๐ฌ๐ง
thetomtaylor.co.uk
2026-06-15 09:07:02
(1 month ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 05:12:18
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 8.230.108.156 (156.108.230.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.108.156 (156.108.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 01:12:12.013001 2026] [security2:error] [pid 22179:tid 22179] [client 8.230.108.156:55270] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.21-0322.dynamic-therapy-mn.com"] [uri "/.git/config"] [unique_id "ai-JrHm85uEzIIXEkzuUTgAAAHY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 04:59:21
(1 month ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 02:27:55
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 8.230.108.156 (156.108.230.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.108.156 (156.108.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:27:51.199231 2026] [security2:error] [pid 22894:tid 22894] [client 8.230.108.156:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.kcdusa.com"] [uri "/.git/config"] [unique_id "ai9jJ5OJOSp0xAJQjgMK3AAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
Origon
2026-06-15 02:23:32
(1 month ago)
http-sensitive-files - IP: 8.230.108.156 - time="2026-06-15T04:23:31+02:00" level=info msg="(555f66 ...
show more
http-sensitive-files - IP: 8.230.108.156 - time="2026-06-15T04:23:31+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 8.230.108.156 (US/396982) : 4h ban on Ip 8.230.108.156" module=db
show less
Web App Attack
๐ณ๐ฑ
bazter.pro
2026-06-15 01:33:02
(1 month ago)
8.230.108.156 - - [15/Jun/2026:01:33:01 +0000] "GET /frontend/.git/config HTTP/1.1" 404 303 "-" "Moz ...
show more
8.230.108.156 - - [15/Jun/2026:01:33:01 +0000] "GET /frontend/.git/config HTTP/1.1" 404 303 "-" "Mozilla/5.0 (X11; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/28.0.1478.0 Safari/537.36"
...
show less
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
SSH
๐ณ๐ฑ
e.fierstra
2026-06-15 01:32:40
(1 month ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:12:08
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 8.230.108.156 (156.108.230.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.108.156 (156.108.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:12:03.245393 2026] [security2:error] [pid 1246:tid 1269] [client 8.230.108.156:50310] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.certificationwiki.aafm.us"] [uri "/.git/config"] [unique_id "ai9RY0LT99gf00EIHr0OQQAAAFM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
andypiper
2026-06-15 01:02:18
(1 month ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 00:55:18
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 8.230.108.156 (156.108.230.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.108.156 (156.108.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 20:55:13.421365 2026] [security2:error] [pid 24481:tid 24481] [client 8.230.108.156:44480] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.letceteragifts.kathrynmcbride.com"] [uri "/app/.git/config"] [unique_id "ai9NcY-Fx0J-_rKGk8nVqgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 00:13:14
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 8.230.108.156 (156.108.230.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.108.156 (156.108.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 20:13:08.800773 2026] [security2:error] [pid 28201:tid 28201] [client 8.230.108.156:34130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ggdome.org"] [uri "/web/.git/config"] [unique_id "ai9DlCgaKVTcPt_XHA0baAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-06-14 23:54:14
(1 month ago)
[MonJun1501:54:10.2590002026][security2:error][pid3433961:tid3433986][client8.230.108.156:0]ModSecur ...
show more
[MonJun1501:54:10.2590002026][security2:error][pid3433961:tid3433986][client8.230.108.156:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"traslochiamo.ch\"][uri\"/api/.git/config\"][unique_id\"ai8_IvVHKKAbdH2Vu-gNLAAAABU\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-06-14 23:09:01
(1 month ago)
Fail2Ban - [NGINX]WordPress Logins Sniffings on nginx-wordpress-sniffer ... [ice01,ice02,mx02,mx03]
Bad Web Bot
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-06-14 22:07:01
(1 month ago)
Fail2Ban - [NGINX]WordPress Logins Sniffings on nginx-wordpress-sniffer ... [mx01,wa01]
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-14 22:00:18
(1 month ago)
Auto-ban: >3000 req/min op 2026-06-14
Web App Attack
SSH
Hacking