🇺🇸
TPI-Abuse
2026-09-07 21:27:27
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.15.137.78 (78.137.15.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.15.137.78 (78.137.15.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 17:27:23.148081 2026] [security2:error] [pid 22415:tid 22415] [client 34.15.137.78:35922] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "doctorhouse.ch"] [uri "/.git/config"] [unique_id "ap8sO6ADx8qjCEmV-e1AYwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
jm717
2026-09-07 14:59:00
(8 hours ago)
Excessive web requests, 404/403 errors
Web App Attack
🇦🇹
Starburst SysOp Team
2026-09-07 13:56:58
(9 hours ago)
Malware host detected by rbl.malware.expert. RBL lookup of 78.137.15.34.rbl.malware.expert succeeded ...
show more
Malware host detected by rbl.malware.expert. RBL lookup of 78.137.15.34.rbl.malware.expert succeeded at REMOTE_ADDR. (400010-vie6-1)
show less
Hacking
🇺🇸
TPI-Abuse
2026-09-07 10:01:41
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.15.137.78 (78.137.15.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.15.137.78 (78.137.15.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 06:01:36.012365 2026] [security2:error] [pid 3086:tid 3086] [client 34.15.137.78:45262] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dougwong.net"] [uri "/.git/config"] [unique_id "ap6LgOk9l0yq1rAgkdT08AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 08:52:56
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.15.137.78 (78.137.15.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.15.137.78 (78.137.15.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 04:52:52.114086 2026] [security2:error] [pid 17003:tid 17003] [client 34.15.137.78:48378] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "doubloonswap.com"] [uri "/.git/config"] [unique_id "ap57ZAk9HYmhdTir9Kp_nAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-07 08:14:51
(15 hours ago)
20 attempts against mh-misbehave-ban on ethyl
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-07 05:10:04
(18 hours ago)
| Suspicious URL access.
Web App Attack
Hacking
SQL Injection
🇺🇸
dot.mg
2026-09-07 05:05:03
(18 hours ago)
Bad behaviour
Web Spam
Anonymous
2026-09-07 04:44:42
(18 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 04:16:54
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.15.137.78 (78.137.15.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.15.137.78 (78.137.15.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 00:16:46.802930 2026] [security2:error] [pid 3891:tid 3891] [client 34.15.137.78:56502] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dossat.cl"] [uri "/.git/config"] [unique_id "ap46riZoyxrRj6e6mBWPlQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
aks4226
2026-09-07 03:54:37
(19 hours ago)
Bot search, attacking common web applications.
Web App Attack
🇺🇸
Charlesiv
2026-09-07 02:46:36
(20 hours ago)
Triggered Cloudflare WAF (firewallCustom) from TH.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Prot ...
show more
Triggered Cloudflare WAF (firewallCustom) from TH.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/1.1 (GET method)
Endpoint: /wp-login.php
Timestamp: 2026-09-07T02:03:59Z
Ray ID: a37223dddad4fd2c
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
show less
Bad Web Bot
Anonymous
2026-09-07 02:30:04
(21 hours ago)
CrowdSec decision: crowdsecurity/http-path-traversal-probing (origin: crowdsec)
Port Scan
🇫🇷
Octopuce
2026-09-07 02:02:40
(21 hours ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /api/.env /web/.env ...
Web App Attack
🇳🇱
Site.eu
2026-09-07 01:20:41
(22 hours ago)
Excessive 404/403 errors
Brute-Force