๐บ๐ธ
johnkarlhill
2026-09-07 18:08:13
(11 hours ago)
WebKnight blocked malicious web request on johnkarlhill.com
Brute-Force
SSH
๐ง๐ช
madeit
2026-09-04 07:46:23
(3 days ago)
Web App Attack
๐ง๐ช
madeit
2026-08-21 14:40:09
(2 weeks ago)
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-18 04:18:57
(3 weeks ago)
cloudlinux2 fail2ban: 2026-08-18 06:14:10,632 fail2ban.filter [1456]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-08-18 06:14:10,632 fail2ban.filter [1456]: INFO [plesk-modsecurity] Found 47.15.109.222 - 2026-08-18 06:14:10cloudlinux2 fail2ban: 2026-08-18 06:14:21,992 fail2ban.filter [1456]: INFO [plesk-modsecurity] Found 172.71.195.46 - 2026-08-18 06:14:21cloudlinux2 fail2ban: 2026-08-18 06:14:22,003 fail2ban.filter [1456]: INFO [plesk-modsecurity] Found 172.71.195.45 - 2026-08-18 06:14:21cloudlinux2 fail2ban: 2026-08-18 06:14:18,075 fail2ban.filter [1456]: INFO [plesk-modsecurity] Found 154.192.234.235 - 2026-08-18 06:14:18cloudlinux2 fail2ban: 2026-08-18 06:15:13,587 fail2ban.filter [1456]: INFO [plesk-modsecurity] Found 47.15.109.222 - 2026-08-18 06:15:13cloudlinux2 fail2ban: 2026-08-18 06:15:35,050 fail2ban.actions [1456]: NOTICE [plesk-modsecurity] Ban 47.15.109.222cloudlinux2 fail2ban: 2026-08-18 06:15:34,625 fail2ban.filter [1456]: INFO [plesk-modsecurity] Found 47.15.109.222 - 2026-08-18 06:15:34cloudlinux2 fail2
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-17 15:29:33
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.195.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.195.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 11:29:29.573642 2026] [security2:error] [pid 24444:tid 24444] [client 172.71.195.46:9671] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.summithost.com"] [uri "/.git/config"] [unique_id "aoMo2YQFzvbhcVpCOgB4PQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 00:13:05
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.195.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.195.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 20:13:00.823800 2026] [security2:error] [pid 1953:tid 1953] [client 172.71.195.46:13418] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rewind80s.com"] [uri "/.git/HEAD"] [unique_id "aoJSDBIxA5CYg3bCYPC8zQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 10:17:54
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.195.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.195.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 06:17:50.043182 2026] [security2:error] [pid 8825:tid 8825] [client 172.71.195.46:12729] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.chaletofsanmarcoowners.net"] [uri "/.git/HEAD"] [unique_id "aoGOTruzqR69iSXL9GR0gQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-13 20:21:17
(3 weeks ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-11 08:02:55
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.195.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.195.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 04:02:50.708785 2026] [security2:error] [pid 2050798:tid 2050798] [client 172.71.195.46:13441] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.ricketyshack.ca"] [uri "/.git/config"] [unique_id "anrXKhEyQWc_6gq5bJR5iQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
CrystalMaker
2026-07-02 01:30:56
(2 months ago)
Vulnerability scan - GET /__web_secure_probe_1782955850106418381_20 HTTP/2.0
Hacking
๐บ๐ธ
masterguru
2026-05-14 18:13:59
(3 months ago)
BAD BOT - Detected and Blocked.. Matched phrase "baidu" at REQUEST_HEADERS:User-Agent. (1100000-166)
Bad Web Bot
๐บ๐ธ
mnsf
2026-04-07 03:05:24
(5 months ago)
Scanning/Probing (21)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-03-31 17:05:28
(5 months ago)
Scanning/Probing (17)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 13:52:13
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.195.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.195.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 09:51:52.582277 2026] [security2:error] [pid 1036:tid 1036] [client 172.71.195.46:10426] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ladylilac.lilachost.net"] [uri "/.env.container"] [unique_id "acaLeJLKj0hwcvgT1LJI2gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 19:02:52
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.195.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.195.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 15:02:46.250797 2026] [security2:error] [pid 5577:tid 5577] [client 172.71.195.46:10253] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.abilityimprinting.abilityengraving.com"] [uri "/.env.save"] [unique_id "acWC1okCY-oHJRiDtXqylgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack