [security2:error] [pid 2674085:tid 2674085] [client 172.68.164.63:10965] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.littlestarbookspub.com.flashbackmusicmemories.com"] [uri "/.git/HEAD"] [unique_id "an1XK5c3SVAG0SVNSD3XNwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-12 20:15:56
(1 month ago)
Automatic report - Vulnerability scan
/forum7/memberlist.php?mode=viewprofile&u=16359&sid=b98019eb1c ...
show more
Automatic report - Vulnerability scan
/forum7/memberlist.php?mode=viewprofile&u=16359&sid=b98019eb1cf942d226968687e60fde51
show less
Web App Attack
Anonymous
2026-08-11 13:21:55
(1 month ago)
Automatic report - Vulnerability scan
/forum7/memberlist.php?mode=viewprofile&sid=4b0888dbf60ec984c6 ...
show more
Automatic report - Vulnerability scan
/forum7/memberlist.php?mode=viewprofile&sid=4b0888dbf60ec984c6cc16170167708a&u=16359
show less
Web App Attack
Anonymous
2026-08-11 11:56:25
(1 month ago)
Automatic report - Vulnerability scan
/forum7/memberlist.php?mode=viewprofile&sid=d8a2a01962e6767fb1 ...
show more
Automatic report - Vulnerability scan
/forum7/memberlist.php?mode=viewprofile&sid=d8a2a01962e6767fb1b82c01ab000413&u=58
show less
Web App Attack