Anonymous
2026-09-13 19:10:43
(17 hours ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: CA, Attack patterns: Webs ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: CA, Attack patterns: Webshell probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
🇮🇳
evicky2002
2026-09-13 06:00:01
(1 day ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
🇬🇧
andypiper
2026-09-13 01:00:48
(1 day ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 00:47:01
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 68.183.199.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 68.183.199.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 20:46:57.064440 2026] [security2:error] [pid 16972:tid 16972] [client 68.183.199.121:53534] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dvdmasters.com"] [uri "/.git/config"] [unique_id "aqXygc8FlsTck0Jf81_mRAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Alt255
2026-09-13 00:15:45
(1 day ago)
[cb-06al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-06al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 68.183.199.121 - - [13/Sep/2026:02:15:44 +0200] "GET /.git/config HTTP/2.0" 404 1338 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 23:59:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 68.183.199.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 68.183.199.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 19:59:21.107242 2026] [security2:error] [pid 10321:tid 10321] [client 68.183.199.121:40762] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dustyscomputerservice.com"] [uri "/.git/config"] [unique_id "aqXnWSzAUnt2KQ6618htqgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
zynex
2026-09-12 23:23:00
(1 day ago)
URL Probing: /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 23:02:59
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 68.183.199.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 68.183.199.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 19:02:51.860243 2026] [security2:error] [pid 30728:tid 30738] [client 68.183.199.121:45202] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "duplexgoldmine.com"] [uri "/.git/config"] [unique_id "aqXaG5MOi1n34-2_lqZUZwAAAUg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
4server
2026-09-12 22:43:10
(1 day ago)
[SunSep1300:43:07.6311582026][security2:error][pid1378553:tid1378824][client68.183.199.121:0]ModSecu ...
show more
[SunSep1300:43:07.6311582026][security2:error][pid1378553:tid1378824][client68.183.199.121:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"duoacaja.com\"][uri\"/.git/config\"][unique_id\"aqXVe44ciwH5pe4o8SvwPAAAAI8\"]
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 22:36:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 68.183.199.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 68.183.199.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 18:36:45.666931 2026] [security2:error] [pid 14688:tid 14688] [client 68.183.199.121:60118] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dunnretired.com"] [uri "/.git/config"] [unique_id "aqXT_c9PMP4kvWPS16QJ7AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 22:03:00
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 68.183.199.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 68.183.199.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 18:02:55.684596 2026] [security2:error] [pid 18971:tid 18971] [client 68.183.199.121:60702] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dunbeggan.com"] [uri "/.git/config"] [unique_id "aqXMDxdy307oGxqq3YdRagAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-12 21:35:17
(1 day ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
🇺🇸
TPI-Abuse
2026-09-12 21:17:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 68.183.199.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 68.183.199.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 17:17:45.736457 2026] [security2:error] [pid 26685:tid 26697] [client 68.183.199.121:54658] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dukesandgannon.com"] [uri "/.git/config"] [unique_id "aqXBecbFvWnYnXCjftGZKAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-12 21:07:03
(1 day ago)
Automated web scanner. Requested suspicious paths: /.git/config | /.git/config. UTC: 2026-09-12 20:3 ...
show more
Automated web scanner. Requested suspicious paths: /.git/config | /.git/config. UTC: 2026-09-12 20:34:36.
show less
Web App Attack
🇺🇸
mnsf
2026-09-12 21:05:20
(1 day ago)
Abuse Detected (9)
Brute-Force
Web App Attack