๐บ๐ธ
TPI-Abuse
2026-09-21 00:56:31
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.154.47.8 (8.47.154.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.47.8 (8.47.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 20:56:25.129164 2026] [security2:error] [pid 11823:tid 11823] [client 34.154.47.8:52128] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arsndetx.com"] [uri "/.git/config"] [unique_id "arCAuW1I4rMG2btnsmklUAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 23:59:13
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.154.47.8 (8.47.154.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.47.8 (8.47.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 19:59:07.041977 2026] [security2:error] [pid 31951:tid 31951] [client 34.154.47.8:35768] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arsenalfordemocracy.com"] [uri "/.git/config"] [unique_id "arBzS-k3rtF7VQwS9Sk3BQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Tha_14
2026-09-20 23:18:49
(5 days ago)
Multiple erroneous requests
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 22:56:41
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.154.47.8 (8.47.154.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.47.8 (8.47.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 18:56:32.921798 2026] [security2:error] [pid 32448:tid 32481] [client 34.154.47.8:49840] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arrowsinthequiver.com"] [uri "/.git/config"] [unique_id "arBkoBdQU6CN1L9_YXsnlQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 21:39:45
(5 days ago)
[server.tmg.gr] httpd-config-scan: sites=www.arrhythmiasinstitute.gr; logs=/var/log/httpd/domains/ar ...
show more
[server.tmg.gr] httpd-config-scan: sites=www.arrhythmiasinstitute.gr; logs=/var/log/httpd/domains/arrhythmiasinstitute.gr.log; samples=/.git/config | /.env | /.env.local
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 20:54:22
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.154.47.8 (8.47.154.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.47.8 (8.47.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 16:54:16.065646 2026] [security2:error] [pid 27723:tid 27723] [client 34.154.47.8:52776] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arrasmithquill.com"] [uri "/.git/config"] [unique_id "arBH-PvFvDjU0SYUYTmJpQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
webanyone
2026-09-20 20:47:52
(5 days ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
Anonymous
2026-09-20 20:10:03
(5 days ago)
suspicious request in access.log
Web App Attack
๐ซ๐ฎ
YF
2026-09-20 20:00:37
(5 days ago)
Distributed subnet attack โ coordinated scanning from multiple IPs in the same /24
DDoS Attack
Web App Attack
Anonymous
2026-09-20 19:48:35
(5 days ago)
Banned by Fail2Ban on server
Web App Attack
๐ฉ๐ช
LRob
2026-09-20 19:13:56
(5 days ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config (+17 more) | 2026-09-20 19:13 UTC
show less
Hacking
Web App Attack
๐ท๐ด
clauss
2026-09-20 17:18:30
(5 days ago)
34.154.47.8 - - [20/Sep/2026:20:18:29 +0300] "GET /phpinfo.php HTTP/2.0" 403 0 "-" "Mozilla/5.0 (Mac ...
show more
34.154.47.8 - - [20/Sep/2026:20:18:29 +0300] "GET /phpinfo.php HTTP/2.0" 403 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.154.47.8 - - [20/Sep/2026:20:18:29 +0300] "GET /info.php HTTP/2.0" 301 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 17:03:35
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.154.47.8 (8.47.154.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.47.8 (8.47.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 13:03:27.423164 2026] [security2:error] [pid 17673:tid 17673] [client 34.154.47.8:43800] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aromatherapyricebags.com"] [uri "/.git/config"] [unique_id "arAR3-dEquJZtY5_Hw5Y5gAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 15:45:13
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.154.47.8 (8.47.154.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.47.8 (8.47.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 11:45:08.706599 2026] [security2:error] [pid 31162:tid 31162] [client 34.154.47.8:43008] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arofish.us"] [uri "/.git/config"] [unique_id "aq__hIENL-5GwofONZnxOwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 15:39:10
(5 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking