๐ณ๐ฑ
GabrielJST
2025-09-14 17:31:31
(11 months ago)
(mod_security) mod_security triggered on hostname [redacted] 52.56.152.221 (GB/United Kingdom/ec2-52 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 52.56.152.221 (GB/United Kingdom/ec2-52-56-152-221.eu-west-2.compute.amazonaws.com): (CF_ENABLE)
show less
SQL Injection
Anonymous
2025-09-14 17:00:22
(11 months ago)
52.56.152.221 - - [14/Sep/2025:19:00:21 +0200] "GET / HTTP/1.1" 403 3112 "https://www.google.com/" " ...
show more
52.56.152.221 - - [14/Sep/2025:19:00:21 +0200] "GET / HTTP/1.1" 403 3112 "https://www.google.com/" "Mozilla/5.0 (Linux i386; X11) Gecko/20082706 Firefox/25.0" ...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-14 16:57:26
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 52.56.152.221 (ec2-52-56-152-221.eu-west-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 52.56.152.221 (ec2-52-56-152-221.eu-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 14 12:57:23.021329 2025] [security2:error] [pid 3949104:tid 3949119] [client 52.56.152.221:48610] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webprog.howiek.com"] [uri "/.env"] [unique_id "aMbz8wMm70lStK1446CbyQAAAUg"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2025-09-14 16:28:41
(11 months ago)
Multiple WAF Violations
Web App Attack
๐ฎ๐น
Progetto1
2025-09-14 16:11:02
(11 months ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2025-09-14 16:00:18
(11 months ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐ฉ๐ช
DocNetzwerk
2025-09-14 15:32:22
(11 months ago)
(mod_security) mod_security triggered on hostname [redacted] 52.56.152.221 (GB/United Kingdom/ec2-52 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 52.56.152.221 (GB/United Kingdom/ec2-52-56-152-221.eu-west-2.compute.amazonaws.com)
show less
SQL Injection
Anonymous
2025-09-14 15:28:41
(11 months ago)
Spoofing detected
Hacking
Brute-Force
๐ฉ๐ช
Hazzard
2025-09-14 15:03:24
(11 months ago)
(mod_security) mod_security triggered on hostname [redacted])
SQL Injection
๐บ๐ธ
zorrigas
2025-09-14 14:05:20
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 52.56.152.221 (GB/United Kingdom/ec2-52-56-152- ...
show more
(mod_security) mod_security (id:210492) triggered by 52.56.152.221 (GB/United Kingdom/ec2-52-56-152-221.eu-west-2.compute.amazonaws.com): 5 in the last 3600 secs
show less
Brute-Force
๐ฉ๐ช
dbmwebdesign
2025-09-14 13:12:43
(11 months ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-14 07:52:40
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 52.56.152.221 (ec2-52-56-152-221.eu-west-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 52.56.152.221 (ec2-52-56-152-221.eu-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 14 03:52:34.958502 2025] [security2:error] [pid 23084:tid 23084] [client 52.56.152.221:47608] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oficinasydespachosmurcia.com"] [uri "/.env"] [unique_id "aMZ0QjrNRiImiuOohgB_ZwAAABU"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-14 06:42:24
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 52.56.152.221 (ec2-52-56-152-221.eu-west-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 52.56.152.221 (ec2-52-56-152-221.eu-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 14 02:42:17.673912 2025] [security2:error] [pid 1893727:tid 1893751] [client 52.56.152.221:39738] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oftv.hdtv55.com"] [uri "/.env"] [unique_id "aMZjycubGEPNFd3pG_FR3wAAAFY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2025-09-14 06:35:46
(11 months ago)
Excessive 404/403 errors
Brute-Force
๐ฒ๐พ
Rizzy
2025-09-14 05:46:25
(11 months ago)
Multiple WAF Violations
Brute-Force
Web App Attack