๐ฉ๐ช
ger-stg-sifi1
2026-09-11 16:50:38
(25 minutes ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ฆ๐บ
Terrier
2026-09-11 13:00:02
(4 hours ago)
Blocked for HTTP vulnerability scanning (excessive 40x)
Web App Attack
๐จ๐ญ
Ribeye375
2026-09-11 12:24:12
(4 hours ago)
HIPS nginx-anti-botnet - Block tcp/0:65535
Bad Web Bot
๐บ๐ธ
Rocky Mountain Bioengineering Symposium
2026-09-11 12:20:39
(4 hours ago)
34.20.251.102 - - [11/Sep/2026:06:20:39 -0600] "GET /.git/config HTTP/1.1" 300 4671 "-" "Mozilla/5.0 ...
show more
34.20.251.102 - - [11/Sep/2026:06:20:39 -0600] "GET /.git/config HTTP/1.1" 300 4671 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-11 10:32:05
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.20.251.102 (102.251.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.251.102 (102.251.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 06:32:00.925160 2026] [security2:error] [pid 28482:tid 28482] [client 34.20.251.102:58908] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "listings.cruisingforsex.com"] [uri "/.git/config"] [unique_id "aqPYoEFN4VXVoY02tYr9qgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-11 09:56:31
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.20.251.102 (102.251.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.251.102 (102.251.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 05:56:27.498535 2026] [security2:error] [pid 9550:tid 9550] [client 34.20.251.102:46524] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "listerman.org"] [uri "/.git/config"] [unique_id "aqPQSwzGYdTKi9dvkk4zBgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-11 08:50:54
(8 hours ago)
apache vulnerability scan
Web App Attack
๐ฉ๐ช
thesimonmanuel
2026-09-11 08:07:18
(9 hours ago)
34.20.251.102 - - [11/Sep/2026:13:37:17 +0530] "GET /.git/config HTTP/1.1" 404 560 "-" "Mozilla/5.0 ...
show more
34.20.251.102 - - [11/Sep/2026:13:37:17 +0530] "GET /.git/config HTTP/1.1" 404 560 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-"
show less
Web App Attack
Anonymous
2026-09-11 08:06:43
(9 hours ago)
IP matched detection query 50 and more bad rqs apache.
Hacking
Bad Web Bot
Brute-Force
Web App Attack
๐ณ๐ฑ
melroy89
2026-09-11 07:57:18
(9 hours ago)
34.20.251.102 - - [11/Sep/2026:09:56:39 +0200] "POST / HTTP/1.1" 404 601 "-" "Mozilla/5.0 (Windows ...
show more
34.20.251.102 - - [11/Sep/2026:09:56:39 +0200] "POST / HTTP/1.1" 404 601 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "list.melroy.org" 0.104
34.20.251.102 - - [11/Sep/2026:09:56:39 +0200] "POST / HTTP/1.1" 404 601 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "list.melroy.org" 0.091
34.20.251.102 - - [11/Sep/2026:09:56:39 +0200] "POST / HTTP/1.1" 404 601 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "list.melroy.org" 0.072
34.20.251.102 - - [11/Sep/2026:09:56:40 +0200] "GET /.git/config HTTP/1.1" 404 601 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "list.melroy.org" 0.003
34.20.251.102 - - [11/Sep/2026:09:56:40 +0200] "POST / HTTP/1.1" 404 601 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) Apple
...
show less
Web App Attack
Anonymous
2026-09-11 07:45:33
(9 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ฉ๐ช
Gwyneth Llewelyn
2026-09-11 05:22:57
(11 hours ago)
2026/09/11 06:22:46 [error] 1267648#1267648: *67854 access forbidden by rule, client: 34.20.251.102, ...
show more
2026/09/11 06:22:46 [error] 1267648#1267648: *67854 access forbidden by rule, client: 34.20.251.102, server: lisboa.betatechnologies.info, request: "GET /.env HTTP/2.0", host: "lisboa.betatechnologies.info"
34.20.251.102 - - [11/Sep/2026:06:22:46 +0100] "GET /.env HTTP/2.0" 403 1045 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
2026/09/11 06:22:55 [error] 1267648#1267648: *67854 access forbidden by rule, client: 34.20.251.102, server: lisboa.betatechnologies.info, request: "GET /app/.env HTTP/2.0", host: "lisboa.betatechnologies.info"
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-11 04:39:50
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.20.251.102 (102.251.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.251.102 (102.251.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 00:39:45.125239 2026] [security2:error] [pid 1499:tid 1499] [client 34.20.251.102:53902] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lisarlee.com"] [uri "/.git/config"] [unique_id "aqOGEVvd6jsbEm3LKr-8RgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-09-11 04:23:25
(12 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-11 03:59:24
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.20.251.102 (102.251.20.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.251.102 (102.251.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 23:59:19.415741 2026] [security2:error] [pid 26145:tid 26145] [client 34.20.251.102:43470] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lisalehmann.com"] [uri "/.git/config"] [unique_id "aqN8l8OUu8rxgiS8jMiIsQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack