πͺπΈ
abuseipsrv1
2026-07-29 10:52:40
(3 days ago)
Blacklisted for CAPTCHA_DOS_ALERT after 101 captcha requests
DDoS Attack
Brute-Force
Web App Attack
π³π±
Site.eu
2026-07-28 11:34:27
(4 days ago)
Excessive multi-domain requests
Brute-Force
π«π·
dynamix
2026-07-27 21:46:30
(5 days ago)
Multiple WAF Violations
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-27 18:35:51
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 52.25.54.20 (ec2-52-25-54-20.us-west-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 52.25.54.20 (ec2-52-25-54-20.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 14:35:43.730471 2026] [security2:error] [pid 2508191:tid 2508244] [client 52.25.54.20:50010] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mhrocket.com.emehache.net"] [uri "/.git/config"] [unique_id "amek_ydcY0zvcazLVjys5gAAAVM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
grassau.com
2026-07-27 15:59:15
(5 days ago)
(mod_security) mod_security triggered on hostname [redacted] 52.25.54.20 (US/United States/Oregon/Bo ...
show more
(mod_security) mod_security triggered on hostname [redacted] 52.25.54.20 (US/United States/Oregon/Boardman/ec2-52-25-54-20.us-west-2.compute.amazonaws.com)
show less
SQL Injection
πΊπΈ
TPI-Abuse
2026-07-27 15:28:38
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 52.25.54.20 (ec2-52-25-54-20.us-west-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 52.25.54.20 (ec2-52-25-54-20.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 11:28:30.393493 2026] [security2:error] [pid 1349568:tid 1349568] [client 52.25.54.20:57338] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mgtofficial.markthwaite.com"] [uri "/.git/config"] [unique_id "amd5HgWrfmTQArkV35GsJQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-27 13:28:50
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 52.25.54.20 (ec2-52-25-54-20.us-west-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 52.25.54.20 (ec2-52-25-54-20.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 09:28:45.958637 2026] [security2:error] [pid 497073:tid 497073] [client 52.25.54.20:54226] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mgiexperience.digitalracemedia.com"] [uri "/.git/config"] [unique_id "amddDdIkMaNXOYsMenagRgAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-27 06:50:45
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 52.25.54.20 (ec2-52-25-54-20.us-west-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 52.25.54.20 (ec2-52-25-54-20.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 02:50:37.932962 2026] [security2:error] [pid 3912721:tid 3912721] [client 52.25.54.20:58414] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mewebdesign.buffaloweddingdeejay.com"] [uri "/.git/config"] [unique_id "amb_vTz2AzFQ6slnNKy5FgAAADU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
homeshowdomain.nl
2026-07-26 21:59:35
(6 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-07-25.
show less
Web App Attack
SSH
Hacking
πΊπΈ
TPI-Abuse
2026-07-26 08:35:09
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 52.25.54.20 (ec2-52-25-54-20.us-west-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 52.25.54.20 (ec2-52-25-54-20.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 04:35:02.156442 2026] [security2:error] [pid 1992140:tid 1992140] [client 52.25.54.20:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mindmaterial.io"] [uri "/.git/config"] [unique_id "amXGtmCd0fiDNSdDB_YyxgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
consul.to
2026-07-26 04:59:45
(1 week ago)
Web attack/malicious scanning detected
Web App Attack
π³π±
homeshowdomain.nl
2026-07-25 22:00:16
(1 week ago)
Auto-ban: >3000 req/min op 2026-07-25
Web App Attack
SSH
Hacking
πΊπΈ
TPI-Abuse
2026-07-25 06:39:04
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 52.25.54.20 (ec2-52-25-54-20.us-west-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 52.25.54.20 (ec2-52-25-54-20.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 02:38:57.643867 2026] [security2:error] [pid 2013372:tid 2013372] [client 52.25.54.20:45414] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mark-et-ing-1llc.com.nldi.us"] [uri "/.git/config"] [unique_id "amRaAcw4rhBr-5agr7jvbAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-07-25 05:40:23
(1 week ago)
Excessive 404/403 errors
Brute-Force
π«π·
Octopuce
2026-07-25 03:53:00
(1 week ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack