Anonymous
2026-08-31 15:07:36
(53 seconds ago)
Banned by Fail2Ban on server
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-08-31 13:30:41
(1 hour ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐จ๐ฆ
polycoda
2026-08-31 12:31:41
(2 hours ago)
๐ URL GET parameter and/or SQL injection attempts trying to pass quotes, backslashes, %20AND%201=1%2 ...
show more
๐ URL GET parameter and/or SQL injection attempts trying to pass quotes, backslashes, %20AND%201=1%20OR%20, etc...
show less
Hacking
SQL Injection
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 10:05:18
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.198.50.150 (150.50.198.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.50.150 (150.50.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 06:05:14.517969 2026] [security2:error] [pid 17296:tid 17296] [client 35.198.50.150:43778] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.grouchytrump.com.gregquinn.com"] [uri "/.git/config"] [unique_id "apVR2kC3Pca_7d109kukXAAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-31 10:00:23
(5 hours ago)
Excessive multi-domain requests
Brute-Force
๐ฉ๐ช
Grossmann-Gruppe
2026-08-31 09:55:39
(5 hours ago)
Plesk Fail2Ban: plesk-modsecurity
Hacking
Brute-Force
๐ธ๐ช
vaia.cloud
2026-08-31 09:15:02
(5 hours ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-08-31 08:54:20
(6 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฉ๐ช
EGP Abuse Dept
2026-08-31 08:51:17
(6 hours ago)
Scanning for web/db/file exploits on www.groeimeemetcoolcontrol.nl
SQL Injection
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 08:36:50
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.198.50.150 (150.50.198.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.50.150 (150.50.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 04:36:43.804964 2026] [security2:error] [pid 26712:tid 26712] [client 35.198.50.150:35824] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.grmvrr.powerlinemultimedia.net"] [uri "/.git/config"] [unique_id "apU9GxOopHrSISFhBv1MyQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-08-31 07:48:46
(7 hours ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฉ๐ช
4server
2026-08-31 06:58:41
(8 hours ago)
[MonAug3108:58:36.2863132026][security2:error][pid2345845:tid2345965][client35.198.50.150:0]ModSecur ...
show more
[MonAug3108:58:36.2863132026][security2:error][pid2345845:tid2345965][client35.198.50.150:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"www.grigorov.ch.136-243-54-122.cpanel.site\"][uri\"/.env.bak\"][unique_id\"apUmHFv3ARVgQHayhXxabQAAAY0\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 05:01:26
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.198.50.150 (150.50.198.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.50.150 (150.50.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 01:01:20.969308 2026] [security2:error] [pid 7348:tid 7348] [client 35.198.50.150:35498] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gregtrombo.gregorii.com"] [uri "/.git/config"] [unique_id "apUKoNdR_g2wpqICjevzqgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 04:30:08
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.198.50.150 (150.50.198.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.50.150 (150.50.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 00:30:04.814088 2026] [security2:error] [pid 31499:tid 31499] [client 35.198.50.150:42544] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gregdember.artocratic.com"] [uri "/.git/config"] [unique_id "apUDTP_IwhazBN1U-q7NXwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-30 21:59:13
(17 hours ago)
Auto-ban: >3000 req/min op 2026-08-30
Web App Attack
SSH
Hacking