๐ณ๐ฑ
homeshowdomain.nl
2026-07-19 22:00:00
(2 weeks ago)
Auto-ban: >3000 req/min op 2026-07-19
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-19 11:32:59
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 3.80.5.103 (ec2-3-80-5-103.compute-1.amazonaws. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.80.5.103 (ec2-3-80-5-103.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 07:32:51.321019 2026] [security2:error] [pid 24517:tid 24517] [client 3.80.5.103:55118] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "puoci.com"] [uri "/.git/config"] [unique_id "aly146dcPCsVE4A527HKJAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
dbmwebdesign
2026-07-19 09:10:37
(2 weeks ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐ธ๐ฌ
serverutama
2026-07-19 04:55:58
(2 weeks ago)
[fail2ban nginx-444] Scanner/bot: request berulang diblok nginx (444) โ probe path sensitif (.env/.g ...
show more
[fail2ban nginx-444] Scanner/bot: request berulang diblok nginx (444) โ probe path sensitif (.env/.git/wp/cgi) | bukti: 3.80.5.103 - - [19/Jul/2026:04:55:53 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-"
3.80.5.103 - - [19/Jul/2026:04:55:54 +0000] "GET /.env HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-"
3.80.5.103 - - [19/Jul/2026:04:55:54 +0000] "GET /.env.local HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-"
3.80.5.103 - - [19/Jul/2026:04:55:55 +0000] "GET /.env.production HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-"
3.80.5.103 - - [19/Jul/2026:04:55:56 +0000] "GET /.env.staging HTTP/1.1" 444 0 "
show less
Port Scan
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 04:20:40
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 3.80.5.103 (ec2-3-80-5-103.compute-1.amazonaws. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.80.5.103 (ec2-3-80-5-103.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 00:20:32.589465 2026] [security2:error] [pid 10253:tid 10253] [client 3.80.5.103:60438] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pulleasy.com"] [uri "/.git/config"] [unique_id "alxQkEX-FikWP9W_try_ZAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-07-19 03:05:06
(2 weeks ago)
(modsecurity) srv201 ModSecurity 3.80.5.103 (US/United States/ec2-3-80-5-103.compute-1.amazonaws.com ...
show more
(modsecurity) srv201 ModSecurity 3.80.5.103 (US/United States/ec2-3-80-5-103.compute-1.amazonaws.com): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ฎ๐น
VHosting
2026-07-19 02:40:05
(2 weeks ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 00:26:40
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 3.80.5.103 (ec2-3-80-5-103.compute-1.amazonaws. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.80.5.103 (ec2-3-80-5-103.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 20:26:37.120623 2026] [security2:error] [pid 28564:tid 28564] [client 3.80.5.103:51044] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "puduspoems.com"] [uri "/.git/config"] [unique_id "alwZvTiWWJAvN2_XA808SAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-18 23:53:48
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 3.80.5.103 (ec2-3-80-5-103.compute-1.amazonaws. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.80.5.103 (ec2-3-80-5-103.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 19:53:44.002501 2026] [security2:error] [pid 8030:tid 8030] [client 3.80.5.103:56206] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "puckerbuttbikini.com"] [uri "/.git/config"] [unique_id "alwSCPlpEgJ1g7stwfcM0wAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
digitama.co.id
2021-06-23 10:27:45
(5 years ago)
Bad Web Bot stopped by firewall
Bad Web Bot
๐บ๐ธ
digitama.co.id
2021-06-17 13:01:56
(5 years ago)
Bad Web Bot stopped by firewall
Web App Attack