🇬🇧
Aetherweb Ark
2026-09-10 07:42:41
(5 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.20.243.211 (US/United States/211.243.20.34.b ...
show more
(mod_security) mod_security (id:949110) triggered by 34.20.243.211 (US/United States/211.243.20.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
🇺🇦
URAN Publishing Service
2026-09-10 03:20:55
(10 hours ago)
[10/Sep/2026:06:20:55 +0300] -- 34.20.243.211 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git ...
show more
[10/Sep/2026:06:20:55 +0300] -- 34.20.243.211 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-10 02:02:35
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.20.243.211 (211.243.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.243.211 (211.243.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 22:02:29.557116 2026] [security2:error] [pid 21082:tid 21082] [client 34.20.243.211:39416] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "turnedthepagemusic.com"] [uri "/.git/config"] [unique_id "aqIPtco93qfeGuPa8KfyBgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-10 00:40:01
(12 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
🇳🇱
Site.eu
2026-09-10 00:27:13
(13 hours ago)
Excessive multi-domain requests
Brute-Force
🇺🇸
TPI-Abuse
2026-09-09 23:17:23
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.20.243.211 (211.243.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.243.211 (211.243.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 19:17:17.989537 2026] [security2:error] [pid 19739:tid 19739] [client 34.20.243.211:57028] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scoutmountaindistrict.org"] [uri "/.git/config"] [unique_id "aqHo_cHx4iJg6Bc5hM0DZQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇷🇴
iulianh
2026-09-09 23:10:29
(14 hours ago)
80,443
Brute-Force
SSH
🇺🇸
TPI-Abuse
2026-09-09 22:57:31
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.20.243.211 (211.243.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.243.211 (211.243.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 18:57:25.010921 2026] [security2:error] [pid 11022:tid 11022] [client 34.20.243.211:34478] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scoutinsignia.com"] [uri "/.git/config"] [unique_id "aqHkVesX7RmzZlYuAimVuQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 19:00:49
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.20.243.211 (211.243.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.243.211 (211.243.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 15:00:43.140050 2026] [security2:error] [pid 25364:tid 25364] [client 34.20.243.211:54074] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scottwithers.net"] [uri "/.git/config"] [unique_id "aqGs22AKDcTFy2bWtrbZ0gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-09 17:33:28
(20 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇩🇪
ghostwarriors
2026-09-09 16:50:12
(20 hours ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
🇩🇪
yitzhaq
2026-09-09 16:48:56
(20 hours ago)
34.20.243.211 - - [09/Sep/2026:18:48:52 +0200] "GET /.env.staging HTTP/1.1" 404 506 "-" "Mozilla/5.0 ...
show more
34.20.243.211 - - [09/Sep/2026:18:48:52 +0200] "GET /.env.staging HTTP/1.1" 404 506 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.20.243.211 - - [09/Sep/2026:18:48:52 +0200] "GET /.env.development HTTP/1.1" 404 506 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.20.243.211 - - [09/Sep/2026:18:48:52 +0200] "GET /.env.test HTTP/1.1" 404 506 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.20.243.211 - - [09/Sep/2026:18:48:52 +0200] "GET /.env.remote HTTP/1.1" 404 506 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.20.243.211 - - [09/Sep/2026:18:48:52 +0200] "GET /.env.bak HTTP/1.1" 404 506 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/53
show less
Web App Attack
Hacking
🇧🇪
cmbplf
2026-09-09 16:44:01
(20 hours ago)
4.575 requests with url.path *.env
Brute-Force
Bad Web Bot
🇳🇱
Savvii
2026-09-09 15:12:42
(22 hours ago)
20 attempts against mh-misbehave-ban on bean
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
masterguru
2026-09-09 11:40:23
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack