|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 43.204.141.52 (ec2-43-204-141-52.ap-south-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 43.204.141.52 (ec2-43-204-141-52.ap-south-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 16:40:28.361578 2026] [security2:error] [pid 20755:tid 20755] [client 43.204.141.52:60374] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.advantstudio.com"] [uri "/.git/config"] [unique_id "allBvLAnaQdinSVgoUF2sAAAAAY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 43.204.141.52 (ec2-43-204-141-52.ap-south-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 43.204.141.52 (ec2-43-204-141-52.ap-south-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 16:11:01.576888 2026] [security2:error] [pid 20818:tid 20818] [client 43.204.141.52:39510] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.adamsclothiers.com"] [uri "/.git/config"] [unique_id "alk61WRsUkmv6BB6cQbAjgAAABw"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 43.204.141.52 (ec2-43-204-141-52.ap-south-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 43.204.141.52 (ec2-43-204-141-52.ap-south-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 15 22:17:52.930899 2026] [security2:error] [pid 28663:tid 28663] [client 43.204.141.52:39716] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.virtualmediamasters.net"] [uri "/.git/config"] [unique_id "alg_UF69WXkf8pfdkCwzUwAAAAY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฎ๐น
VHosting
|
|
Detected WordPress attack from 4 different servers
|
Brute-Force
Web App Attack
|
|
|
๐ณ๐ฑ
homeshowdomain.nl
|
|
Auto-ban: >3000 req/min op 2026-07-15
|
Web App Attack
SSH
Hacking
|
|
|
๐จ๐ญ
webber
|
|
|
Web App Attack
|
|
|
๐ซ๐ท
dynamix
|
|
Multiple WAF Violations
|
Web App Attack
|
|
|
๐ซ๐ท
Octopuce
|
|
Aggressive web search of vulnerable pages: / /.env /.env.local /app/.env /apps/.env ...
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 43.204.141.52 (ec2-43-204-141-52.ap-south-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 43.204.141.52 (ec2-43-204-141-52.ap-south-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 14 10:39:58.090517 2026] [security2:error] [pid 1668:tid 1668] [client 43.204.141.52:43004] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dunbartonucc.org"] [uri "/.git/config"] [unique_id "alZKPlqIdDUUwdT2u2XCCgAAAAg"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ณ๐ฑ
thedreamer.nl
|
|
43.204.141.52 - - [14/Jul/2026:16:07:35 +0200] "GET / HTTP/1.1" 403 180 "-" "Mozilla/5.0 (Windows NT ...
show more
43.204.141.52 - - [14/Jul/2026:16:07:35 +0200] "GET / HTTP/1.1" 403 180 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "IN" "Mumbai" "19.07480" "72.88560"
43.204.141.52 - - [14/Jul/2026:16:07:35 +0200] "POST / HTTP/1.1" 403 180 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "IN" "Mumbai" "19.07480" "72.88560"
43.204.141.52 - - [14/Jul/2026:16:07:35 +0200] "POST / HTTP/1.1" 403 180 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "IN" "Mumbai" "19.07480" "72.88560"
43.204.141.52 - - [14/Jul/2026:16:07:35 +0200] "POST / HTTP/1.1" 403 180 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "IN" "Mumbai" "19.07480" "72.88560"
...
show less
|
Brute-Force
Bad Web Bot
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 43.204.141.52 (ec2-43-204-141-52.ap-south-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 43.204.141.52 (ec2-43-204-141-52.ap-south-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 14 08:00:32.116430 2026] [security2:error] [pid 4174:tid 4196] [client 43.204.141.52:48218] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dulemba.com"] [uri "/.git/config"] [unique_id "alYk4OgENWAwJWTJGGqzpAAAABA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฉ๐ช
Ariazonaa
|
|
RDP brute-force detected. Automated system says: 'Nice try, script kiddie.'
|
Brute-Force
|
|