๐บ๐ธ
TPI-Abuse
2026-07-16 06:51:11
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 18.218.137.36 (ec2-18-218-137-36.us-east-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 18.218.137.36 (ec2-18-218-137-36.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 02:51:03.584146 2026] [security2:error] [pid 20103:tid 20103] [client 18.218.137.36:59638] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "studiopilates.net"] [uri "/.git/config"] [unique_id "alh_V0HvBh9uoW09z4V2gQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-07-16 05:27:55
(4 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-07-16 05:08:57
(4 days ago)
cloudlinux2 fail2ban: 2026-07-16 07:05:02,760 fail2ban.filter [1812]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-07-16 07:05:02,760 fail2ban.filter [1812]: INFO [plesk-modsecurity] Found 93.152.24.39 - 2026-07-16 07:05:02cloudlinux2 fail2ban: 2026-07-16 07:05:55,925 fail2ban.filter [1812]: INFO [plesk-modsecurity] Found 104.23.239.117 - 2026-07-16 07:05:55cloudlinux2 fail2ban: 2026-07-16 07:05:51,584 fail2ban.filter [1812]: INFO [plesk-modsecurity] Found 184.22.148.173 - 2026-07-16 07:05:51cloudlinux2 fail2ban: 2026-07-16 07:06:19,686 fail2ban.filter [1812]: INFO [plesk-modsecurity] Found 18.218.137.36 - 2026-07-16 07:06:19cloudlinux2 fail2ban: 2026-07-16 07:06:20,155 fail2ban.filter [1812]: INFO [plesk-modsecurity] Found 18.218.137.36 - 2026-07-16 07:06:20cloudlinux2 fail2ban: 2026-07-16 07:06:20,313 fail2ban.actions [1812]: NOTICE [plesk-modsecurity] Ban 18.218.137.36cloudlinux2 fail2ban: 2026-07-16 07:06:19,803 fail2ban.filter [1812]: INFO [plesk-modsecurity] Found 18.218.137.36 - 2026-07-16 07:06:19cloudlinux2 fail2b
show less
Brute-Force
๐บ๐ธ
mnsf
2026-07-16 05:05:13
(4 days ago)
Scanning/Probing (15)
Brute-Force
Web App Attack
๐ง๐ช
cmbplf
2026-07-16 03:22:38
(4 days ago)
5.141 requests with url.path *.env
812 requests with url.path *phpinfo.php
Brute-Force
Bad Web Bot
๐ซ๐ท
COMAITE
2026-07-16 02:53:26
(4 days ago)
Suspicious URL access.
Web App Attack
๐ฒ๐พ
Rizzy
2026-07-16 02:07:16
(4 days ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ฉ๐ช
larse99
2026-07-16 01:43:26
(4 days ago)
Detected Scanning / Hacking activity
Port Scan
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-16 00:59:39
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 18.218.137.36 (ec2-18-218-137-36.us-east-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 18.218.137.36 (ec2-18-218-137-36.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 15 20:59:36.451907 2026] [security2:error] [pid 11615:tid 11615] [client 18.218.137.36:42798] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "studioarmanni.com"] [uri "/.git/config"] [unique_id "algs-PKvyjcwHYVC3mCBqgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-07-16 00:35:03
(4 days ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-16 00:28:49
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 18.218.137.36 (ec2-18-218-137-36.us-east-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 18.218.137.36 (ec2-18-218-137-36.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 15 20:28:41.418212 2026] [security2:error] [pid 24716:tid 24716] [client 18.218.137.36:57542] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "studio716.info"] [uri "/.git/config"] [unique_id "algluWNVFWlAFDvLQwDqkgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Matthew Ping
2026-07-15 18:30:01
(4 days ago)
ModSecurity rule 949110 triggered on wp3. Web application attack blocked by CSF/LFD.
Web App Attack
Hacking