🇩🇪
iNetWorker
2026-09-12 20:42:29
(2 hours ago)
trolling for resource vulnerabilities
Web App Attack
🇬🇧
Apache
2026-09-12 18:19:14
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.181.158.180 (US/United States/180.158.181.34 ...
show more
(mod_security) mod_security (id:210492) triggered by 34.181.158.180 (US/United States/180.158.181.34.bc.googleusercontent.com): 5 in the last 300 secs
show less
Brute-Force
Web App Attack
Anonymous
2026-09-12 18:13:47
(4 hours ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
🇩🇪
dbmwebdesign
2026-09-12 17:35:04
(5 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 16:58:06
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.181.158.180 (180.158.181.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.181.158.180 (180.158.181.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 12:58:01.960374 2026] [security2:error] [pid 2690:tid 2690] [client 34.181.158.180:49192] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "industrialovens.us.daveweisman.com"] [uri "/.git/config"] [unique_id "aqWEmYVq5g5dG8_8HwrDGwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-12 16:42:11
(6 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇧🇪
voormedia
2026-09-12 16:31:09
(6 hours ago)
Accessed trap at '/.git/config'
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 13:44:28
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.181.158.180 (180.158.181.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.181.158.180 (180.158.181.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 09:44:21.972917 2026] [security2:error] [pid 30693:tid 30693] [client 34.181.158.180:34858] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "indoorfreeflight.com"] [uri "/.git/config"] [unique_id "aqVXNaIBvztzP6EmEMQuAQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
XICTRON
2026-09-12 10:00:10
(12 hours ago)
ModSecurity rule violation detected by Fail2Ban
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 09:54:33
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.181.158.180 (180.158.181.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.181.158.180 (180.158.181.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 05:54:27.409103 2026] [security2:error] [pid 23941:tid 24049] [client 34.181.158.180:37650] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "indigowampum.com"] [uri "/.git/config"] [unique_id "aqUhU2mozhmNSp9dTcD5wwAAAdY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 09:27:53
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.181.158.180 (180.158.181.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.181.158.180 (180.158.181.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 05:27:48.637604 2026] [security2:error] [pid 3262:tid 3269] [client 34.181.158.180:45294] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "indigocapital.es"] [uri "/.git/config"] [unique_id "aqUbFGKA4iAJazVnA_FNvwAAAIU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
paulshipley.com.au
2026-09-12 09:07:02
(13 hours ago)
[Sat Sep 12 19:07:01.252301 2026] [security2:error] [pid 751293] [client 34.181.158.180:52504] [clie ...
show more
[Sat Sep 12 19:07:01.252301 2026] [security2:error] [pid 751293] [client 34.181.158.180:52504] [client 34.181.158.180] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "indigi-print-merch.com.au"] [uri "/"] [unique_id "aqUWNTdb2TXurRJpBeHCFAAAAAc"]
...
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 08:30:31
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.181.158.180 (180.158.181.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.181.158.180 (180.158.181.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 04:30:24.898669 2026] [security2:error] [pid 14654:tid 14654] [client 34.181.158.180:42460] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "indieheaven.io"] [uri "/.git/config"] [unique_id "aqUNoMNNqYs04GhHHg09ZgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 08:13:54
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.181.158.180 (180.158.181.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.181.158.180 (180.158.181.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 04:13:47.493070 2026] [security2:error] [pid 5811:tid 5811] [client 34.181.158.180:49826] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "indie100.com"] [uri "/.git/config"] [unique_id "aqUJu6RhM3y8sZ9BedIlPQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇰
HostingGroup
2026-09-12 08:11:53
(14 hours ago)
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shiel ...
show more
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shield. Offenses: 27. First blocked: 2026-09-12.
show less
Bad Web Bot
Web App Attack