๐ช๐ธ
Gem
2026-06-19 22:13:11
(2 months ago)
Unauthorized web scan.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:44:27
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.125.144.34 (34.144.125.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.125.144.34 (34.144.125.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:44:23.968367 2026] [security2:error] [pid 420:tid 420] [client 34.125.144.34:43156] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "insurance4you.agency.polish-boat-registration.com"] [uri "/frontend/.git/config"] [unique_id "ai9Y9-pHzJcptSsFEi-t2wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Dunham Support
2026-06-15 01:04:53
(3 months ago)
(mod_security) mod_security triggered on hostname [redacted] 34.125.144.34 (US/United States/34.144. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.125.144.34 (US/United States/34.144.125.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
mnsf
2026-06-15 00:17:20
(3 months ago)
Too many Status 40X (12)
Scanning/Probing (30)
Brute-Force
Web App Attack
๐บ๐ธ
kosada.com
2026-06-14 23:58:36
(3 months ago)
Web vulnerability probing: /laravel/.git/config
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-06-14 23:32:40
(3 months ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-14 23:03:22
(3 months ago)
20 attempts against mh_ha-misbehave-ban on kale
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:57:53
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.125.144.34 (34.144.125.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.125.144.34 (34.144.125.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:57:48.609321 2026] [security2:error] [pid 25925:tid 25955] [client 34.125.144.34:33126] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "booking.heworeblack.com"] [uri "/src/.git/config"] [unique_id "ai8x7PWLhT7Vi976L8318QAAAFA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
agenciahypelab.com.br
2026-06-14 22:53:50
(3 months ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
๐ณ๐ฑ
Savvii
2026-06-14 22:41:51
(3 months ago)
20 attempts against mh-misbehave-ban on sonic
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:19:59
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.125.144.34 (34.144.125.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.125.144.34 (34.144.125.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:19:53.299096 2026] [security2:error] [pid 5279:tid 5317] [client 34.125.144.34:33844] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.austindermatologist.com.aafm.us"] [uri "/assets/.git/config"] [unique_id "ai8pCY5ijdC8yFLdJIJlYAAAAQs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-14 22:15:23
(3 months ago)
Multiple WAF Violations
Web App Attack
๐จ๐ญ
4server
2026-06-14 21:29:27
(3 months ago)
[SunJun1423:29:22.3753572026][security2:error][pid4046624:tid4046810][client34.125.144.34:0]ModSecur ...
show more
[SunJun1423:29:22.3753572026][security2:error][pid4046624:tid4046810][client34.125.144.34:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"365\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"behindthemoon.ch\"][uri\"/wp-content/.git/config\"][unique_id\"ai8dMpf49hDZwfF_7QCXpAAAAJM\"]
show less
Hacking
Web App Attack
๐จ๐ญ
Origon
2026-06-14 21:18:09
(3 months ago)
http-sensitive-files - IP: 34.125.144.34 - time="2026-06-14T23:18:08+02:00" level=info msg="(555f66 ...
show more
http-sensitive-files - IP: 34.125.144.34 - time="2026-06-14T23:18:08+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 34.125.144.34 (US/396982) : 4h ban on Ip 34.125.144.34" module=db
show less
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-14 16:01:34
(3 months ago)
20 attempts against mh-misbehave-ban on flow
Brute-Force
Bad Web Bot
Web App Attack