๐บ๐ธ
TPI-Abuse
2026-09-16 13:44:11
(36 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.21.156.243 (243.156.21.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.156.243 (243.156.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 09:44:05.506668 2026] [security2:error] [pid 10491:tid 10515] [client 34.21.156.243:44586] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lavonnesells.com"] [uri "/.git/config"] [unique_id "aqqdJbjpx3e8nllIb1dmewAAAFY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-16 13:33:07
(47 minutes ago)
Web attack/malicious scanning detected
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-16 11:50:02
(2 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-16 11:25:40
(2 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-16 09:10:15
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.21.156.243 (243.156.21.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.156.243 (243.156.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 05:10:07.853061 2026] [security2:error] [pid 25904:tid 25904] [client 34.21.156.243:39152] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lilachost.net"] [uri "/.git/config"] [unique_id "aqpc73qIRMMwWYqA6dLk_QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 08:35:53
(5 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.21.156.243 (243.156.21.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 34.21.156.243 (243.156.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 04:35:49.465081 2026] [security2:error] [pid 17774:tid 17774] [client 34.21.156.243:37064] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "likulikubookings.com"] [uri "/.git/config"] [unique_id "aqpU5X_Afyog7gmZ0tOaXQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-16 06:59:08
(7 hours ago)
csagent: score 19.9: secrets grab x2; 1 domain(s) in 2s
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-16 05:56:40
(8 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-16 05:52:33
(8 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-09-16 04:09:07
(10 hours ago)
Multiple WAF Violations
Web App Attack
๐ฌ๐ง
gws-hostmaster
2026-09-16 03:41:30
(10 hours ago)
ModSecurity OWASP CRS (Anomaly Score: 50): JavaScript Prototype Pollution;JSON-Based SQL Injection;N ...
show more
ModSecurity OWASP CRS (Anomaly Score: 50): JavaScript Prototype Pollution;JSON-Based SQL Injection;Node.js Injection Attack 1/2;PHP Injection Attack: Variable Access Found;Remote Command Execution: Direct Unix Command Execution;Remote Command Execution: Unix Shell Expression Found;Restricted File Access Attempt;SQL Injection Attack: SQL function name detected;URL file extension is restricted by policy;
show less
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-09-16 03:32:22
(10 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.21.156.243 (SG/Singapore/243.156.21.34.bc.go ...
show more
(mod_security) mod_security (id:949110) triggered by 34.21.156.243 (SG/Singapore/243.156.21.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 03:22:24
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.21.156.243 (243.156.21.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.156.243 (243.156.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 23:22:20.532592 2026] [security2:error] [pid 1974060:tid 1974060] [client 34.21.156.243:34868] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lightupaustralia.com"] [uri "/.git/config"] [unique_id "aqoLbJiezzcockxeUX0KOAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-16 02:24:23
(11 hours ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-16 01:46:47
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.21.156.243 (243.156.21.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.156.243 (243.156.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 21:46:43.763023 2026] [security2:error] [pid 17383:tid 17383] [client 34.21.156.243:60258] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lightningroddesigns.com"] [uri "/.git/config"] [unique_id "aqn1A0k3fyN3HItH4g_5iwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack