๐ฉ๐ช
dbmwebdesign
2026-10-05 01:05:18
(1 day ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 00:04:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.175.194.153 (153.194.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.194.153 (153.194.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 20:04:48.342811 2026] [security2:error] [pid 1075:tid 1075] [client 34.175.194.153:56910] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "elevateworksin.com"] [uri "/.git/config"] [unique_id "asLpoMFuJD_ifO7r75dsDQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-04 22:36:49
(1 day ago)
34.175.194.153 - - [04/Oct/2026:17:36:47 -0500] "GET /.env HTTP/1.1" 403 199 "-" "Mozilla/5.0 (X11; ...
show more
34.175.194.153 - - [04/Oct/2026:17:36:47 -0500] "GET /.env HTTP/1.1" 403 199 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 34.175.194.153
34.175.194.153 - - [04/Oct/2026:17:36:48 -0500] "GET /.env.local HTTP/1.1" 403 199 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 34.175.194.153
34.175.194.153 - - [04/Oct/2026:17:36:48 -0500] "GET /.env.production HTTP/1.1" 403 199 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 34.175.194.153
34.175.194.153 - - [04/Oct/2026:17:36:48 -0500] "GET /.env.staging HTTP/1.1" 403 199 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 34.175.194.153
34.175.194.153 - - [04/Oct/2026:17:36:48 -0500] "GET /.env.development HTTP/1.1" 403 199 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-04 21:16:28
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.175.194.153 (153.194.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.194.153 (153.194.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 17:16:23.536433 2026] [security2:error] [pid 17551:tid 17590] [client 34.175.194.153:51144] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "elevapro.com"] [uri "/.git/config"] [unique_id "asLCJ2-0uWHGT06zKDKxvQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-10-04 21:09:16
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-10-04 21:00:22
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
Stara
2026-10-04 20:41:17
(1 day ago)
ModSecurity detected web attack - .env/config probing or SQLi/Code injection (Rule 949110)
Brute-Force
Hacking
Web App Attack
๐ฎ๐น
VHosting
2026-10-04 20:30:03
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-10-04 19:35:02
(1 day ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-04 19:11:56
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.175.194.153 (153.194.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.194.153 (153.194.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 15:11:49.059447 2026] [security2:error] [pid 10250:tid 10250] [client 34.175.194.153:60466] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "elessenux.com"] [uri "/.git/config"] [unique_id "asKk9VH-2i2b-oJepcpGGAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-04 18:57:21
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ฉ๐ช
joharikop
2026-10-04 17:50:04
(1 day ago)
Nginx: credential/secret file probe (/.env, /.git, /.aws etc). Automated ban via fail2ban nginx-cred ...
show more
Nginx: credential/secret file probe (/.env, /.git, /.aws etc). Automated ban via fail2ban nginx-credential-probes jail.
show less
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-10-04 17:47:07
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-21 10:00:06
(2 weeks ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-21 09:56:04
(2 weeks ago)
Excessive 404/403 errors
Brute-Force