๐ณ๐ฑ
Site.eu
2026-08-22 11:13:43
(1 hour ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-22 11:03:39
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 3.145.0.11 (ec2-3-145-0-11.us-east-2.compute.am ...
show more
(mod_security) mod_security (id:210492) triggered by 3.145.0.11 (ec2-3-145-0-11.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 07:03:33.164511 2026] [security2:error] [pid 21400:tid 21469] [client 3.145.0.11:42228] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wijaya.evan-hotel.com"] [uri "/.git/config"] [unique_id "aomCBT1RxUMmJby6OAibogAAAMM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-08-22 10:46:53
(2 hours ago)
392 requests with url.path *phpinfo.php
Brute-Force
Bad Web Bot
๐ณ๐ฑ
Savvii
2026-08-22 08:52:29
(3 hours ago)
45 attempts against mh-misbehave-ban on tin
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hazzard
2026-08-22 08:44:34
(4 hours ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
Anonymous
2026-08-22 07:09:15
(5 hours ago)
(caddyscan) Scanner path probe from 3.145.0.11 (US/United States/ec2-3-145-0-11.us-east-2.compute.am ...
show more
(caddyscan) Scanner path probe from 3.145.0.11 (US/United States/ec2-3-145-0-11.us-east-2.compute.amazonaws.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 3.145.0.11 - - [22/Aug/2026:07:09:10 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 3.145.0.11 - - [22/Aug/2026:07:09:10 +0000] "GET /.env HTTP/1.1"
[REDACTED] 200 2627 3.145.0.11 - - [22/Aug/2026:07:09:10 +0000] "GET /.env.local HTTP/1.1"
[REDACTED] 200 2627 3.145.0.11 - - [22/Aug/2026:07:09:10 +0000] "GET /.env.production HTTP/1.1"
[REDACTED] 200 2627 3.145.0.11 - - [22/Aug/2026:07:09:10 +0000] "GET /.env.staging HTTP/1.1"
show less
Port Scan
๐ณ๐ฑ
homeshowdomain.nl
2026-08-21 22:00:14
(14 hours ago)
Auto-ban: >3000 req/min op 2026-08-21
Web App Attack
SSH
Hacking
๐ณ๐ฑ
Site.eu
2026-08-21 20:34:06
(16 hours ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-21 18:03:10
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 3.145.0.11 (ec2-3-145-0-11.us-east-2.compute.am ...
show more
(mod_security) mod_security (id:210492) triggered by 3.145.0.11 (ec2-3-145-0-11.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 14:03:06.713054 2026] [security2:error] [pid 5538:tid 5538] [client 3.145.0.11:34358] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wisdomsco.systemcapacityoptimization.com"] [uri "/.git/config"] [unique_id "aoiS2tzCj2n78mia4Igr-QAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-08-21 18:00:09
(18 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-08-21 08:53:55
(1 day ago)
[Fri Aug 21 18:53:54.679291 2026] [security2:error] [pid 131469] [client 3.145.0.11:41552] [client 3 ...
show more
[Fri Aug 21 18:53:54.679291 2026] [security2:error] [pid 131469] [client 3.145.0.11:41552] [client 3.145.0.11] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "winesbydesign.com.au"] [uri "/.git/config"] [unique_id "aogSIkQVcyw7rp6dPj3XAwAAACg"]
...
show less
Web App Attack