๐ณ๐ฑ
homeshowdomain.nl
2026-07-25 22:00:28
(1 day ago)
Auto-ban: >3000 req/min op 2026-07-25
Web App Attack
SSH
Hacking
๐ฉ๐ช
NihiliousMonk
2026-07-25 05:19:12
(1 day ago)
Fail2Ban report from jail npm-scanners
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 04:28:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 18.193.65.129 (ec2-18-193-65-129.eu-central-1.c ...
show more
(mod_security) mod_security (id:210492) triggered by 18.193.65.129 (ec2-18-193-65-129.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 00:28:40.831486 2026] [security2:error] [pid 18370:tid 18370] [client 18.193.65.129:40432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pattenden.com"] [uri "/.git/config"] [unique_id "amQ7eEIqkMUcXj1WtGpibgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
strefapi_com
2026-07-25 04:10:18
(2 days ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
Anonymous
2026-07-25 02:05:53
(2 days ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐ณ๐ฑ
Site.eu
2026-07-25 00:07:09
(2 days ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-24 08:35:20
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 18.193.65.129 (ec2-18-193-65-129.eu-central-1.c ...
show more
(mod_security) mod_security (id:210492) triggered by 18.193.65.129 (ec2-18-193-65-129.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 04:35:15.828605 2026] [security2:error] [pid 3453626:tid 3453626] [client 18.193.65.129:54752] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "undergroundh2o.com"] [uri "/.git/config"] [unique_id "amMjww2B5Yl1zflYUh0o0wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Octopuce
2026-07-24 06:43:44
(2 days ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
Anonymous
2026-07-24 06:00:53
(2 days ago)
18.193.65.129 - - [24/Jul/2026:08:00:51 +0200] "GET / HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (X11; Lin ...
show more
18.193.65.129 - - [24/Jul/2026:08:00:51 +0200] "GET / HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
18.193.65.129 - - [24/Jul/2026:08:00:51 +0200] "POST / HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
18.193.65.129 - - [24/Jul/2026:08:00:51 +0200] "POST / HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
18.193.65.129 - - [24/Jul/2026:08:00:51 +0200] "POST / HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
18.193.65.129 - - [24/Jul/2026:08:00:51 +0200] "GET /.git/config HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
18.193.65.129 - - [24/Jul/2026:08:00:51 +0200] "POST / HTTP/1.1" 403 12583 "
...
show less
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-07-24 05:15:03
(2 days ago)
crowdsecurity/http-crawl-non_statics
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 03:49:30
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 18.193.65.129 (ec2-18-193-65-129.eu-central-1.c ...
show more
(mod_security) mod_security (id:210492) triggered by 18.193.65.129 (ec2-18-193-65-129.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 23:49:21.178518 2026] [security2:error] [pid 3410658:tid 3410658] [client 18.193.65.129:46212] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ultratec.com.mx.activethinkers.net"] [uri "/.git/config"] [unique_id "amLgwScJ3WP57wigd7df7wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 03:25:38
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 18.193.65.129 (ec2-18-193-65-129.eu-central-1.c ...
show more
(mod_security) mod_security (id:210492) triggered by 18.193.65.129 (ec2-18-193-65-129.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 23:25:34.493046 2026] [security2:error] [pid 3125949:tid 3125949] [client 18.193.65.129:39788] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ultrakid.com"] [uri "/.git/config"] [unique_id "amLbLhROvkPPaOj8vTOMnwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2022-07-29 04:20:03
(3 years ago)
block ruleset bad bot: ignores robots.txt 8010B44F7E78AD8B94C70711C72D11CDE0DAC0F4
Bad Web Bot
๐จ๐ญ
backslash
2022-06-10 15:50:06
(4 years ago)
block ruleset bad bot: ignores robots.txt 8010B44F7E78AD8B94C70711C72D11CDE0DAC0F4
Bad Web Bot