๐ฌ๐ง
consul.to
2026-06-15 09:42:34
(3 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-06-15 08:43:58
(3 days ago)
(modsecurity) srv104 ModSecurity 34.40.165.90 (AU/Australia/90.165.40.34.bc.googleusercontent.com): ...
show more
(modsecurity) srv104 ModSecurity 34.40.165.90 (AU/Australia/90.165.40.34.bc.googleusercontent.com): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ซ๐ท
Rom74
2026-06-15 07:30:08
(3 days ago)
[Mon Jun 15 09:30:07.826638 2026] [security2:error] [pid 229857:tid 137812858717888] [client 34.40.1 ...
show more
[Mon Jun 15 09:30:07.826638 2026] [security2:error] [pid 229857:tid 137812858717888] [client 34.40.165.90:32948] [client 34.40.165.90] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 10)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "nextcloud.ton-espace.com"] [uri "/site/.git/config"] [unique_id "ai-p_9HQNoWO5ZJtAmtsNAAAARU"]
[Mon Jun 15 09:30:07.835166 2026] [security2:error] [pid 229803:tid 137812447835840] [client 34.40.165.90:32942] [client 34.40.165.90] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Scor
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 07:24:37
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.40.165.90 (90.165.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.165.90 (90.165.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 03:24:31.773005 2026] [security2:error] [pid 12214:tid 12214] [client 34.40.165.90:49120] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.chaletofsanmarcoowners.bahamascruisersguide.com"] [uri "/.git/config"] [unique_id "ai-orxaGB3f_veuMlxpYqAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-15 06:23:06
(3 days ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-06-15 01:40:57
(3 days ago)
Unauthorized access to webpage admin
Web App Attack
๐ฎ๐น
clamehost.it
2026-06-15 00:19:10
(4 days ago)
Automatic report - Brute Force attack using this IP address
Brute-Force
๐ฉ๐ช
Ba-Yu
2026-06-14 21:55:33
(4 days ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ฉ๐ช
KiekerJan
2026-06-14 21:29:51
(4 days ago)
34.40.165.90 - - [14/Jun/2026:23:29:50 +0200] "GET /app/.git/config HTTP/1.1" 301 162 "-" "Mozilla/5 ...
show more
34.40.165.90 - - [14/Jun/2026:23:29:50 +0200] "GET /app/.git/config HTTP/1.1" 301 162 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/56.0.2924.76 Safari/537.36"
34.40.165.90 - - [14/Jun/2026:23:29:50 +0200] "GET /.git/config HTTP/1.1" 301 162 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3724.8 Safari/537.36"
...
show less
Web App Attack
๐ฉ๐ช
heyzg
2026-06-14 14:44:13
(4 days ago)
HTTP honeypot | Web Scanning | 30 HTTP
Bad Web Bot
Web App Attack
๐ท๐บ
sms.ru
2026-06-14 10:54:37
(4 days ago)
/app/.git/config
Web App Attack
๐ฌ๐ง
consul.to
2026-06-14 06:07:09
(4 days ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 06:01:35
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.40.165.90 (90.165.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.165.90 (90.165.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 02:01:29.452162 2026] [security2:error] [pid 15614:tid 15614] [client 34.40.165.90:54684] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tomflynn.smilingorc.com"] [uri "/web/.git/config"] [unique_id "ai5Dua4-pe-lgZbUv8kuOwAAADU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-06-14 05:45:28
(4 days ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
Anonymous
2026-06-14 05:45:02
(4 days ago)
suspicious request in access.log
Web App Attack