๐ง๐ช
madeit
2026-08-24 05:34:01
(1 week ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 23:03:13
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.68.244.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.244.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 19:03:07.203223 2026] [security2:error] [pid 17832:tid 17832] [client 172.68.244.200:12017] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.legionofaltana.sobhrach.com"] [uri "/.git/HEAD"] [unique_id "aoOTK2grUMfgdoTxiAgMfAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 13:19:25
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.68.244.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.244.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 09:19:18.757510 2026] [security2:error] [pid 29164:tid 29164] [client 172.68.244.200:13694] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.convtek.com"] [uri "/.git/HEAD"] [unique_id "aoMKVkvEBLWxL4YMaUDFYgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 07:38:40
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.68.244.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.244.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:38:32.361681 2026] [security2:error] [pid 32653:tid 355] [client 172.68.244.200:10472] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bullfrogsmusic.bullfrogspond.com"] [uri "/.git/config"] [unique_id "aoK6eHs8fJDz7mIK3xBsDwAAAcg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
joharikop
2026-08-17 06:22:35
(2 weeks ago)
Nginx: credential/secret file probe (/.env, /.git, /.aws etc). Automated ban via fail2ban nginx-cred ...
show more
Nginx: credential/secret file probe (/.env, /.git, /.aws etc). Automated ban via fail2ban nginx-credential-probes jail.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 04:43:18
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.68.244.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.244.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 00:43:12.148258 2026] [security2:error] [pid 11507:tid 11507] [client 172.68.244.200:11693] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jacob.bluegrassexpressband.com"] [uri "/.git/config"] [unique_id "aoE_4FgqF6Hjjz6Fo0DCjQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 02:12:02
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.68.244.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.244.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 22:11:55.269457 2026] [security2:error] [pid 31261:tid 31261] [client 172.68.244.200:14089] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.nebraskaadaptivesports.org"] [uri "/.git/HEAD"] [unique_id "aoEcawiVkjBe7wHkpUDbhQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 01:30:22
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.68.244.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.244.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 21:30:14.525565 2026] [security2:error] [pid 6095:tid 6095] [client 172.68.244.200:9841] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.copiersgreensboro.com"] [uri "/.git/config"] [unique_id "aoESpscZmuVbtEeciLLYpQAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
el-brujo
2026-08-15 22:45:49
(2 weeks ago)
16/Aug/2026:00:45:48.520700 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
16/Aug/2026:00:45:48.520700 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 172.68.244.200] ModSecurity: Warning. Pattern match "(?:^|=)\\\\\\\\s*(?:{|\\\\\\\\s*\\\\\\\\(\\\\\\\\s*|\\\\\\\\w+=(?:[^\\\\\\\\s]*|\\\\\\\\$.*|\\\\\\\\$.*|<.*|>.*|\\\\\\\\'.*\\\\\\\\'|\\\\".*\\\\")\\\\\\\\s+|!\\\\\\\\s*|\\\\\\\\$)*\\\\\\\\s*(?:'|\\\\")*(?:[\\\\\\\\?\\\\\\\\*\\\\\\\\[\\\\\\\\]\\\\\\\\(\\\\\\\\)\\\\\\\\-\\\\\\\\|+\\\\\\\\w'\\\\"\\\\\\\\./\\\\\\\\\\\\\\\\]+/)?[\\\\\\\\\\\\\\\\'\\\\"]*(?:l[\\\\\\\\\\\\\\\\'\\\\"]*(?:s(?:[\\\\\\\\\\\\\\\\'\\\\"]*(?:b[\\\\\\\\\\\\\\\\'\\\\"]*_[\\\\\\\\\\\\\\\\'\\\\"]*r[\\\\\\\\\\\\\\\\'\\\\"]*e[\\\\\\\\\\\\\\\\'\\\\"]*l[\\\\\\\\\\\\\\\\' ..." at ARGS_NAMES:php echo esc_url( wp_login_url() ); ?>. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-932-APPLICATION-ATTACK-RCE.conf"] [line "464"] [id "932150"] [msg "Remote Command Execution: Direct Unix Command Execution"] [data "Matched Data: php found within ARGS_NAMES:php echo esc_url( w
...
show less
Hacking
Web App Attack
๐ช๐ธ
el-brujo
2026-08-15 07:27:13
(2 weeks ago)
15/Aug/2026:09:27:12.876403 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
15/Aug/2026:09:27:12.876403 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 172.68.244.200] ModSecurity: Warning. Pattern match "(?:^|=)\\\\\\\\s*(?:{|\\\\\\\\s*\\\\\\\\(\\\\\\\\s*|\\\\\\\\w+=(?:[^\\\\\\\\s]*|\\\\\\\\$.*|\\\\\\\\$.*|<.*|>.*|\\\\\\\\'.*\\\\\\\\'|\\\\".*\\\\")\\\\\\\\s+|!\\\\\\\\s*|\\\\\\\\$)*\\\\\\\\s*(?:'|\\\\")*(?:[\\\\\\\\?\\\\\\\\*\\\\\\\\[\\\\\\\\]\\\\\\\\(\\\\\\\\)\\\\\\\\-\\\\\\\\|+\\\\\\\\w'\\\\"\\\\\\\\./\\\\\\\\\\\\\\\\]+/)?[\\\\\\\\\\\\\\\\'\\\\"]*(?:l[\\\\\\\\\\\\\\\\'\\\\"]*(?:s(?:[\\\\\\\\\\\\\\\\'\\\\"]*(?:b[\\\\\\\\\\\\\\\\'\\\\"]*_[\\\\\\\\\\\\\\\\'\\\\"]*r[\\\\\\\\\\\\\\\\'\\\\"]*e[\\\\\\\\\\\\\\\\'\\\\"]*l[\\\\\\\\\\\\\\\\' ..." at ARGS_NAMES:php echo get_delete_post_link( $post_id ); ?>. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-932-APPLICATION-ATTACK-RCE.conf"] [line "464"] [id "932150"] [msg "Remote Command Execution: Direct Unix Command Execution"] [data "Matched Data: php found within ARGS_NAMES:php echo get
...
show less
Hacking
Web App Attack
Anonymous
2026-08-14 11:49:59
(2 weeks ago)
Web scanner: GET /.git/config
Web App Attack
Hacking
๐ฌ๐ง
Oakley
2026-08-14 02:44:28
(2 weeks ago)
(confirmed_bot_sig) Confirmed bot
Hacking
๐ง๐ช
madeit
2026-08-08 23:03:42
(3 weeks ago)
Web App Attack
๐บ๐ธ
mnsf
2026-06-16 00:14:51
(2 months ago)
Abuse Detected (2)
Brute-Force
Web App Attack
๐ฆ๐บ
oncord
2026-05-21 07:46:35
(3 months ago)
Form spam
Web Spam