๐ฎ๐น
VHosting
2026-09-18 06:45:04
(1 hour ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ฎ๐ณ
evicky2002
2026-09-18 06:00:02
(1 hour ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ฌ๐ง
consul.to
2026-09-17 12:01:31
(19 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 11:19:06
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.165.9.1 (1.9.165.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.165.9.1 (1.9.165.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 07:19:03.446424 2026] [security2:error] [pid 12526:tid 12526] [client 34.165.9.1:52326] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "corchard.net"] [uri "/.git/config"] [unique_id "aqvMp36NUnVO5CAgk1cp7AAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-17 11:14:25
(20 hours ago)
Blocked by ModSec and CSF
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-17 10:20:05
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.165.9.1 (1.9.165.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.165.9.1 (1.9.165.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 06:19:59.916935 2026] [security2:error] [pid 18759:tid 18759] [client 34.165.9.1:50416] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "corangues.com"] [uri "/.git/config"] [unique_id "aqu-z__aCw22RufnELrpSAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 09:55:37
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.165.9.1 (1.9.165.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.165.9.1 (1.9.165.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 05:55:32.142434 2026] [security2:error] [pid 7457:tid 7457] [client 34.165.9.1:55108] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "coralseasbeach.com"] [uri "/.git/config"] [unique_id "aqu5FHXOp28eIJGZdOZqsgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-17 09:07:43
(22 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ฉ๐ช
neckaralb-admin.de
2026-09-17 08:30:30
(23 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 08:21:03
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.165.9.1 (1.9.165.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.165.9.1 (1.9.165.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 04:20:55.853728 2026] [security2:error] [pid 21663:tid 21663] [client 34.165.9.1:59088] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cor-ex.com"] [uri "/.git/config"] [unique_id "aqui53deTugdI3a2YIsfogAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-17 08:13:21
(23 hours ago)
Automated web vulnerability and path enumeration scan with excessive 404 requests
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 02:20:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.165.9.1 (1.9.165.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.165.9.1 (1.9.165.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 22:20:42.730434 2026] [security2:error] [pid 8649:tid 8649] [client 34.165.9.1:46056] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "haroparke.com"] [uri "/.git/config"] [unique_id "aqtOelpaQ4KFupH-aZz_YgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-16 20:31:00
(1 day ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-16 15:45:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.165.9.1 (1.9.165.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.165.9.1 (1.9.165.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:45:47.665545 2026] [security2:error] [pid 16499:tid 16499] [client 34.165.9.1:50692] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cmexico.co"] [uri "/.git/config"] [unique_id "aqq5q_d42nn8001K9AUb1AAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 15:14:02
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.165.9.1 (1.9.165.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.165.9.1 (1.9.165.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:13:56.332165 2026] [security2:error] [pid 16936:tid 16936] [client 34.165.9.1:41968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cmc4president.homebuilt.org"] [uri "/.git/config"] [unique_id "aqqyNBf80KwJ1J1MhrAyJgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack