๐ฉ๐ช
4server
2026-10-09 23:31:17
(4 hours ago)
[SatOct1001:31:13.2553272026][security2:error][pid283008:tid283136][client196.198.211.124:0]ModSecur ...
show more
[SatOct1001:31:13.2553272026][security2:error][pid283008:tid283136][client196.198.211.124:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(curl\|wget\|python\|nikto\|sqlmap\|acunetix\|fimap\|dirbuster\|cmsmap\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"217\"][id\"990210\"][msg\"Suspicioususer-agentblocked\"][hostname\"webmail.admin-services.ch\"][uri\"/.git/HEAD\"][unique_id\"asl5QV_tXmWfVOQdqmGKRgAAAAs\"]
show less
Port Scan
Brute-Force
Web App Attack
Anonymous
2026-10-09 19:24:07
(8 hours ago)
[server.dsamoodle.de] httpd-config-scan: sites=dsamun.gr; samples=/.git/head | fast_lane=true kernel ...
show more
[server.dsamoodle.de] httpd-config-scan: sites=dsamun.gr; samples=/.git/head | fast_lane=true kernel_at=2026-10-09T19:22:29+00:00 | requests=1
show less
Hacking
Web App Attack
๐จ๐ฟ
akac
2026-10-09 05:06:02
(23 hours ago)
Web vulnerability scanning: HTTP/1.1 GET /.git/HEAD
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-10-08 21:59:16
(1 day ago)
Auto-ban: >3000 req/min op 2026-10-08
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-08 09:39:31
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 196.198.211.124 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 196.198.211.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 05:39:03.997524 2026] [security2:error] [pid 30200:tid 30200] [client 196.198.211.124:34945] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "playerpianosupplies.com.player-care.com"] [uri "/.git/HEAD"] [unique_id "asdkt7lHZIuABqWO2zoRsQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 01:23:40
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 196.198.211.124 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 196.198.211.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 21:23:33.186506 2026] [security2:error] [pid 1144:tid 1144] [client 196.198.211.124:56931] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.rentaroller.com.au"] [uri "/.git/HEAD"] [unique_id "asbwlS_xM5Pj0pGfBC5_fQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 13:42:00
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 196.198.211.124 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 196.198.211.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 09:41:54.746059 2026] [security2:error] [pid 4274:tid 4274] [client 196.198.211.124:35663] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.davidnevue.com"] [uri "/.git/HEAD"] [unique_id "asZMIjtpKGys-8GG_MYcGQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 12:54:50
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 196.198.211.124 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 196.198.211.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 08:54:45.337370 2026] [security2:error] [pid 25770:tid 25770] [client 196.198.211.124:41568] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.ssion.com"] [uri "/.git/HEAD"] [unique_id "asZBFb87gFWMMVGEdJbAWwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-10-07 00:05:15
(3 days ago)
Abuse Detected (9)
Brute-Force
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-27 07:57:11
(1 week ago)
[cb-01vi] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-01vi] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 196.198.211.124 - - [27/Sep/2026:09:57:10 +0200] "GET /.git/HEAD HTTP/1.1" 301 499 "-" "Python-urllib/3.10"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 00:18:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 196.198.211.124 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 196.198.211.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 20:18:39.079269 2026] [security2:error] [pid 6559:tid 6559] [client 196.198.211.124:41204] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.muzenique.com.bridgital.com"] [uri "/.git/HEAD"] [unique_id "arhg3979sd2OSzHL57VO9AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
service Informatique
2026-09-24 04:00:37
(2 weeks ago)
/.git
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 03:16:31
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 196.198.211.124 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 196.198.211.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 23:16:28.707009 2026] [security2:error] [pid 5369:tid 5369] [client 196.198.211.124:49093] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tcit.org"] [uri "/.git/HEAD"] [unique_id "arSWDEY5FViWL9GI3-FENQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-23 12:29:58
(2 weeks ago)
[23/Sep/2026:15:29:58 +0300] -- 196.198.211.124 Ban reason: User-Agent Python-urllib
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-09-20 04:03:02
(2 weeks ago)
block ruleset bad bot: misc bad content F608233CC4C86EE814CE8DDDA9C4A0D3C79882F6
Bad Web Bot