๐ซ๐ท
Little Iguana
2026-09-12 11:15:21
(3 days ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
๐ซ๐ท
Little Iguana
2026-09-10 22:48:10
(5 days ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
๐บ๐ธ
dot.mg
2026-09-09 13:20:23
(6 days ago)
Bad behaviour
Web Spam
๐ซ๐ท
Little Iguana
2026-09-09 12:25:22
(6 days ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
๐ณ๐ฑ
Site.eu
2026-09-09 04:22:42
(6 days ago)
Excessive multi-domain requests
Brute-Force
๐ฆ๐น
nomzamo
2026-09-09 03:53:14
(6 days ago)
Fail2Ban reported: nginx-credential-scan
Brute-Force
๐บ๐ธ
mnsf
2026-09-08 03:05:18
(1 week ago)
Scanning/Probing (14)
Brute-Force
Web App Attack
๐น๐ท
hostopya.com
2026-09-08 02:00:27
(1 week ago)
[plesk-apache] 6 failed attempt(s). Log: [Tue Sep 08 05:00:26.223173 2026] [authz_core:error] [pid 2 ...
show more
[plesk-apache] 6 failed attempt(s). Log: [Tue Sep 08 05:00:26.223173 2026] [authz_core:error] [pid 2473302] [client 34.19.71.219:0] AH01630: client denied by server configuration: /var/www/vhosts/lexvon.online/httpdocs/.env|[Tue Sep 08 05:00:26.418764 2026] [authz_core:error] [pid 2474788] [client 34.19.71.219:0] AH01630: client denied by server configuration: /var/www/vhosts/lexvon.online/httpdocs/.env.local|[Tue Sep 08 05:00:26.617108 2026] [authz_core:error] [pid 2614289] [client 34.19.71.219:0] AH01630: client denied by server configuration: /var/www/vhosts/lexvon.online/httpdocs/.env.production|[Tue Sep 08 05:00:26.809227 2026] [authz_core:error] [pid 2614303] [client 34.19.71.219:0] AH01630: client denied by server configuration: /var/www/vhosts/lexvon.online/httpdocs/.env.staging|[Tue Sep 08 05:00:27.010842 2026] [authz_core:error] [pid 2475979] [client 34.19.71.219:0] AH01630: client denied by server configuration: /var/www/vhosts/lexvon.online/httpdocs/.env.developmen
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-08 01:58:23
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.19.71.219 (219.71.19.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.71.219 (219.71.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 21:58:17.267502 2026] [security2:error] [pid 26169:tid 26169] [client 34.19.71.219:59014] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lexvaz.com"] [uri "/.git/config"] [unique_id "ap9ruYakCddAMOfBDJxN6wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-09-08 01:02:41
(1 week ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-08 00:21:53
(1 week ago)
cloudlinux2 fail2ban: 2026-09-08 02:09:49,420 fail2ban.actions [1794]: NOTICE [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-08 02:09:49,420 fail2ban.actions [1794]: NOTICE [plesk-modsecurity] Unban 34.15.149.255cloudlinux2 fail2ban: 2026-09-08 02:10:09,698 fail2ban.filter [1794]: INFO [plesk-modsecurity] Found 120.213.74.255 - 2026-09-08 02:10:09cloudlinux2 fail2ban: 2026-09-08 02:10:58,861 fail2ban.filter [1794]: INFO [plesk-wordpress] Found 45.131.193.160 - 2026-09-08 02:10:58cloudlinux2 fail2ban: 2026-09-08 02:10:58,861 fail2ban.filter [1794]: INFO [plesk-wordpress] Found 45.131.193.155 - 2026-09-08 02:10:58cloudlinux2 fail2ban: 2026-09-08 02:10:59,655 fail2ban.filter [1794]: INFO [plesk-wordpress] Found 45.131.193.157 - 2026-09-08 02:10:59cloudlinux2 fail2ban: 2026-09-08 02:11:22,908 fail2ban.filter [1794]: INFO [plesk-modsecurity] Found 103.181.154.43 - 2026-09-08 02:11:22cloudlinux2 fail2ban: 2026-09-08 02:11:29,194 fail2ban.filter [1794]: INFO [plesk-modsecurity] Found 34.19.71.219 - 2026-09-08 02:11:29cloudlinux2 fail2ba
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-07 23:34:15
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.19.71.219 (219.71.19.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.71.219 (219.71.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 19:34:11.378303 2026] [security2:error] [pid 600:tid 600] [client 34.19.71.219:50750] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lexingtonlimobus.com"] [uri "/.git/config"] [unique_id "ap9J80jIKu15Z9C-gkxAuQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-07 23:00:25
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.19.71.219 (219.71.19.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.71.219 (219.71.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 19:00:17.223184 2026] [security2:error] [pid 26094:tid 26094] [client 34.19.71.219:35584] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lexie.boens.org"] [uri "/.git/config"] [unique_id "ap9CAY7gy7k_vOUUITI1TQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-07 22:03:30
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-06.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-07 20:19:17
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.19.71.219 (219.71.19.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.71.219 (219.71.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 16:19:12.072543 2026] [security2:error] [pid 30598:tid 30598] [client 34.19.71.219:59592] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lewpratt.com"] [uri "/.git/config"] [unique_id "ap8cQK0oAQaLhqkOHpUlwgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack