πΊπΈ
ne1for23
2025-12-04 21:06:50
(9 months ago)
Attempt to access invalid virtual host name (###.###.###.###). Typically used to access "internal" ...
show more
Attempt to access invalid virtual host name (###.###.###.###). Typically used to access "internal" resources improperly exposed externally and "protected" only by a lack of external DNS resolution.
3.22.209.42 - - [04/Dec/2025:21:06:50 +0000] "GET / HTTP/1.1" 403 153 "-" "Mozilla/5.0" "-"
show less
Hacking
πΊπΈ
TheJoy
2025-12-02 12:13:00
(9 months ago)
unauthorized url access
Hacking
Web App Attack
πΊπΈ
snappic
2025-11-30 02:31:21
(9 months ago)
Scraping user agent [GET /runtime-service-worker.js?v=3] [python-requests/2.31.0]
Bad Web Bot
Web App Attack
π±πΉ
Evag Touf
2025-11-29 21:55:56
(9 months ago)
(mod_security) mod_security triggered on hostname [redacted] 3.22.209.42 (US/United States/-)
SQL Injection
π¬π§
[email protected]
2025-11-29 00:54:10
(9 months ago)
...
Brute-Force
SSH
π³π±
homeshowdomain.nl
2025-11-28 22:59:22
(9 months ago)
Auto-ban: >3000 req/min op 2025-11-28
Hacking
Web App Attack
SSH
πΊπΈ
TPI-Abuse
2025-11-28 18:12:12
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 3.22.209.42 (ec2-3-22-209-42.us-east-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.22.209.42 (ec2-3-22-209-42.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 28 13:12:06.903001 2025] [security2:error] [pid 1072:tid 1072] [client 3.22.209.42:45128] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "panama-boat-registration.com"] [uri "/.git/config"] [unique_id "aSnl9nM4hIj3sxIsb500pwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-28 17:38:03
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 3.22.209.42 (ec2-3-22-209-42.us-east-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.22.209.42 (ec2-3-22-209-42.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 28 12:37:57.931777 2025] [security2:error] [pid 31855:tid 31855] [client 3.22.209.42:53610] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jamesclarklaw.com"] [uri "/.git/config"] [unique_id "aSnd9RTLwVBknH4GLcH5lAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-28 16:59:47
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 3.22.209.42 (ec2-3-22-209-42.us-east-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.22.209.42 (ec2-3-22-209-42.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 28 11:59:44.122763 2025] [security2:error] [pid 5492:tid 5492] [client 3.22.209.42:53980] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "xygil.com"] [uri "/.git/config"] [unique_id "aSnVACJKhBa9mlBToZM0WwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
bescared
2025-11-28 16:15:08
(9 months ago)
F2B - Malicious activity detected. Too many 403.
Hacking
Brute-Force
Bad Web Bot
Web App Attack
π¨πΏ
Countryman
2025-11-28 15:53:08
(9 months ago)
repeated unauthorized connection attempts, host sweep, port scan
Port Scan
πΊπΈ
mnsf
2025-11-28 15:05:33
(9 months ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
Anonymous
2025-11-28 15:00:04
(9 months ago)
suspicious request in access.log
Web App Attack
π³π±
MM-bot
2025-11-28 14:14:40
(9 months ago)
URL-probe: HTTP/1.1 GET request on /.git/config (2025-11-28 15:14:40 UTC+1)
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-28 14:12:34
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 3.22.209.42 (ec2-3-22-209-42.us-east-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.22.209.42 (ec2-3-22-209-42.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 28 09:12:27.294886 2025] [security2:error] [pid 11689:tid 11689] [client 3.22.209.42:49856] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cerespacifica.com"] [uri "/.git/config"] [unique_id "aSmty_WEq2R1qYlDf4_MPgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack