๐ฟ๐ฆ
conure
2026-07-27 19:19:33
(10 hours ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 2s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 17:50:59
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 54.75.12.178 (ec2-54-75-12-178.eu-west-1.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 54.75.12.178 (ec2-54-75-12-178.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 13:50:52.778972 2026] [security2:error] [pid 2274825:tid 2274825] [client 54.75.12.178:59362] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.davisllp.com"] [uri "/.git/config"] [unique_id "ameafHZgJ7UnI5IJ8E7tHQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 16:41:51
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 54.75.12.178 (ec2-54-75-12-178.eu-west-1.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 54.75.12.178 (ec2-54-75-12-178.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 12:41:41.343995 2026] [security2:error] [pid 980188:tid 980188] [client 54.75.12.178:59040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.davidsonmanagement.net"] [uri "/.git/config"] [unique_id "ameKRXeLaRq11iTVJKjz4wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ท
setupgr
2026-07-27 16:30:44
(13 hours ago)
(mod_security) mod_security (id:1000001) triggered by 54.75.12.178 (IE/Ireland/Leinster/Dublin/-/[AS ...
show more
(mod_security) mod_security (id:1000001) triggered by 54.75.12.178 (IE/Ireland/Leinster/Dublin/-/[AS16509 AMAZON-02]): 1 in the last 86400 secs (CF_ENABLE); Ports: *; Direction: inout; Trigger: LF_MODSEC; Logs: [Mon Jul 27 19:30:43.652582 2026] [security2:error] [pid 2601:tid 2764] [client 54.75.12.178:40686] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/p.php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "1000001"] [msg "Bad file blocked: /p.php"] [severity "CRITICAL"] [tag "security"] [hostname "www.davids.gr"] [uri "/p.php"] [unique_id "ameHsyOHCs_qvlw86nn6_AAAAZE"]
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-07-27 15:48:09
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 54.75.12.178 (ec2-54-75-12-178.eu-west-1.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 54.75.12.178 (ec2-54-75-12-178.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 11:48:03.631828 2026] [security2:error] [pid 3792628:tid 3792628] [client 54.75.12.178:51532] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.davidleecrites.adoniahenterprises.com"] [uri "/.git/config"] [unique_id "amd9s_f-Esso4RZeGqjcOwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-07-27 15:46:21
(14 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ฏ๐ต
Valhalla
2026-07-27 15:19:57
(14 hours ago)
~ suspicious post ~
Hacking
Web App Attack
๐ซ๐ท
masterguru
2026-07-27 15:12:50
(14 hours ago)
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b ...
show more
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b (932235-195)
show less
Hacking
๐ซ๐ท
masterguru
2026-07-27 14:25:44
(15 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 13:38:18
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 54.75.12.178 (ec2-54-75-12-178.eu-west-1.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 54.75.12.178 (ec2-54-75-12-178.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 09:38:13.205823 2026] [security2:error] [pid 230503:tid 230503] [client 54.75.12.178:56660] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.davesull.theillustrator.net"] [uri "/.git/config"] [unique_id "amdfRWDAVvIfR_-onkBSswAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 12:55:57
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 54.75.12.178 (ec2-54-75-12-178.eu-west-1.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 54.75.12.178 (ec2-54-75-12-178.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 08:55:51.374582 2026] [security2:error] [pid 3442634:tid 3442634] [client 54.75.12.178:36052] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.davefortier.davidfortier.com"] [uri "/.git/config"] [unique_id "amdVV0xkE1nnzG0WNzM1RQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
todix
2026-07-27 10:11:51
(19 hours ago)
Web App Attack Exploid from 54.75.12.178
Web App Attack
๐ธ๐ช
vaia.cloud
2026-07-27 07:10:02
(22 hours ago)
crowdsecurity/http-crawl-non_statics
Brute-Force
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-07-26 22:00:23
(1 day ago)
Auto-ban: >3000 req/min op 2026-07-26
Web App Attack
SSH
Hacking
๐ณ๐ฑ
e.fierstra
2026-07-26 04:21:19
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack