๐ณ๐ฑ
jjnxpct
2025-11-30 04:51:23
(8 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /sendgrid.env (Rule ID: 930130) - Restricted File Access Attempt
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-30 03:09:13
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 3.72.96.39 (ec2-3-72-96-39.eu-central-1.compute ...
show more
(mod_security) mod_security (id:210492) triggered by 3.72.96.39 (ec2-3-72-96-39.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 29 22:09:09.629246 2025] [security2:error] [pid 11698:tid 11698] [client 3.72.96.39:50124] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ismycorporationsafe.com.alanmariotti.com"] [uri "/.git/config"] [unique_id "aSu1VeTIpwtZ1wcxSKl7iAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2025-11-30 00:45:02
(8 months ago)
BAD BOT - Detected and Blocked.. Matched phrase "python" at REQUEST_HEADERS:User-Agent. (1100000-193 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "python" at REQUEST_HEADERS:User-Agent. (1100000-193)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-11-30 00:05:14
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 3.72.96.39 (ec2-3-72-96-39.eu-central-1.compute ...
show more
(mod_security) mod_security (id:210492) triggered by 3.72.96.39 (ec2-3-72-96-39.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 29 19:05:10.102528 2025] [security2:error] [pid 8770:tid 8782] [client 3.72.96.39:37034] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.isa-logistics.oplconnect.com"] [uri "/.git/config"] [unique_id "aSuKNrQYBUX-qemXp5TXMwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-30 00:00:59
(8 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ณ๐ฑ
homeshowdomain.nl
2025-11-29 23:04:58
(8 months ago)
Auto-ban: >3000 req/min op 2025-11-29
Hacking
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2025-11-29 21:14:19
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 3.72.96.39 (ec2-3-72-96-39.eu-central-1.compute ...
show more
(mod_security) mod_security (id:210492) triggered by 3.72.96.39 (ec2-3-72-96-39.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 29 16:14:15.671190 2025] [security2:error] [pid 28604:tid 28629] [client 3.72.96.39:55688] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ip.kd9uri.com"] [uri "/.git/config"] [unique_id "aStiJ8PcN538HVFRN4kpogAAAFA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-29 19:07:50
(8 months ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐ฎ๐ฉ
Burayot
2025-11-29 14:48:07
(8 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 3.72.96.39 (DE/Germany/ec2-3-72-96- ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 3.72.96.39 (DE/Germany/ec2-3-72-96-39.eu-central-1.compute.amazonaws.com): 1 in the last 3600 secs
show less
Web App Attack
Anonymous
2025-11-29 14:38:03
(8 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_MODSEC
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2025-11-29 13:28:03
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 3.72.96.39 (ec2-3-72-96-39.eu-central-1.compute ...
show more
(mod_security) mod_security (id:210492) triggered by 3.72.96.39 (ec2-3-72-96-39.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 29 08:27:58.728508 2025] [security2:error] [pid 24153:tid 24153] [client 3.72.96.39:42274] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.insecticida.aguasolar.com"] [uri "/.git/config"] [unique_id "aSr03jGUHWOu9VEZGo7DxwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack