๐ฎ๐ณ
evicky2002
2026-07-22 06:00:00
(4 hours ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-07-22 00:44:13
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.234.218.157 (157.218.234.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.218.157 (157.218.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 20:44:08.784620 2026] [security2:error] [pid 106719:tid 106719] [client 8.234.218.157:55692] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.explorediablo.com"] [uri "/.git/config"] [unique_id "amASWPuRiytZMDX6mWZWZgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-07-22 00:32:53
(9 hours ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 00:24:14
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.234.218.157 (157.218.234.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.218.157 (157.218.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 20:24:08.138384 2026] [security2:error] [pid 914494:tid 914494] [client 8.234.218.157:44606] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.exit10band.com"] [uri "/.git/config"] [unique_id "amANqIU-rsoLWyN94jPzfAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 00:00:12
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.234.218.157 (157.218.234.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.218.157 (157.218.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 20:00:00.285411 2026] [security2:error] [pid 624781:tid 624781] [client 8.234.218.157:60350] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.example.directnic-support.rocks"] [uri "/.git/config"] [unique_id "amAIAHOuLvX9HxjGjsyKyQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 23:42:54
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.234.218.157 (157.218.234.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.218.157 (157.218.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 19:42:50.286253 2026] [security2:error] [pid 595545:tid 595545] [client 8.234.218.157:42080] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.evolutionmedical.help"] [uri "/.git/config"] [unique_id "amAD-uLEXOtP-2HaeBAdKAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 23:13:03
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.234.218.157 (157.218.234.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.218.157 (157.218.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 19:12:57.496892 2026] [security2:error] [pid 793718:tid 793718] [client 8.234.218.157:36470] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.eventsetcinc.com"] [uri "/.git/config"] [unique_id "al_8-Qs_bT14nl2LXWNKDgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-07-21 23:05:14
(11 hours ago)
Abuse Detected (9)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 22:57:49
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.234.218.157 (157.218.234.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.218.157 (157.218.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 18:57:42.020641 2026] [security2:error] [pid 4731:tid 4731] [client 8.234.218.157:51290] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.evannine.com"] [uri "/.git/config"] [unique_id "al_5ZipF_VgkUsXDC4rUeAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-07-21 22:53:58
(11 hours ago)
cloudlinux2 fail2ban: 2026-07-22 00:49:41,141 fail2ban.filter [1927]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-07-22 00:49:41,141 fail2ban.filter [1927]: INFO [plesk-wordpress] Found 136.144.42.25 - 2026-07-22 00:49:40cloudlinux2 fail2ban: 2026-07-22 00:51:27,536 fail2ban.filter [1927]: INFO [plesk-wordpress] Found 185.223.152.28 - 2026-07-22 00:51:27cloudlinux2 fail2ban: 2026-07-22 00:51:22,443 fail2ban.filter [1927]: INFO [plesk-wordpress] Found 172.98.32.162 - 2026-07-22 00:51:21cloudlinux2 fail2ban: 2026-07-22 00:51:28,290 fail2ban.filter [1927]: INFO [plesk-wordpress] Found 185.223.152.27 - 2026-07-22 00:51:27cloudlinux2 fail2ban: 2026-07-22 00:52:09,261 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 157.52.92.91 - 2026-07-22 00:52:09cloudlinux2 fail2ban: 2026-07-22 00:52:09,976 fail2ban.filter [1927]: INFO [recidive] Found 157.52.92.91 - 2026-07-22 00:52:09cloudlinux2 fail2ban: 2026-07-22 00:52:08,320 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 157.52.92.91 - 2026-07-22 00:52:08cloudlinux2 f
show less
Web App Attack
Anonymous
2026-07-21 22:45:29
(11 hours ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-21 22:39:43
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.234.218.157 (157.218.234.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.218.157 (157.218.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 18:39:39.333803 2026] [security2:error] [pid 12208:tid 12208] [client 8.234.218.157:48594] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.eurocs2.com"] [uri "/.git/config"] [unique_id "al_1KzaHG4wd2tB45q0NzQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-07-21 22:34:32
(11 hours ago)
Accessed trap at '/.git/config'
Web App Attack
๐บ๐ธ
gumbysoft
2026-07-21 22:31:17
(11 hours ago)
Unauthorized web vulnerability scan (/.env, wordpress, etc.)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 22:14:16
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.234.218.157 (157.218.234.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.218.157 (157.218.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 18:14:10.346898 2026] [security2:error] [pid 30083:tid 30115] [client 8.234.218.157:33378] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ethicmark.org"] [uri "/.git/config"] [unique_id "al_vMhROm-IkrsoL1YsaYQAAAUA"]
show less
Brute-Force
Bad Web Bot
Web App Attack