Anonymous
2026-07-28 11:07:56
(11 hours ago)
Aggressive web scan
Web App Attack
๐ญ๐บ
bcsaba
2026-07-28 11:01:53
(11 hours ago)
Probing for .git:
34.244.9.175 - - [28/Jul/2026:13:01:47 +0200] "GET /.git/config HTTP/1.1" 403 548 ...
show more
Probing for .git:
34.244.9.175 - - [28/Jul/2026:13:01:47 +0200] "GET /.git/config HTTP/1.1" 403 548 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
show less
Web App Attack
๐ญ๐บ
bcsaba
2026-07-28 09:45:38
(12 hours ago)
Probing for .git:
34.244.9.175 - - [28/Jul/2026:11:45:33 +0200] "GET /.git/config HTTP/1.1" 403 548 ...
show more
Probing for .git:
34.244.9.175 - - [28/Jul/2026:11:45:33 +0200] "GET /.git/config HTTP/1.1" 403 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
show less
Web App Attack
๐ซ๐ท
dynamix
2026-07-28 08:28:09
(13 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 04:03:59
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.244.9.175 (ec2-34-244-9-175.eu-west-1.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 34.244.9.175 (ec2-34-244-9-175.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 00:03:54.496024 2026] [security2:error] [pid 513178:tid 513178] [client 34.244.9.175:44142] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.votmuli.com.greenlight.us"] [uri "/.git/config"] [unique_id "amgqKi9XrjlZGoUYsXx7GQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 02:27:02
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.244.9.175 (ec2-34-244-9-175.eu-west-1.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 34.244.9.175 (ec2-34-244-9-175.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 22:26:56.998099 2026] [security2:error] [pid 3903792:tid 3903816] [client 34.244.9.175:53878] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.vote4joegardner.jd-web-designs.com"] [uri "/.git/config"] [unique_id "amgTcEGeZQQ5KPYWHIGxggAAANY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
Bay13
2026-07-27 23:37:24
(22 hours ago)
CrowdSec:custom/modsecurity
Web App Attack
๐ณ๐ฑ
Site.eu
2026-07-27 20:27:58
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐ณ๐ฑ
e.fierstra
2026-07-27 20:09:24
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
stvnrdg.me
2026-07-27 18:18:43
(1 day ago)
34.244.9.175 - - [27/Jul/2026:18:18:42 +0000] "GET /hub/phpinfo.php HTTP/1.1" 404 5189 "-" "Mozilla/ ...
show more
34.244.9.175 - - [27/Jul/2026:18:18:42 +0000] "GET /hub/phpinfo.php HTTP/1.1" 404 5189 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-27 12:44:08
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.244.9.175 (ec2-34-244-9-175.eu-west-1.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 34.244.9.175 (ec2-34-244-9-175.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 08:44:02.992490 2026] [security2:error] [pid 242149:tid 242149] [client 34.244.9.175:44826] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.voltbox.jamesallenwalker.com"] [uri "/.git/config"] [unique_id "amdSktn9VJwd9NYM2FgFUgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-07-27 08:55:02
(1 day ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 07:02:25
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.244.9.175 (ec2-34-244-9-175.eu-west-1.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 34.244.9.175 (ec2-34-244-9-175.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 03:02:20.012152 2026] [security2:error] [pid 1548388:tid 1548397] [client 34.244.9.175:42126] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.volcano-sa.oplconnect.com"] [uri "/.git/config"] [unique_id "amcCfLwTQAf3T_SDG8peqwAAAEI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
pipeline.es
2026-07-27 06:46:07
(1 day ago)
Web scanning / probing for vulnerable paths | URL: /local/.env | Evidence: volandoviajes.com.ar 34.2 ...
show more
Web scanning / probing for vulnerable paths | URL: /local/.env | Evidence: volandoviajes.com.ar 34.244.9.175 - - [27/Jul/2026:08:45:40 +0200] \"GET /local/.env HTTP/1.1\" 404 30632 \"-\" \"Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36\" GEOIP_COUNTRY_CODE=IE | ASN: AMAZON-02 | Country: IE
show less
Port Scan
Web App Attack
๐ณ๐ฑ
Site.eu
2026-07-27 06:44:09
(1 day ago)
Excessive 404/403 errors
Brute-Force