🇩🇪
ut-addicted.com
2026-09-10 04:22:41
(2 hours ago)
\[Thu Sep 10 06:22:39.508975 2026\] \[:error\] \[pid 23929:tid 140352503629568\] \[client 34.174.10. ...
show more
\[Thu Sep 10 06:22:39.508975 2026\] \[:error\] \[pid 23929:tid 140352503629568\] \[client 34.174.10.203:49046\] \[client 34.174.10.203\] ModSecurity: Access denied with code 403 \(phase 2\). Operator GE matched 5 at TX:anomaly_score. \[file "/usr/local/apache/modsecurity-owasp-latest/rules/REQUEST-949-BLOCKING-EVALUATION.conf"\] \[line "57"\] \[id "949110"\] \[msg "Inbound Anomaly Score Exceeded \(Total Score: 10\)"\] \[severity "CRITICAL"\] \[tag "application-multi"\] \[tag "language-multi"\] \[tag "platform-multi"\] \[tag "attack-generic"\] \[hostname "ut-addicted.com"\] \[uri "/"\] \[unique_id "aqIwj0n0UCOqkSkA6o8c@QAAAMw"\]
show less
Brute-Force
Web App Attack
🇺🇸
mnsf
2026-09-10 01:05:34
(5 hours ago)
Abuse Detected (9)
Brute-Force
Web App Attack
Anonymous
2026-09-10 00:11:48
(6 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇳🇱
Site.eu
2026-09-09 23:58:55
(6 hours ago)
Excessive 404/403 errors
Brute-Force
🇦🇺
2000cn.com.au
2026-09-09 23:46:12
(6 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
SodaAudit.app
2026-09-09 23:37:49
(6 hours ago)
[sodaaudit.app] Web app attack. Timestamp: 2026-09-09T19:50:07.000Z. 3 probe events, 3 distinct path ...
show more
[sodaaudit.app] Web app attack. Timestamp: 2026-09-09T19:50:07.000Z. 3 probe events, 3 distinct path(s). Paths (payload): /.env.bak, /.env, /.git/config
show less
Web App Attack
🇺🇸
mnsf
2026-09-09 22:05:25
(8 hours ago)
Scanning/Probing (12)
Brute-Force
Web App Attack
🇫🇷
Octopuce
2026-09-09 18:30:32
(11 hours ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
🇨🇭
ALPHANET
2026-09-09 18:29:57
(11 hours ago)
web exploits
Hacking
Exploited Host
Web App Attack
🇩🇪
BlueWire Hosting
2026-09-09 14:11:51
(16 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 13:53:50
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.174.10.203 (203.10.174.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.174.10.203 (203.10.174.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 09:53:45.577221 2026] [security2:error] [pid 2202:tid 2202] [client 34.174.10.203:58180] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "patrickodougherty.com"] [uri "/.git/config"] [unique_id "aqFk6fk-pXgzOS-rqsQvGQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 13:15:25
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.174.10.203 (203.10.174.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.174.10.203 (203.10.174.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 09:15:19.191113 2026] [security2:error] [pid 23721:tid 23721] [client 34.174.10.203:59954] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "patrickmedd.com"] [uri "/.git/config"] [unique_id "aqFb5ySVA5fY61hBWzn0rwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 11:57:48
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.174.10.203 (203.10.174.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.174.10.203 (203.10.174.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 07:57:42.778362 2026] [security2:error] [pid 6996:tid 6996] [client 34.174.10.203:54310] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "patrickjolly.us"] [uri "/.git/config"] [unique_id "aqFJtn0925S4CxCMo4yinAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-09-09 10:45:04
(19 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 09:41:58
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.174.10.203 (203.10.174.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.174.10.203 (203.10.174.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 05:41:54.571530 2026] [security2:error] [pid 26107:tid 26107] [client 34.174.10.203:37836] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "patrickconklin.com"] [uri "/.git/config"] [unique_id "aqEp4rjjK0g2lYse8tJsjQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack