๐ฉ๐ช
hero2026
2026-08-26 00:37:59
(5 hours ago)
Blocked by Fail2ban
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-25 23:04:13
(6 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 14:44:21
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 10:44:16.153286 2026] [security2:error] [pid 7152:tid 7152] [client 172.68.174.165:10685] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.noreservationslocations.com"] [uri "/.git/HEAD"] [unique_id "ao2qQAWYUuoGgRmGpSEEMgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 10:26:25
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 06:26:19.204245 2026] [security2:error] [pid 1219374:tid 1219387] [client 172.68.174.165:13082] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marinkovich.org"] [uri "/.git/config"] [unique_id "ao1ty83YgOrWSREBjNrg8wAAAIE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 08:15:26
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 04:15:23.013147 2026] [security2:error] [pid 28058:tid 28058] [client 172.68.174.165:14184] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.lajoze.com"] [uri "/.git/HEAD"] [unique_id "ao1PG8ESYqLIuLM-Te_ScQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 07:58:37
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 03:58:30.761419 2026] [security2:error] [pid 30444:tid 30444] [client 172.68.174.165:12805] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fingercult.kmp.net"] [uri "/.git/HEAD"] [unique_id "ao1LJs6K65g4oG3h7f_EjgAAAE4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-25 05:53:03
(23 hours ago)
[Tue Aug 25 07:53:02.160220 2026] [:error] [pid 483842:tid 483842] [client 172.68.174.165:10597] Mod ...
show more
[Tue Aug 25 07:53:02.160220 2026] [:error] [pid 483842:tid 483842] [client 172.68.174.165:10597] ModSecurity: Warning. Matched "Operator `PmFromFile' with parameter `restricted-files.data' against variable `REQUEST_FILENAME' (Value: `/.git/config' ) [file "/usr/local/modsecurity-crs/rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "131"] [id "930130"] [rev ""] [msg "Restricted File Access Attempt"] [data "Matched Data: .git/ found within REQUEST_FILENAME: /.git/config"] [severity "2"] [ver "OWASP_CRS/4.30.0-dev"] [maturity "0"] [accuracy "0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "OWASP_CRS/ATTACK-LFI"] [tag "capec/1000/255/153/126"] [uri "/.git/config"] [unique_id "178763718261.166984"] [ref "o1,5v4,12t:utf8toUnicode,t:urlDecodeUni,t:normalizePathWin"]
[Tue Aug 25 07:53:02.218638 2026] [:error] [pid 483847:tid 483847] [client 172.68.174.165:10593] ModS
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 03:25:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 23:25:16.932478 2026] [security2:error] [pid 25778:tid 25778] [client 172.68.174.165:13913] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rjhillsfinancial.willowbrookins.com"] [uri "/.git/config"] [unique_id "ao0LHHI022WvE6FcfVUFggAAADU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 02:26:44
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 22:26:40.928655 2026] [security2:error] [pid 27331:tid 27331] [client 172.68.174.165:13680] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.chicamaecosina.michaelsabbey.org"] [uri "/.git/config"] [unique_id "aoz9YMSR5UiXq8VqtpE3DgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 01:02:12
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 21:02:05.287953 2026] [security2:error] [pid 11361:tid 11461] [client 172.68.174.165:9331] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "montanatribes.org"] [uri "/.git/config"] [unique_id "aozpjcQOcZG4u7zMG6udAAAAAU0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 00:27:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 20:26:58.280935 2026] [security2:error] [pid 8276:tid 8276] [client 172.68.174.165:11549] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.filmpolis.com"] [uri "/.git/HEAD"] [unique_id "aozhUgQ8fnqgx5Vc1I8AngAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-08-24 23:47:12
(1 day ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.68.174.165 (US/United States/-) ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.68.174.165 (US/United States/-): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 23:42:42
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 19:42:36.476424 2026] [security2:error] [pid 3684:tid 3684] [client 172.68.174.165:10538] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.renjunews.renju.net"] [uri "/.git/HEAD"] [unique_id "aozW7MIbpBz3GG3QcXtbewAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 22:47:25
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.174.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 18:47:17.245992 2026] [security2:error] [pid 9488:tid 9488] [client 172.68.174.165:13817] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "henrietteg.com"] [uri "/.git/config"] [unique_id "aozJ9fKFtJENaE5fygoqQAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-24 22:03:11
(1 day ago)
Auto-ban: >3000 req/min op 2026-08-24
Web App Attack
SSH
Hacking