๐ฉ๐ช
s@ch@
2026-09-27 05:30:02
(2 days ago)
Jail: plesk-modsecurity | Web application attack (Plesk ModSecurity)
Web App Attack
๐ณ๐ฑ
ConsulHosting
2026-09-27 04:48:08
(2 days ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 00:43:34
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.101.161.132 (132.161.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.161.132 (132.161.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 20:43:29.304018 2026] [security2:error] [pid 32301:tid 32301] [client 34.101.161.132:34516] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.white-westinghouse.pamplonaserviciotecnico.com"] [uri "/.git/config"] [unique_id "arhmsa9H-m274FiyNSnPAAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 14:57:19
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.101.161.132 (132.161.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.161.132 (132.161.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 10:57:15.049409 2026] [security2:error] [pid 28439:tid 28439] [client 34.101.161.132:39244] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.bigheartskitchen.com"] [uri "/.git/config"] [unique_id "arfdS1n-QfMD1YR_ZycwjQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-09-26 12:16:26
(3 days ago)
(mod_security) mod_security (id:949110) triggered by 34.101.161.132 (ID/Indonesia/132.161.101.34.bc. ...
show more
(mod_security) mod_security (id:949110) triggered by 34.101.161.132 (ID/Indonesia/132.161.101.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐ฌ๐ง
consul.to
2026-09-26 10:37:15
(3 days ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-09-26 10:02:03
(3 days ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ณ๐ฑ
i-turnradio.nl
2026-09-25 22:28:02
(4 days ago)
2026-09-26 @ 00:27:48 (CET) ~ Blocked for trying to access: /.env.local
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-25 20:35:03
(4 days ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
Anonymous
2026-09-24 19:53:45
(5 days ago)
[Drupal AbuseIPDB module] Request path is blacklisted. /wp-admin/phpinfo.php
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-22 14:44:53
(1 week ago)
cloudlinux2 fail2ban: 2026-09-22 16:09:06,816 fail2ban.filter [1598]: INFO [recidive] Fou ...
show more
cloudlinux2 fail2ban: 2026-09-22 16:09:06,816 fail2ban.filter [1598]: INFO [recidive] Found 130.164.167.92 - 2026-09-22 16:09:06cloudlinux2 fail2ban: 2026-09-22 16:09:06,810 fail2ban.actions [1598]: NOTICE [plesk-modsecurity] Ban 130.164.167.92cloudlinux2 fail2ban: 2026-09-22 16:09:06,655 fail2ban.filter [1598]: INFO [plesk-modsecurity] Found 130.164.167.92 - 2026-09-22 16:09:06cloudlinux2 fail2ban: 2026-09-22 16:12:07,389 fail2ban.filter [1598]: INFO [plesk-wordpress] Found 86.46.62.80 - 2026-09-22 16:12:07cloudlinux2 fail2ban: 2026-09-22 16:12:14,270 fail2ban.actions [1598]: NOTICE [plesk-modsecurity] Unban 156.199.201.214cloudlinux2 fail2ban: 2026-09-22 16:13:03,413 fail2ban.filter [1598]: INFO [plesk-modsecurity] Found 34.101.161.132 - 2026-09-22 16:13:03cloudlinux2 fail2ban: 2026-09-22 16:13:03,274 fail2ban.filter [1598]: INFO [plesk-modsecurity] Found 34.101.161.132 - 2026-09-22 16:13:03cloudlinux2 fail2ban: 2026-09-22 16:13:01,544 f
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-22 03:51:11
(1 week ago)
Excessive multi-domain requests
Brute-Force
๐ง๐ช
cmbplf
2026-09-22 03:30:30
(1 week ago)
5.326 requests with url.path *.env
Brute-Force
Bad Web Bot
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-22 00:59:02
(1 week ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-21 23:53:27
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.161.132 (132.161.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.161.132 (132.161.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 19:53:21.733156 2026] [security2:error] [pid 6972:tid 7127] [client 34.101.161.132:50624] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wigglebottomsnax.anthonydalessandro.com"] [uri "/.git/config"] [unique_id "arHDccS2bjhzdx6Bg7s15AAAAMo"]
show less
Brute-Force
Bad Web Bot
Web App Attack