๐ณ๐ฑ
e.fierstra
2026-09-24 08:40:19
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 05:49:41
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.102.40.87 (87.40.102.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.102.40.87 (87.40.102.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 01:49:33.722464 2026] [security2:error] [pid 25616:tid 25616] [client 34.102.40.87:52384] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cyberviews.club"] [uri "/htdocs/.git/config"] [unique_id "arS57UFjyC7x8Vqeo_zVbQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-09-24 05:05:20
(1 day ago)
10.217 requests from abuseipdb.com blacklisted IP (5mos2w3d)
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-24 03:41:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.102.40.87 (87.40.102.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.102.40.87 (87.40.102.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 23:41:15.482018 2026] [security2:error] [pid 22331:tid 22331] [client 34.102.40.87:49814] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.mikeneame.com"] [uri "/backend/.git/config"] [unique_id "arSb21cISqBZVJnnUocy_AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 03:15:26
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.102.40.87 (87.40.102.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.102.40.87 (87.40.102.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 23:15:19.503223 2026] [security2:error] [pid 26019:tid 26019] [client 34.102.40.87:54164] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.drbolen.com"] [uri "/wordpress/.git/config"] [unique_id "arSVx8E2knG6OFTujd57swAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Catalin Negru
2026-09-24 02:43:47
(1 day ago)
Recidive ban by fail2ban on server.blackbit.ro
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-24 01:53:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.102.40.87 (87.40.102.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.102.40.87 (87.40.102.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 21:53:15.509426 2026] [security2:error] [pid 19349:tid 19349] [client 34.102.40.87:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.dentguyvt.com"] [uri "/htdocs/.git/config"] [unique_id "arSCi-sN1Aw6raT7GcgzOwAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-24 00:40:06
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-23 22:03:36
(1 day ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-22.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
mnsf
2026-09-23 20:05:41
(1 day ago)
Scanning/Probing (24)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 19:37:12
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.102.40.87 (87.40.102.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.102.40.87 (87.40.102.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 15:37:04.692782 2026] [security2:error] [pid 18488:tid 18488] [client 34.102.40.87:60812] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cherith-bible-inst.org"] [uri "/wordpress/.git/config"] [unique_id "arQqYFBRy1z2QnWK58nZyQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-23 18:50:02
(1 day ago)
suspicious request in access.log
Web App Attack
๐ฉ๐ช
4server
2026-09-23 17:35:07
(1 day ago)
[WedSep2319:35:03.5734452026][security2:error][pid2506016:tid2506042][client34.102.40.87:0]ModSecuri ...
show more
[WedSep2319:35:03.5734452026][security2:error][pid2506016:tid2506042][client34.102.40.87:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"casacarmen.ch.136-243-54-122.cpanel.site\"][uri\"/www/.git/config\"][unique_id\"arQNx8H-V6CYhVvXSFIGxAAAAA8\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 17:02:28
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.102.40.87 (87.40.102.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.102.40.87 (87.40.102.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 13:02:20.646041 2026] [security2:error] [pid 10651:tid 10651] [client 34.102.40.87:49504] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "canarysuites.com"] [uri "/site/.git/config"] [unique_id "arQGHPzuh66sEPKagUAR_gAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 15:36:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.102.40.87 (87.40.102.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.102.40.87 (87.40.102.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 11:36:20.541068 2026] [security2:error] [pid 18740:tid 18740] [client 34.102.40.87:57196] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "burdetteconsulting.com"] [uri "/.git/config"] [unique_id "arPx9ORurLDwej_jbyeTKgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack