๐จ๐ญ
dalslab ltd
2026-07-27 04:26:58
(19 hours ago)
2026/07/27 06:26:57 [error] 517#517: *935181 limiting requests, excess: 20.370 by zone "rl_per_ip", ...
show more
2026/07/27 06:26:57 [error] 517#517: *935181 limiting requests, excess: 20.370 by zone "rl_per_ip", client: 63.179.210.18, server: music.dalslab.com, request: "GET /.env_copy HTTP/1.1", host: "music.dalslab.com"
2026/07/27 06:26:57 [error] 517#517: *935181 limiting requests, excess: 20.230 by zone "rl_per_ip", client: 63.179.210.18, server: music.dalslab.com, request: "GET /.env.txt HTTP/1.1", host: "music.dalslab.com"
2026/07/27 06:26:57 [error] 517#517: *935181 limiting requests, excess: 20.440 by zone "rl_per_ip", client: 63.179.210.18, server: music.dalslab.com, request: "GET /app/ HTTP/1.1", host: "music.dalslab.com"
2026/07/27 06:26:57 [error] 517#517: *935181 limiting requests, excess: 20.280 by zone "rl_per_ip", client: 63.179.210.18, server: music.dalslab.com, request: "GET /.env.yaml HTTP/1.1", host: "music.dalslab.com"
2026/07/27 06:26:57 [error] 517#517: *935181 limiting requests, excess: 20.060 by zone "rl_per_ip", client: 63.179.210.18, server: music.dalslab.com, request:
...
show less
Brute-Force
SSH
๐ฆ๐บ
screwlooseit.com.au
2026-07-25 05:57:17
(2 days ago)
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/ec2-63-179-210-18.eu-central-1.co ...
show more
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/ec2-63-179-210-18.eu-central-1.compute.amazonaws.com
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2026-07-25 02:42:47
(2 days ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-25 01:59:02
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 63.179.210.18 (ec2-63-179-210-18.eu-central-1.c ...
show more
(mod_security) mod_security (id:210492) triggered by 63.179.210.18 (ec2-63-179-210-18.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 21:58:54.461597 2026] [security2:error] [pid 26398:tid 26398] [client 63.179.210.18:33848] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "modelengines.info"] [uri "/.git/config"] [unique_id "amQYXsTqzoR7bipZTxiz9gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 00:59:42
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 63.179.210.18 (ec2-63-179-210-18.eu-central-1.c ...
show more
(mod_security) mod_security (id:210492) triggered by 63.179.210.18 (ec2-63-179-210-18.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 20:59:36.094972 2026] [security2:error] [pid 21070:tid 21070] [client 63.179.210.18:45096] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "modalsoftware.com"] [uri "/.git/config"] [unique_id "amQKeGZXzuJtweA6OCO80AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
ambor
2026-07-25 00:05:49
(3 days ago)
Honeypot access: Git configuration file access attempt. Path: /.git/config
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-07-24 21:59:58
(3 days ago)
Auto-ban: >3000 req/min op 2026-07-24
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-24 12:18:35
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 63.179.210.18 (ec2-63-179-210-18.eu-central-1.c ...
show more
(mod_security) mod_security (id:210492) triggered by 63.179.210.18 (ec2-63-179-210-18.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 08:18:26.067968 2026] [security2:error] [pid 5977:tid 5977] [client 63.179.210.18:45274] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rodrandolph.com"] [uri "/.git/config"] [unique_id "amNYEtzdmDfxQvONL6GYPgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Octopuce
2026-07-24 12:15:41
(3 days ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 11:10:25
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 63.179.210.18 (ec2-63-179-210-18.eu-central-1.c ...
show more
(mod_security) mod_security (id:210492) triggered by 63.179.210.18 (ec2-63-179-210-18.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 07:10:07.056841 2026] [security2:error] [pid 3561814:tid 3561814] [client 63.179.210.18:56766] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rockwaychiropractic.com"] [uri "/.git/config"] [unique_id "amNID3P-OeiMR6Bsi03xGQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 10:25:22
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 63.179.210.18 (ec2-63-179-210-18.eu-central-1.c ...
show more
(mod_security) mod_security (id:210492) triggered by 63.179.210.18 (ec2-63-179-210-18.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 06:25:18.316205 2026] [security2:error] [pid 3624756:tid 3624756] [client 63.179.210.18:49524] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rockinr.org"] [uri "/.git/config"] [unique_id "amM9jlHS7hRz66MSG6D1OAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐พ
lns.bz
2026-07-24 09:56:11
(3 days ago)
Too many 404 requests [BY]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 09:34:13
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 63.179.210.18 (ec2-63-179-210-18.eu-central-1.c ...
show more
(mod_security) mod_security (id:210492) triggered by 63.179.210.18 (ec2-63-179-210-18.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 05:34:09.991650 2026] [security2:error] [pid 3428764:tid 3428764] [client 63.179.210.18:48850] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rocketcityhotwheelers.com"] [uri "/.git/config"] [unique_id "amMxkblgzt2t5TG0wXbBCQAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 08:18:34
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 63.179.210.18 (ec2-63-179-210-18.eu-central-1.c ...
show more
(mod_security) mod_security (id:210492) triggered by 63.179.210.18 (ec2-63-179-210-18.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 04:18:28.676361 2026] [security2:error] [pid 2347933:tid 2347933] [client 63.179.210.18:47240] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "robstax.com.cctaxpro.com"] [uri "/.git/config"] [unique_id "amMf1PJi0cqs0z2a38MMOAAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-24 08:07:02
(3 days ago)
Blocked: Reason='Vulnerability probing โ PHP scan detected (41/60 min)'; Requests=41
Port Scan