🇨🇭
Ribeye375
2026-09-05 01:12:12
(1 hour ago)
HIPS web-exfiltration - Block tcp/0:65535
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 22:52:33
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.69.46 (46.69.185.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.69.46 (46.69.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 18:52:27.786712 2026] [security2:error] [pid 13051:tid 13051] [client 34.185.69.46:54838] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "riccardiagency.com"] [uri "/html/.git/config"] [unique_id "aptLq3-tQXJrrQVwnMYCNAAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇪🇸
scaballe
2026-09-04 22:35:31
(4 hours ago)
Web App Attack
🇳🇱
e.fierstra
2026-09-04 22:28:20
(4 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇬🇧
essinghigh
2026-09-04 21:50:43
(4 hours ago)
IPS Detection: 34.185.69.46 -> DPT: 80
Port Scan
🇺🇸
TPI-Abuse
2026-09-04 21:46:54
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.69.46 (46.69.185.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.69.46 (46.69.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:46:46.563463 2026] [security2:error] [pid 23826:tid 23826] [client 34.185.69.46:52274] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.dockrockukiah.com"] [uri "/app/.git/config"] [unique_id "aps8Rgw7iz97NnmnizJycQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 19:01:53
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.69.46 (46.69.185.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.69.46 (46.69.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 15:01:44.954511 2026] [security2:error] [pid 29562:tid 29562] [client 34.185.69.46:39878] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.thehomemailbox.com"] [uri "/htdocs/.git/config"] [unique_id "apsVmArFGFc6wwFBROGVdgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 18:42:35
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.69.46 (46.69.185.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.69.46 (46.69.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 14:42:31.242903 2026] [security2:error] [pid 24584:tid 24584] [client 34.185.69.46:40784] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gbcwoodbine.org"] [uri "/var/www/.git/config"] [unique_id "apsRF8PlkJfNyPe2Dc4bfgAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
raph
2026-09-04 18:38:08
(7 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-04 17:49:07
(8 hours ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 15:45:38
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.69.46 (46.69.185.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.69.46 (46.69.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 11:45:29.637507 2026] [security2:error] [pid 27457:tid 27457] [client 34.185.69.46:47902] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.probiopharmaceutical.com"] [uri "/public/.git/config"] [unique_id "aprnmXUA_3dkS_uM7f6XXgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
SCHAPPY
2026-09-04 13:48:58
(12 hours ago)
Brute-force attack to identify web exploits
Brute-Force
Web App Attack
Anonymous
2026-09-04 12:24:45
(14 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 12:19:30
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.69.46 (46.69.185.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.69.46 (46.69.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 08:19:24.975721 2026] [security2:error] [pid 20979:tid 20979] [client 34.185.69.46:53282] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rajabarber.com.jbcllcnet.com"] [uri "/public/.git/config"] [unique_id "apq3THWZtQcuQTduMATi_AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇪🇸
loadsoporte
2026-09-04 11:54:29
(14 hours ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force