🇳🇱
homeshowdomain.nl
2026-09-03 22:00:14
(1 day ago)
Auto-ban: >3000 req/min op 2026-09-03
Web App Attack
SSH
Hacking
Anonymous
2026-09-03 21:20:03
(1 day ago)
suspicious request in access.log
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 19:34:51
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 134.199.151.213 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 134.199.151.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 15:34:46.696025 2026] [security2:error] [pid 5895:tid 5895] [client 134.199.151.213:42082] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||rcain3.cain2016.org|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "rcain3.cain2016.org"] [uri "/debug.log"] [unique_id "apnL1v9EukFeadVad59CMgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇵🇱
lns.bz
2026-09-03 19:24:58
(1 day ago)
Web app attack [PL.Lu]
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 19:10:51
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 134.199.151.213 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 134.199.151.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 15:10:45.189179 2026] [security2:error] [pid 13559:tid 13579] [client 134.199.151.213:57192] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.ethniclivesmatter.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.ethniclivesmatter.com"] [uri "/debug.log"] [unique_id "apnGNbnrRZfjoZgnWEqM6gAAAQ8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
cmbplf
2026-09-03 17:14:02
(1 day ago)
202 requests with url.path *.php.bak
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-03 15:55:58
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 134.199.151.213 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 134.199.151.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 11:55:51.397663 2026] [security2:error] [pid 25948:tid 25948] [client 134.199.151.213:43008] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.hg/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.lakeviewbewdley.com"] [uri "/.hg/store/00manifest.i"] [unique_id "apmYh-ynPRQEThALdEj-sgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 15:37:28
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 134.199.151.213 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 134.199.151.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 11:37:19.700755 2026] [security2:error] [pid 6650:tid 6650] [client 134.199.151.213:53944] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.hg/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "incrp.org"] [uri "/.hg/store/00manifest.i"] [unique_id "apmULzOddmwCQ-1gZMxeawAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇿🇦
conure.sh
2026-09-03 14:13:31
(1 day ago)
csagent: score 20.2: 404 noise floor x1, wp-config backup grab x1, secrets grab x1; 1 domain(s) in 8 ...
show more
csagent: score 20.2: 404 noise floor x1, wp-config backup grab x1, secrets grab x1; 1 domain(s) in 8s
show less
Web App Attack
🇸🇪
vaia.cloud
2026-09-03 13:55:03
(1 day ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
🇵🇱
strefapi_com
2026-09-03 13:44:59
(1 day ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
Anonymous
2026-09-03 13:30:02
(1 day ago)
CrowdSec decision: crowdsecurity/http-crawl-non_statics (origin: crowdsec)
Port Scan
🇺🇸
TPI-Abuse
2026-09-03 13:23:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 134.199.151.213 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 134.199.151.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 09:23:27.038015 2026] [security2:error] [pid 31226:tid 31226] [client 134.199.151.213:55690] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.hg/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mordesign1.com"] [uri "/.hg/store/00manifest.i"] [unique_id "apl0z81kuqps0qMcRseVYAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
neckaralb-admin.de
2026-09-03 13:19:43
(1 day ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇺🇸
mnsf
2026-09-03 13:05:55
(1 day ago)
Abuse Detected (2)
Brute-Force
Web App Attack