🇺🇸
Major Hostility
2026-09-11 14:00:54
(1 day ago)
"GET /.git/config HTTP/1.1" 404
"GET /.env HTTP/1.1" 404
"GET /.env.local HTTP/1.1" 404
"GET /.env.p ...
show more
"GET /.git/config HTTP/1.1" 404
"GET /.env HTTP/1.1" 404
"GET /.env.local HTTP/1.1" 404
"GET /.env.production HTTP/1.1" 404
"GET /.env.staging HTTP/1.1" 404
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 12:30:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.154.42.160 (160.42.154.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.42.160 (160.42.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 08:30:28.838830 2026] [security2:error] [pid 25222:tid 25250] [client 34.154.42.160:51226] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "artbox.cibernetic.com"] [uri "/.git/config"] [unique_id "aqP0ZMHEq1sdBTInohXRmgAAAZg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 12:11:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.154.42.160 (160.42.154.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.42.160 (160.42.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 08:11:45.107139 2026] [security2:error] [pid 24800:tid 24800] [client 34.154.42.160:39442] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "artattackgraphics.com"] [uri "/.git/config"] [unique_id "aqPwAT-oG8DBbqfdxpVrGgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 10:42:08
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.154.42.160 (160.42.154.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.42.160 (160.42.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 06:42:00.920184 2026] [security2:error] [pid 11894:tid 11894] [client 34.154.42.160:57408] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "art.drjaymissdiana.com"] [uri "/.git/config"] [unique_id "aqPa-Jb5LGkP7NkS98KnGgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Mangelot Hosting
2026-09-11 09:07:47
(1 day ago)
(modsecurity) srv101 ModSecurity 34.154.42.160 (IT/Italy/160.42.154.34.bc.googleusercontent.com): 30 ...
show more
(modsecurity) srv101 ModSecurity 34.154.42.160 (IT/Italy/160.42.154.34.bc.googleusercontent.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
🇯🇵
beon
2026-09-11 08:53:11
(1 day ago)
[DateTime=>2026-09-11T08:53:11Z to 2026-09-11T08:55:10Z (UTC)] , [HoneyPot_Hits=>430 times] , [Honey ...
show more
[DateTime=>2026-09-11T08:53:11Z to 2026-09-11T08:55:10Z (UTC)] , [HoneyPot_Hits=>430 times] , [HoneyPots=>/.git/config, /.env, /.env.local, /.env.production, /.env.staging, /.env.development and others] , [404targets=>/pi.php, /pinfo.php, /phpinfo, /test/phpinfo.php, /dev/phpinfo.php, /old/phpinfo.php and others] , [total_Hits=>552 times] , [hit_per_second=>4.63] , [Keyword=>WordPress, Joomla, Laravel]
show less
Bad Web Bot
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-11 08:04:00
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.154.42.160 (160.42.154.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.42.160 (160.42.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 04:03:54.387276 2026] [security2:error] [pid 22844:tid 22844] [client 34.154.42.160:50752] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arsndetx.com"] [uri "/.git/config"] [unique_id "aqO16jHqyeB5UQLmLig3qgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 07:04:58
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.154.42.160 (160.42.154.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.42.160 (160.42.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 03:04:50.388569 2026] [security2:error] [pid 6510:tid 6510] [client 34.154.42.160:55582] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arsenalfordemocracy.com"] [uri "/.git/config"] [unique_id "aqOoEqOnrEN64BOwWMuTOAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Tha_14
2026-09-11 06:23:36
(1 day ago)
Multiple erroneous requests
Web App Attack
🇳🇱
ConsulHosting
2026-09-11 06:18:11
(1 day ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 06:01:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.154.42.160 (160.42.154.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.42.160 (160.42.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 02:01:22.114308 2026] [security2:error] [pid 20417:tid 20436] [client 34.154.42.160:40050] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arrowsinthequiver.com"] [uri "/.git/config"] [unique_id "aqOZMrOJb6H3RlG4041F6QAAAQ0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 05:14:46
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.154.42.160 (160.42.154.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.42.160 (160.42.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 01:14:40.129179 2026] [security2:error] [pid 2601:tid 2601] [client 34.154.42.160:35816] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arroceraomoa.com"] [uri "/.git/config"] [unique_id "aqOOQFsYATHVS6o3PKuZ9AAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
cmbplf
2026-09-11 04:38:17
(1 day ago)
1.570 requests with url.path *phpinfo.php
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-11 03:57:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.154.42.160 (160.42.154.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.42.160 (160.42.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 23:57:16.727196 2026] [security2:error] [pid 28696:tid 28696] [client 34.154.42.160:48438] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arrasmithquill.com"] [uri "/.git/config"] [unique_id "aqN8HBuYmjX_me6Xw6l99wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
webanyone
2026-09-11 03:47:18
(1 day ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack