🇦🇺
paulshipley.com.au
2026-09-15 08:45:38
(1 minute ago)
[Tue Sep 15 18:45:37.496233 2026] [security2:error] [pid 221314] [client 207.175.233.93:59572] [clie ...
show more
[Tue Sep 15 18:45:37.496233 2026] [security2:error] [pid 221314] [client 207.175.233.93:59572] [client 207.175.233.93] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "ccideas.com.au"] [uri "/.git/HEAD"] [unique_id "aqkFsUdB1hbeNWPosfjuRwAAAAY"]
...
show less
Web App Attack
🇨🇭
Ribeye375
2026-09-15 08:41:34
(5 minutes ago)
HIPS web-exfiltration - Block tcp/0:65535
Web App Attack
🇩🇪
XICTRON
2026-09-15 08:40:08
(6 minutes ago)
ModSecurity rule violation detected by Fail2Ban
Web App Attack
🇳🇱
Alt255
2026-09-15 08:39:42
(7 minutes ago)
[ti-24al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-24al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 207.175.233.93 - - [15/Sep/2026:10:39:40 +0200] "GET /.git/HEAD HTTP/2.0" 404 1694 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Bad Web Bot
Web App Attack
🇩🇪
fleckenbase
2026-09-15 08:34:49
(11 minutes ago)
apache-noscript
...
Brute-Force
Web App Attack
Anonymous
2026-09-15 08:32:39
(14 minutes ago)
(mod_security) mod_security triggered on hostname [redacted])
SQL Injection
🇮🇹
eliosbrocchi
2026-09-15 08:28:53
(17 minutes ago)
207.175.233.93 - - [15/Sep/2026:10:28:48 +0200] "GET /sql.sql HTTP/2.0" 404 6029 "-" "Mozilla/5.0 (W ...
show more
207.175.233.93 - - [15/Sep/2026:10:28:48 +0200] "GET /sql.sql HTTP/2.0" 404 6029 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
207.175.233.93 - - [15/Sep/2026:10:28:49 +0200] "GET /db.sqlite HTTP/2.0" 404 6022 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
207.175.233.93 - - [15/Sep/2026:10:28:50 +0200] "GET /slaabid.sql HTTP/2.0" 404 5854 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
207.175.233.93 - - [15/Sep/2026:10:28:50 +0200] "GET /mysql.sql.gz HTTP/2.0" 404 5997 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
207.175.233.93 - - [15/Sep/2026:10:28:50 +0200] "GET /localhost.sql HTTP/2.0" 404 5855 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
207.175.233.93 - - [15/Sep/2026:10:28:51 +0200] "GET /slaabid.fr.sql HTTP/2.0" 404 6000 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
207.175.233.93 - - [15/Sep/2026:10:28:51 +0200] "GET /database.sqlite HTTP/2.0" 404 6028
...
show less
VPN IP
🇸🇪
vaia.cloud
2026-09-15 08:25:03
(21 minutes ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-15 08:14:46
(31 minutes ago)
(mod_security) mod_security (id:210492) triggered by 207.175.233.93 (93.233.175.207.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 207.175.233.93 (93.233.175.207.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 04:14:39.005436 2026] [security2:error] [pid 20026:tid 20026] [client 207.175.233.93:36866] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wavecomputers.com"] [uri "/.env1"] [unique_id "aqj-b20kP8EW3LdButzDswAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
neckaralb-admin.de
2026-09-15 08:13:24
(33 minutes ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇬🇧
consul.to
2026-09-15 08:06:35
(40 minutes ago)
Web attack/malicious scanning detected
Web App Attack
🇦🇺
nzhost.co.nz
2026-09-15 08:04:02
(42 minutes ago)
$f2bV_matches
Hacking
Brute-Force
Anonymous
2026-09-15 08:03:57
(42 minutes ago)
(mod_security) mod_security triggered on hostname [redacted] 207.175.233.93 (BE/Belgium/93.233.175.2 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 207.175.233.93 (BE/Belgium/93.233.175.207.bc.googleusercontent.com)
show less
SQL Injection
🇺🇸
Rocky Mountain Bioengineering Symposium
2026-09-15 08:02:52
(43 minutes ago)
207.175.233.93 - - [15/Sep/2026:02:02:52 -0600] "GET /.git/config HTTP/2.0" 300 4342 "-" "Mozilla/5. ...
show more
207.175.233.93 - - [15/Sep/2026:02:02:52 -0600] "GET /.git/config HTTP/2.0" 300 4342 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Web App Attack
🇳🇱
Savvii
2026-09-15 07:59:49
(46 minutes ago)
20 attempts against mh-misbehave-ban on ec102966
Brute-Force
Bad Web Bot
Web App Attack