π¦πΊ
nzhost.co.nz
2026-07-28 00:51:31
(6 hours ago)
$f2bV_matches
Hacking
Brute-Force
π³π΄
jad-abuse
2026-07-27 16:49:13
(14 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: env_probe ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: env_probe, source_backup. Observed by 1 sensor(s); 25 hits.
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-27 12:35:38
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 3.107.191.67 (ec2-3-107-191-67.ap-southeast-2.c ...
show more
(mod_security) mod_security (id:210492) triggered by 3.107.191.67 (ec2-3-107-191-67.ap-southeast-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 08:35:34.459443 2026] [security2:error] [pid 3674364:tid 3674364] [client 3.107.191.67:39392] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "northfultonneurology.com"] [uri "/.git/config"] [unique_id "amdQlm0wfwc1CbsCnm2wbwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-27 11:02:39
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 3.107.191.67 (ec2-3-107-191-67.ap-southeast-2.c ...
show more
(mod_security) mod_security (id:210492) triggered by 3.107.191.67 (ec2-3-107-191-67.ap-southeast-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 07:02:31.606760 2026] [security2:error] [pid 125867:tid 125867] [client 3.107.191.67:43176] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "northernfrontier.net"] [uri "/.git/config"] [unique_id "amc6x-wtihkkrYLqYNkdTgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π²πΎ
Rizzy
2026-07-27 03:49:57
(1 day ago)
Multiple WAF Violations
Brute-Force
Web App Attack
π«π·
Octopuce
2026-07-26 07:00:23
(1 day ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-26 04:03:43
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 3.107.191.67 (ec2-3-107-191-67.ap-southeast-2.c ...
show more
(mod_security) mod_security (id:210492) triggered by 3.107.191.67 (ec2-3-107-191-67.ap-southeast-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 00:03:37.342585 2026] [security2:error] [pid 2157945:tid 2157945] [client 3.107.191.67:40880] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "guardmagic.eu"] [uri "/.git/config"] [unique_id "amWHGSL8s17VZYWB9pckWQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
homeshowdomain.nl
2026-07-25 22:01:23
(2 days ago)
Auto-ban: >3000 req/min op 2026-07-25
Web App Attack
SSH
Hacking
πΊπΈ
mnsf
2026-07-25 03:05:39
(3 days ago)
Scanning/Probing (11)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-24 22:26:08
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 3.107.191.67 (ec2-3-107-191-67.ap-southeast-2.c ...
show more
(mod_security) mod_security (id:210492) triggered by 3.107.191.67 (ec2-3-107-191-67.ap-southeast-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 18:26:01.008351 2026] [security2:error] [pid 1291958:tid 1291958] [client 3.107.191.67:59286] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.albertacottagebuilder.com.weyoungrenovations.com"] [uri "/.git/config"] [unique_id "amPmeYHFa40I6AuFeSnaxAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-24 18:05:56
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 3.107.191.67 (ec2-3-107-191-67.ap-southeast-2.c ...
show more
(mod_security) mod_security (id:210492) triggered by 3.107.191.67 (ec2-3-107-191-67.ap-southeast-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 14:05:49.384503 2026] [security2:error] [pid 243205:tid 243205] [client 3.107.191.67:51062] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.alanbeckwith.mainescentsecrets.com"] [uri "/.git/config"] [unique_id "amOpfWz-hEnEOOgX2HKa3gAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
dynamix
2026-07-24 16:30:28
(3 days ago)
Multiple WAF Violations
Web App Attack
π©πͺ
big-cloud.nl
2026-07-24 09:42:43
(3 days ago)
Try to access /.git/config
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-24 08:41:22
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 3.107.191.67 (ec2-3-107-191-67.ap-southeast-2.c ...
show more
(mod_security) mod_security (id:210492) triggered by 3.107.191.67 (ec2-3-107-191-67.ap-southeast-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 04:41:17.566114 2026] [security2:error] [pid 2369449:tid 2369449] [client 3.107.191.67:54686] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.akillitarifler.lobibilisim.com"] [uri "/.git/config"] [unique_id "amMlLc6Vw5e8FEbYSZ2ztgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-24 06:30:06
(4 days ago)
| [Dangerous/Australia] Aggressive IP 3.107.191.67 (~30 hits). Type: DoS Defender- Web server 400 er ...
show more
| [Dangerous/Australia] Aggressive IP 3.107.191.67 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection