Anonymous
2026-07-01 04:35:57
(2 hours ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
Anonymous
2026-06-09 23:12:10
(3 weeks ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: AU, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: AU, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:04:15
(3 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 16:03:59
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.151.177.186 (186.177.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.177.186 (186.177.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 12:03:52.836423 2026] [security2:error] [pid 19679:tid 19679] [client 34.151.177.186:36382] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "civilwarzone.andrewrmarshall.com"] [uri "/.git/config"] [unique_id "aig5aDxoad4a7UsNjBnG-AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-09 13:18:14
(3 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 09:47:56
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.151.177.186 (186.177.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.177.186 (186.177.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:47:53.303521 2026] [security2:error] [pid 10239:tid 10239] [client 34.151.177.186:47508] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "diarrheawolves.com"] [uri "/.git/config"] [unique_id "aifhSS1_AKrrC6zMRqpyGQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 09:20:47
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.151.177.186 (186.177.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.177.186 (186.177.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:20:39.994325 2026] [security2:error] [pid 11586:tid 11642] [client 34.151.177.186:41276] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "g3-contracting.com"] [uri "/.git/config"] [unique_id "aifa5_A2RiFMSnMqb83WUgAAAFU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 09:02:08
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.151.177.186 (186.177.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.177.186 (186.177.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:02:05.009049 2026] [security2:error] [pid 17420:tid 17420] [client 34.151.177.186:47612] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.stfrancisbaytransfers.jbaycabs.com"] [uri "/.git/config"] [unique_id "aifWjdn19vdyAhVKia47SgAAADo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:55:08
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.151.177.186 (186.177.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.177.186 (186.177.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:55:01.963437 2026] [security2:error] [pid 20447:tid 20447] [client 34.151.177.186:49456] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.zaccarealestate.com.saadeh.ws"] [uri "/.git/config"] [unique_id "aifG1S8wIS-_Vqx69XcsUQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:05:51
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.151.177.186 (186.177.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.177.186 (186.177.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:05:46.646281 2026] [security2:error] [pid 24302:tid 24302] [client 34.151.177.186:53796] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ramoundos.com"] [uri "/.git/config"] [unique_id "aie7Su7VuyeNBe3PJ4OGDgAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-09 04:56:19
(3 weeks ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.151.177.186 (AU/Australia/186.177. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.151.177.186 (AU/Australia/186.177.151.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 04:39:44
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.151.177.186 (186.177.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.177.186 (186.177.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 00:39:36.381880 2026] [security2:error] [pid 9194:tid 9194] [client 34.151.177.186:42806] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.vitalityweb.com.backstore.com"] [uri "/.git/config"] [unique_id "aieZCKrOEYAil6YKivdn8QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-09 03:30:04
(3 weeks ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 01:47:18
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.151.177.186 (186.177.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.177.186 (186.177.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 21:47:12.696053 2026] [security2:error] [pid 21395:tid 21395] [client 34.151.177.186:57316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "treadbox.net"] [uri "/.git/config"] [unique_id "aidwoNLYUATvqNuuGnuiqAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
inlink.ltd
2026-06-09 01:15:15
(3 weeks ago)
dot file probe
Web App Attack