π©πͺ
altenglaner
2026-10-03 22:25:28
(1 day ago)
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ba ...
show more
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ban.
show less
Hacking
Web App Attack
π©πͺ
Hary74656
2026-09-27 00:01:26
(1 week ago)
Fail2Ban on schani.hostmi.at: jail=apache-instablock, failures=1.
[client 172.69.223.191] [realclien ...
show more
Fail2Ban on schani.hostmi.at: jail=apache-instablock, failures=1.
[client 172.69.223.191] [realclient 172.69.223.191] [27/Sep/2026:02:01:25 +0200] [vhost fehlende.info] 403 "GET /.git/config HTTP/2.0"
show less
Web App Attack
π§πͺ
madeit
2026-09-11 01:34:15
(3 weeks ago)
Web App Attack
πΊπΈ
TIScore
2026-09-09 13:09:44
(3 weeks ago)
Automated web attack / probing. Signals: Admin-panel scan; Foreign script extension; Unexpected path ...
show more
Automated web attack / probing. Signals: Admin-panel scan; Foreign script extension; Unexpected path. Last path: /wp-admin/install.php
show less
Web App Attack
πΊπΈ
craudiovizai
2026-09-01 18:31:01
(1 month ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. Blocked at the edge.
show less
Web App Attack
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-08-30 05:30:26
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 01:30:20.279727 2026] [security2:error] [pid 4706:tid 4706] [client 172.69.223.191:9640] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wmodradio.com"] [uri "/.git/config"] [unique_id "apO_7KsWCvc-XPqqEtzYAQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-29 06:40:21
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 02:40:16.333682 2026] [security2:error] [pid 8630:tid 8630] [client 172.69.223.191:10633] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.twixmixy.com"] [uri "/.git/config"] [unique_id "apJ-0A0VRUZpKW8aGdrvqgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-29 06:03:20
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 02:03:12.904502 2026] [security2:error] [pid 6763:tid 6771] [client 172.69.223.191:14166] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "resort4pets.petsentiments.com"] [uri "/.git/config"] [unique_id "apJ2IGSsVEs-L5YHPnTKzgAAAoI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-28 18:56:51
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 14:56:46.342735 2026] [security2:error] [pid 3489:tid 3489] [client 172.69.223.191:9729] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kln.ne.jp"] [uri "/jehovah/.git/config"] [unique_id "apHZ7r56zStTh28S5IULbwAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-28 11:04:23
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 07:04:16.346685 2026] [security2:error] [pid 10357:tid 10357] [client 172.69.223.191:9823] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.oshkoshvolleyball.thinksite.net"] [uri "/.git/HEAD"] [unique_id "apFrMOzSxeInUu6e4jMqKQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
madeit
2026-08-28 06:26:47
(1 month ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 22:48:31
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 18:48:24.979928 2026] [security2:error] [pid 12948:tid 12948] [client 172.69.223.191:14306] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.portelizabeth.jbaycabs.com"] [uri "/.git/config"] [unique_id "apC-uPdJ0_e6LzuG0CPMNgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 10:26:22
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 06:26:18.368171 2026] [security2:error] [pid 11910:tid 11910] [client 172.69.223.191:13067] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.title27.com"] [uri "/.git/config"] [unique_id "apAQymmfcSdKaKLGPh6BbwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-26 16:41:21
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 12:41:17.460311 2026] [security2:error] [pid 18136:tid 18136] [client 172.69.223.191:13619] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.asiaan.net"] [uri "/.git/HEAD"] [unique_id "ao8XLWNDGlFlUHNOABf4AwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-25 16:40:05
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:39:58.874279 2026] [security2:error] [pid 27871:tid 27871] [client 172.69.223.191:11987] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.consorciolegal.com"] [uri "/.git/config"] [unique_id "ao3FXn5lZ_EIrYmcPVhsXQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack