🇫🇷
Little Iguana
2026-09-12 11:00:56
(16 hours ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
🇫🇷
Catalin Negru
2026-09-12 05:39:53
(21 hours ago)
Recidive ban by fail2ban on server.blackbit.ro
Brute-Force
🇫🇷
Catalin Negru
2026-09-08 19:07:49
(4 days ago)
Recidive ban by fail2ban on server.blackbit.ro
Brute-Force
🇺🇸
TPI-Abuse
2026-09-05 15:14:50
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.154.252.188 (188.252.154.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.252.188 (188.252.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 11:14:45.160954 2026] [security2:error] [pid 2952:tid 2967] [client 34.154.252.188:48110] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.annthornycroft.com"] [uri "/.git/config"] [unique_id "apwx5atA3Hhb7YIrmc7zLgAAAI0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
curiosity
2026-09-05 11:06:24
(1 week ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-admin-interface-probing
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-05 04:19:08
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.154.252.188 (188.252.154.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.252.188 (188.252.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 00:19:03.847679 2026] [security2:error] [pid 12670:tid 12670] [client 34.154.252.188:46370] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.advantstudio.com"] [uri "/.git/config"] [unique_id "apuYN9p8m416jUF9h3bH-QAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 03:10:21
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.154.252.188 (188.252.154.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.252.188 (188.252.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 23:10:14.180192 2026] [security2:error] [pid 23678:tid 23678] [client 34.154.252.188:45192] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.adamsclothiers.com"] [uri "/.git/config"] [unique_id "apuIFgKz7L4Com2ACAfdKQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 02:37:56
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.154.252.188 (188.252.154.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.252.188 (188.252.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 22:37:48.329820 2026] [security2:error] [pid 16196:tid 16196] [client 34.154.252.188:33364] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.acraloc.com"] [uri "/.git/config"] [unique_id "apuAfNl_xkJXHsGJtcsVaQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 01:34:31
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.154.252.188 (188.252.154.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.252.188 (188.252.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 21:34:24.389987 2026] [security2:error] [pid 15813:tid 15817] [client 34.154.252.188:53014] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.absurdotron.com"] [uri "/.git/config"] [unique_id "aptxoBv8Pi_bf3qDMBqaFQAAAQI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
Rocky Mountain Bioengineering Symposium
2026-09-05 01:34:17
(1 week ago)
[Fri Sep 04 19:34:12.441022 2026] [authz_core:error] [pid 2247:tid 139765793703488] [client 34.154.2 ...
show more
[Fri Sep 04 19:34:12.441022 2026] [authz_core:error] [pid 2247:tid 139765793703488] [client 34.154.252.188:33534] AH01630: client denied by server configuration: /var/www/horde/.env.bak
[Fri Sep 04 19:34:17.264872 2026] [authz_core:error] [pid 2247:tid 139765986735680] [client 34.154.252.188:33534] AH01630: client denied by server configuration: /var/www/horde/.env.dist
[Fri Sep 04 19:34:17.379005 2026] [authz_core:error] [pid 2247:tid 139766112626240] [client 34.154.252.188:33534] AH01630: client denied by server configuration: /var/www/horde/.env.swp
...
show less
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-05 00:58:19
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.154.252.188 (188.252.154.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.252.188 (188.252.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 20:58:16.039722 2026] [security2:error] [pid 3816:tid 3816] [client 34.154.252.188:60948] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.abdulhameeds.art"] [uri "/.git/config"] [unique_id "aptpKAv6wPQeZyA1dDQXVQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
ca
2026-09-04 23:32:28
(1 week ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 22:39:27
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.154.252.188 (188.252.154.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.252.188 (188.252.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 18:39:23.538760 2026] [security2:error] [pid 2875:tid 2875] [client 34.154.252.188:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.365soft.top"] [uri "/.git/config"] [unique_id "aptIm-lsP28LkDozxNeSnAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 21:44:28
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.154.252.188 (188.252.154.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.252.188 (188.252.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:44:20.706551 2026] [security2:error] [pid 23951:tid 23951] [client 34.154.252.188:33776] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.179vfs.com"] [uri "/.git/config"] [unique_id "aps7tIG_nNe371xImG33mQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 21:07:50
(1 week ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack