🇫🇷
masterguru
2026-09-06 05:47:08
(7 hours ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 34.128.127.105 (ID/Indonesia/105.127.128.34.bc ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 34.128.127.105 (ID/Indonesia/105.127.128.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-196)
show less
Hacking
🇮🇹
CoreTech srl
2026-09-05 22:23:56
(14 hours ago)
cloudlinux2 fail2ban: 2026-09-06 00:18:51,012 fail2ban.filter [1594]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-09-06 00:18:51,012 fail2ban.filter [1594]: INFO [plesk-wordpress] Found 103.190.47.41 - 2026-09-06 00:18:49cloudlinux2 fail2ban: 2026-09-06 00:19:16,065 fail2ban.actions [1594]: NOTICE [plesk-modsecurity] Unban 34.7.157.39cloudlinux2 fail2ban: 2026-09-06 00:19:33,416 fail2ban.filter [1594]: INFO [plesk-modsecurity] Found 34.128.127.105 - 2026-09-06 00:19:33cloudlinux2 fail2ban: 2026-09-06 00:19:33,608 fail2ban.filter [1594]: INFO [plesk-modsecurity] Found 34.128.127.105 - 2026-09-06 00:19:33cloudlinux2 fail2ban: 2026-09-06 00:19:33,499 fail2ban.filter [1594]: INFO [plesk-modsecurity] Found 34.128.127.105 - 2026-09-06 00:19:33cloudlinux2 fail2ban: 2026-09-06 00:19:33,487 fail2ban.filter [1594]: INFO [plesk-modsecurity] Found 34.128.127.105 - 2026-09-06 00:19:33cloudlinux2 fail2ban: 2026-09-06 00:19:34,100 fail2ban.actions [1594]: NOTICE [plesk-modsecurity] Ban 34.128.127.105cloudlinux2 fail2ban: 2026-09-06 00:19:3
show less
Web App Attack
Anonymous
2026-09-05 21:20:18
(16 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇳🇱
Savvii
2026-09-05 06:31:59
(1 day ago)
15 attempts against mh-modsecurity-ban on shelf
Brute-Force
Web App Attack
🇧🇪
cmbplf
2026-09-04 22:06:29
(1 day ago)
228 requests with url.path *.sql.gz
Brute-Force
Bad Web Bot
🇳🇱
Cloud86 B.V.
2026-09-03 04:13:02
(3 days ago)
categories: DDoS Attack
DDoS Attack
🇳🇱
Cloud86 B.V.
2026-09-02 02:13:03
(4 days ago)
categories: DDoS Attack
DDoS Attack
🇳🇱
homeshowdomain.nl
2026-06-13 22:07:17
(2 months ago)
Auto-ban: >3000 req/min op 2026-06-13
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-06-13 16:39:29
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 34.128.127.105 (105.127.128.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.127.105 (105.127.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 12:39:25.847090 2026] [security2:error] [pid 13603:tid 13609] [client 34.128.127.105:55382] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.advantageplusfranchisor.richardleeweatherman.com"] [uri "/.git/config"] [unique_id "ai2HvRAlc3cHHTVL-m7gJgAAAQE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
big-cloud.nl
2026-06-13 15:11:37
(2 months ago)
Try to access /.git/config
Web App Attack
🇩🇪
FeG Deutschland
2026-06-13 15:10:23
(2 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-06-13 13:37:26
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 34.128.127.105 (105.127.128.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.127.105 (105.127.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 09:37:19.548977 2026] [security2:error] [pid 22366:tid 22376] [client 34.128.127.105:47098] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.royalmanagementsociety.com.aafm.us"] [uri "/.git/config"] [unique_id "ai1dD9L2eeOL_jRd6a9_PgAAAMc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
IVski.com
2026-06-13 13:37:19
(2 months ago)
IVski WAF | Sensitive file probe detected - looking for .git
Port Scan
Brute-Force
Web App Attack
🇩🇪
Darki1962
2026-06-13 12:35:01
(2 months ago)
Blocked by os-abuseipdb; 12 hits, proto=tcp, ports=443,80
Port Scan
Hacking
Brute-Force
🇺🇸
TPI-Abuse
2026-06-13 11:04:32
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 34.128.127.105 (105.127.128.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.127.105 (105.127.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 07:04:26.943193 2026] [security2:error] [pid 14360:tid 14360] [client 34.128.127.105:51728] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.theburiednews.com.thinkingepic.com"] [uri "/.git/config"] [unique_id "ai05OqDevbcOhJjoT9iU1AAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack