๐บ๐ธ
mnsf
2026-07-25 21:05:08
(9 hours ago)
Scanning/Probing (13)
Brute-Force
Web App Attack
๐ณ๐ฑ
Site.eu
2026-07-25 13:40:52
(16 hours ago)
Excessive 404/403 errors
Brute-Force
๐ฎ๐น
VHosting
2026-07-25 12:50:03
(17 hours ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 08:00:19
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.210.19.248 (ec2-34-210-19-248.us-west-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 34.210.19.248 (ec2-34-210-19-248.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 04:00:15.086466 2026] [security2:error] [pid 675017:tid 675017] [client 34.210.19.248:46292] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gopherblower.com.rotarymagnetics.com"] [uri "/.git/config"] [unique_id "amRtD9HAQmqueeq-Nbyp6AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure
2026-07-24 18:53:56
(1 day ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 0s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 16:22:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.210.19.248 (ec2-34-210-19-248.us-west-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 34.210.19.248 (ec2-34-210-19-248.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 12:22:25.094674 2026] [security2:error] [pid 992034:tid 992034] [client 34.210.19.248:60382] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gotdt.com.tlambert.us"] [uri "/.git/config"] [unique_id "amORQfL8_TDxxYRjyYKgggAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-24 14:52:24
(1 day ago)
[ns3.backorder.gr] httpd-config-scan: sites=www.example.com,debug-gosolar.gr,www.gosolar.gr; logs=/v ...
show more
[ns3.backorder.gr] httpd-config-scan: sites=www.example.com,debug-gosolar.gr,www.gosolar.gr; logs=/var/log/httpd/access_log,/var/log/httpd/domains/debug-gosolar.gr.log,/var/log/httpd/domains/gosolar.gr.log; samples=/.git/config | /.env | /.env.local
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 12:22:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.210.19.248 (ec2-34-210-19-248.us-west-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 34.210.19.248 (ec2-34-210-19-248.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 08:22:46.925112 2026] [security2:error] [pid 691604:tid 691647] [client 34.210.19.248:41050] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gorealtors.appraisalteam.net"] [uri "/.git/config"] [unique_id "amNZFu1wfD0uO57YwVOjjwAAAYY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 10:11:09
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.210.19.248 (ec2-34-210-19-248.us-west-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 34.210.19.248 (ec2-34-210-19-248.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 06:11:04.927618 2026] [security2:error] [pid 30591:tid 30591] [client 34.210.19.248:56796] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.go-on.kreweofhyatt.com"] [uri "/.git/config"] [unique_id "amM6OA3uSgyZoviPAmsprwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 08:16:32
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.210.19.248 (ec2-34-210-19-248.us-west-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 34.210.19.248 (ec2-34-210-19-248.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 04:16:26.025096 2026] [security2:error] [pid 501938:tid 501955] [client 34.210.19.248:46530] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.goodwill-japan.kylight.com"] [uri "/.git/config"] [unique_id "amMfWriUl2r1sCV9ZPYH7gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Richie
2022-10-03 15:17:18
(3 years ago)
[HOST2] Port Scan detected
Port Scan
Anonymous
2022-10-02 21:49:45
(3 years ago)
34.210.19.248 - - [03/Oct/2022:03:49:44 +0200] "GET /.well-known/acme-challenge/NsM6U9sRYAj1S3FLiG_G ...
show more
34.210.19.248 - - [03/Oct/2022:03:49:44 +0200] "GET /.well-known/acme-challenge/NsM6U9sRYAj1S3FLiG_GCuBkfu3RIVCLYO_7VOnB9io HTTP/1.1" 403 363 "-" "Mozilla/5.0 (compatible; Let's Encrypt validation server; +https://www.letsencrypt.org)" ...
show less
Web App Attack