🇸🇪
vaia.cloud
2026-09-15 19:05:03
(1 hour ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-15 18:33:42
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.39.218.253 (253.218.39.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.39.218.253 (253.218.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 14:33:36.949885 2026] [security2:error] [pid 12993:tid 13036] [client 34.39.218.253:44294] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "batonrougegazette.com"] [uri "/.git/config"] [unique_id "aqmPgMvQsBLFtCsT-Vg6iQAAAYc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
Lee Daniel
2026-09-15 16:40:02
(3 hours ago)
34.39.218.253 - - [15/Sep/2026:12:40:01 -0400] "GET /.env HTTP/1.1" 403 6365 "-" "Mozilla/5.0 (Macin ...
show more
34.39.218.253 - - [15/Sep/2026:12:40:01 -0400] "GET /.env HTTP/1.1" 403 6365 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 14:48:21
(5 hours ago)
34.39.218.253 www.rolistore.com - [15/Sep/2026:08:48:18 -0600] "GET /.git/config HTTP/1.1" 403 158 " ...
show more
34.39.218.253 www.rolistore.com - [15/Sep/2026:08:48:18 -0600] "GET /.git/config HTTP/1.1" 403 158 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"\n34.39.218.253 www.rolistore.com - [15/Sep/2026:08:48:18 -0600] "GET /.env HTTP/1.1" 404 601501 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"\n34.39.218.253 www.rolistore.com - [15/Sep/2026:08:48:19 -0600] "GET /.env.local HTTP/1.1" 404 601501 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"\n34.39.218.253 www.rolistore.com - [15/Sep/2026:08:48:19 -0600] "GET /.env.production HTTP/1.1" 404 601501 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"\n34.39.218.253 www.rolistore.com - [15/Sep/2026:08:48:19 -0600] "GET /.env.staging HTTP/1.1" 404 601501 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML,
show less
DDoS Attack
Web App Attack
🇳🇱
Alt255
2026-09-15 13:05:19
(7 hours ago)
[ti-07al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-07al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.39.218.253 - - [15/Sep/2026:15:05:18 +0200] "GET /.git/config HTTP/1.1" 404 13492 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 11:39:31
(8 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇫🇷
dynamix
2026-09-15 10:09:15
(10 hours ago)
Multiple WAF Violations
Web App Attack
🇳🇱
Savvii
2026-09-15 09:48:31
(10 hours ago)
20 attempts against mh-misbehave-ban on ethyl
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-15 09:31:44
(10 hours ago)
20 attempts against mh-misbehave-ban on eris
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-15 07:50:58
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.39.218.253 (253.218.39.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.39.218.253 (253.218.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 03:50:51.328201 2026] [security2:error] [pid 29454:tid 29454] [client 34.39.218.253:54628] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rohan.byles.net"] [uri "/.git/config"] [unique_id "aqj42x7C3fPqBy-uVMdnAAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
EGP Abuse Dept
2026-09-15 06:16:26
(14 hours ago)
Scanning for web/db/file exploits on www.roghabitat.com
SQL Injection
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-15 06:06:23
(14 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇮🇹
VHosting
2026-09-15 04:45:04
(15 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇳🇱
Site.eu
2026-09-15 03:14:50
(17 hours ago)
Excessive 404/403 errors
Brute-Force