๐ฉ๐ช
eposs-it.de
2026-09-24 12:15:13
(28 minutes ago)
Blocked by os-abuseipdb; 6 hits, proto=tcp, ports=80
Port Scan
Hacking
๐ฎ๐น
CoreTech srl
2026-09-24 11:51:27
(52 minutes ago)
cloudlinux2 fail2ban: 2026-09-24 12:39:07,688 fail2ban.filter [1603]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-24 12:39:07,688 fail2ban.filter [1603]: INFO [plesk-modsecurity] Found 14.139.227.147 - 2026-09-24 12:39:07cloudlinux2 fail2ban: 2026-09-24 12:39:14,467 fail2ban.filter [1603]: INFO [plesk-modsecurity] Found 198.11.53.117 - 2026-09-24 12:39:14cloudlinux2 fail2ban: 2026-09-24 12:39:08,185 fail2ban.filter [1603]: INFO [recidive] Found 14.139.227.147 - 2026-09-24 12:39:08cloudlinux2 fail2ban: 2026-09-24 12:39:08,179 fail2ban.actions [1603]: NOTICE [plesk-modsecurity] Ban 14.139.227.147cloudlinux2 fail2ban: 2026-09-24 12:39:26,098 fail2ban.filter [1603]: INFO [plesk-wordpress] Found 45.131.193.163 - 2026-09-24 12:39:25cloudlinux2 fail2ban: 2026-09-24 12:39:26,384 fail2ban.filter [1603]: INFO [plesk-wordpress] Found 45.131.193.167 - 2026-09-24 12:39:25cloudlinux2 fail2ban: 2026-09-24 12:39:26,124 fail2ban.filter [1603]: INFO [plesk-wordpress] Found 45.131.193.161 - 2026-09-24 12:39:25cloudlinux2 fail2ban: 2026-0
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 11:34:49
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 198.11.53.117 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 198.11.53.117 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 07:34:32.682559 2026] [security2:error] [pid 15188:tid 15188] [client 198.11.53.117:47247] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rondrez.com"] [uri "/.git/HEAD"] [unique_id "arUKyJ_y4HQSH3AvJTGx6AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 11:02:21
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 198.11.53.117 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 198.11.53.117 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 07:02:08.544746 2026] [security2:error] [pid 9510:tid 9510] [client 198.11.53.117:50691] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yanlidesign.com"] [uri "/.git/HEAD"] [unique_id "arUDMMUDHf5Robl725GYIgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 10:16:46
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 198.11.53.117 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 198.11.53.117 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 06:16:32.825478 2026] [security2:error] [pid 6483:tid 6483] [client 198.11.53.117:32779] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "superbat.info"] [uri "/.git/HEAD"] [unique_id "arT4gH1hz75_x6KjdHlXBQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-09-24 10:08:00
(2 hours ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [ice01,ice02,wa01,wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-24 10:02:06
(2 hours ago)
Web scanner: GET /.git/HEAD
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-24 08:21:57
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 198.11.53.117 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 198.11.53.117 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 04:21:44.481925 2026] [security2:error] [pid 13146:tid 13146] [client 198.11.53.117:44797] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "harrisconcepts.com"] [uri "/.git/HEAD"] [unique_id "arTdmLtxeO3Jb3zA4wfkZwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 08:04:09
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 198.11.53.117 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 198.11.53.117 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 04:03:54.904147 2026] [security2:error] [pid 21740:tid 21740] [client 198.11.53.117:36057] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "littlehornengineering.com"] [uri "/.git/HEAD"] [unique_id "arTZaut3ynZDVD7Fg-al0wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-09-24 07:55:12
(4 hours ago)
(mod_security) mod_security (id:949110) triggered by 198.11.53.117 (US/United States/-): N in the la ...
show more
(mod_security) mod_security (id:949110) triggered by 198.11.53.117 (US/United States/-): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 06:11:26
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 198.11.53.117 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 198.11.53.117 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 02:11:10.354923 2026] [security2:error] [pid 13193:tid 13193] [client 198.11.53.117:46501] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.hicom.net"] [uri "/.git/HEAD"] [unique_id "arS-_gDJKk4UmbXrb7iFVAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
interbiznw.com
2026-09-24 05:14:26
(7 hours ago)
malicious-web-requests-vulnerability-scanning
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 04:04:35
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 198.11.53.117 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 198.11.53.117 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 00:04:18.231912 2026] [security2:error] [pid 4625:tid 4625] [client 198.11.53.117:42327] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wc2023.renju.net"] [uri "/.git/HEAD"] [unique_id "arShQhixOpctvVBmXvLpiwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 03:44:51
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 198.11.53.117 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 198.11.53.117 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 23:44:34.803841 2026] [security2:error] [pid 24422:tid 24422] [client 198.11.53.117:55973] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "general-electric.pamplonaserviciotecnico.com"] [uri "/.git/HEAD"] [unique_id "arScovmGBPGYtlCcjuJGVwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-09-24 03:40:32
(9 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 1 hits.
show less
Web App Attack