๐ณ๐ฑ
BlueWire Hosting
2026-09-16 00:59:33
(14 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 23:09:07
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 198.23.216.102 (teaspoon.hexalogistique.net): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 198.23.216.102 (teaspoon.hexalogistique.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 19:09:02.368839 2026] [security2:error] [pid 25703:tid 25703] [client 198.23.216.102:42133] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.179vfs.com"] [uri "/.git/HEAD"] [unique_id "aqnQDsUorKK8Dsfvs_nnYQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-14 06:26:17
(2 days ago)
[14/Sep/2026:09:26:17 +0300] -- 198.23.216.102 Ban reason: User-Agent Python-urllib
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-14 01:17:21
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 198.23.216.102 (teaspoon.hexalogistique.net): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 198.23.216.102 (teaspoon.hexalogistique.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 21:17:13.922054 2026] [security2:error] [pid 28223:tid 28223] [client 198.23.216.102:48745] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.moleculardetective.org"] [uri "/.git/HEAD"] [unique_id "aqdLGWnFPFOtUwJXq6OTLQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
AvonleaConsulting
2026-09-13 22:58:23
(2 days ago)
Attempts to probe web pages for vulnerable PHP or other applications
Web App Attack
๐ฌ๐ง
AvonleaConsulting
2026-09-13 21:47:00
(2 days ago)
Scanning unused Default website or suspicious access to valid sites from IP marked as abusive
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 13:52:00
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 198.23.216.102 (teaspoon.hexalogistique.net): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 198.23.216.102 (teaspoon.hexalogistique.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 09:51:52.598213 2026] [security2:error] [pid 6819:tid 6819] [client 198.23.216.102:33260] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.tropicallabs.com"] [uri "/.git/HEAD"] [unique_id "aqaqeCsRQ45teX6de3uOBwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 01:12:14
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 198.23.216.102 (teaspoon.hexalogistique.net): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 198.23.216.102 (teaspoon.hexalogistique.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 21:11:45.311528 2026] [security2:error] [pid 30668:tid 30668] [client 198.23.216.102:40947] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.appalachianstomp.com.joshuashands.org"] [uri "/.git/HEAD"] [unique_id "aqX4UbYcAtEZOtS6f3nEtQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-12 09:19:59
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 198.23.216.102 (teaspoon.hexalogistique.net): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 198.23.216.102 (teaspoon.hexalogistique.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 05:19:51.915808 2026] [security2:error] [pid 17654:tid 17654] [client 198.23.216.102:60665] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.d2.stoneast.com"] [uri "/.git/HEAD"] [unique_id "aqUZN5SZxzW4tA3LpPYQLAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-11 11:41:30
(5 days ago)
[11/Sep/2026:14:41:29 +0300] -- 198.23.216.102 Ban reason: User-Agent Python-urllib
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-09 15:11:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 198.23.216.102 (teaspoon.hexalogistique.net): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 198.23.216.102 (teaspoon.hexalogistique.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 11:11:49.417074 2026] [security2:error] [pid 8616:tid 8616] [client 198.23.216.102:50015] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.suffe.cool"] [uri "/.git/HEAD"] [unique_id "aqF3NXNAtHY67rk9CGFZGAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-09 09:40:15
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 198.23.216.102 (teaspoon.hexalogistique.net): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 198.23.216.102 (teaspoon.hexalogistique.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 05:39:58.148682 2026] [security2:error] [pid 26408:tid 26408] [client 198.23.216.102:60984] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.hotpay.co"] [uri "/.git/HEAD"] [unique_id "aqEpbkOJGuc60gcjuZa6rgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-08 19:10:04
(1 week ago)
suspicious request in access.log
Web App Attack
Anonymous
2026-09-08 17:09:27
(1 week ago)
GET /.git/HEAD HTTP/1.1
...
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-06 22:00:44
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-05.
show less
Web App Attack
SSH
Hacking