๐ณ๐ฑ
homeshowdomain.nl
2026-09-20 21:59:17
(1 day ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-19.
show less
Web App Attack
SSH
Hacking
Anonymous
2026-09-20 07:06:49
(2 days ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: FR, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: FR, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 13:43:45
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.163.245.125 (125.245.163.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.163.245.125 (125.245.163.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 09:43:39.997876 2026] [security2:error] [pid 25517:tid 25517] [client 34.163.245.125:59702] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gracefaerie.com"] [uri "/.git/config"] [unique_id "aq6Ri1gayM7VybTJsR4hHQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 13:09:35
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.163.245.125 (125.245.163.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.163.245.125 (125.245.163.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 09:09:29.072054 2026] [security2:error] [pid 30961:tid 30985] [client 34.163.245.125:35576] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gqsi.org"] [uri "/.git/config"] [unique_id "aq6JiT5kjJgyT1z1oqMCswAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
antlac1
2026-09-19 12:28:21
(2 days ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-19 11:58:56
(2 days ago)
cloudlinux2 fail2ban: 2026-09-19 13:54:37,023 fail2ban.filter [1813]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-09-19 13:54:37,023 fail2ban.filter [1813]: INFO [plesk-wordpress] Found 173.239.211.72 - 2026-09-19 13:54:36cloudlinux2 fail2ban: 2026-09-19 13:54:36,836 fail2ban.filter [1813]: INFO [plesk-wordpress] Found 63.135.161.140 - 2026-09-19 13:54:36cloudlinux2 fail2ban: 2026-09-19 13:56:06,203 fail2ban.filter [1813]: INFO [plesk-wordpress] Found 125.161.31.222 - 2026-09-19 13:56:05cloudlinux2 fail2ban: 2026-09-19 13:56:18,955 fail2ban.filter [1813]: INFO [plesk-modsecurity] Found 103.209.141.238 - 2026-09-19 13:56:18cloudlinux2 fail2ban: 2026-09-19 13:56:41,255 fail2ban.filter [1813]: INFO [plesk-wordpress] Found 78.57.214.252 - 2026-09-19 13:56:40cloudlinux2 fail2ban: 2026-09-19 13:57:57,287 fail2ban.filter [1813]: INFO [plesk-wordpress] Found 67.113.149.203 - 2026-09-19 13:57:57cloudlinux2 fail2ban: 2026-09-19 13:58:09,212 fail2ban.filter [1813]: INFO [plesk-modsecurity] Found 34.163.245.125 - 2026-09-19 13:58:
show less
Web App Attack
๐ฉ๐ช
iNetWorker
2026-09-19 11:43:29
(2 days ago)
trolling for resource vulnerabilities
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-19 11:12:05
(2 days ago)
Excessive multi-domain requests
Brute-Force
๐ฎ๐น
CoreTech srl
2026-09-19 10:38:56
(2 days ago)
cloudlinux2 fail2ban: 2026-09-19 12:34:44,484 fail2ban.filter [1813]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-19 12:34:44,484 fail2ban.filter [1813]: INFO [plesk-modsecurity] Found 94.202.103.229 - 2026-09-19 12:34:44cloudlinux2 fail2ban: 2026-09-19 12:35:29,344 fail2ban.filter [1813]: INFO [plesk-modsecurity] Found 34.163.245.125 - 2026-09-19 12:35:29cloudlinux2 fail2ban: 2026-09-19 12:35:29,624 fail2ban.filter [1813]: INFO [plesk-modsecurity] Found 34.163.245.125 - 2026-09-19 12:35:29cloudlinux2 fail2ban: 2026-09-19 12:35:29,796 fail2ban.filter [1813]: INFO [plesk-modsecurity] Found 34.163.245.125 - 2026-09-19 12:35:29cloudlinux2 fail2ban: 2026-09-19 12:35:29,823 fail2ban.actions [1813]: NOTICE [plesk-modsecurity] Ban 34.163.245.125cloudlinux2 fail2ban: 2026-09-19 12:35:29,772 fail2ban.filter [1813]: INFO [plesk-modsecurity] Found 34.163.245.125 - 2026-09-19 12:35:29cloudlinux2 fail2ban: 2026-09-19 12:35:29,691 fail2ban.filter [1813]: INFO [plesk-modsecurity] Found 34.163.245.125 - 2026-09-19 12:35:29cloudlinux2
show less
Brute-Force
๐ซ๐ฎ
paissangroup
2026-09-19 09:48:00
(2 days ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 09:38:15
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.163.245.125 (125.245.163.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.163.245.125 (125.245.163.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 05:38:09.399499 2026] [security2:error] [pid 8300:tid 8300] [client 34.163.245.125:60698] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "castelan.anxo.org"] [uri "/.git/config"] [unique_id "aq5YASbZOuMBWMm_q4TU5wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-19 09:36:59
(3 days ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config (+7 more) | 2026-09-19 09:36 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 09:22:32
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.163.245.125 (125.245.163.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.163.245.125 (125.245.163.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 05:22:24.410460 2026] [security2:error] [pid 5910:tid 5997] [client 34.163.245.125:45858] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "castaspell.com"] [uri "/.git/config"] [unique_id "aq5UUJcSDqjRgzzSctAFXgAAAE8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-19 09:20:01
(3 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-09-19 09:11:58
(3 days ago)
Multiple WAF Violations
Web App Attack