Anonymous
2026-08-27 22:23:24
(11 hours ago)
T: f2b 404 5x
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 16:00:29
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.9.156 (156.9.47.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.9.156 (156.9.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:00:24.004518 2026] [security2:error] [pid 2394:tid 2394] [client 34.47.9.156:53612] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.angelabcomics.flyingdodopublications.com"] [uri "/app/.git/config"] [unique_id "apBfGCW_CVYk8FzldBHruAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-08-27 15:42:34
(18 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 14:14:29
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.9.156 (156.9.47.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.9.156 (156.9.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 10:14:21.340195 2026] [security2:error] [pid 14468:tid 14468] [client 34.47.9.156:55304] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "earlsworkshop.com"] [uri "/.git/config"] [unique_id "apBGPU_jmmDi7IpoIJ0CKQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-08-27 13:23:42
(20 hours ago)
[ThuAug2715:23:37.5056002026][security2:error][pid1036660:tid1037539][client34.47.9.156:0]ModSecurit ...
show more
[ThuAug2715:23:37.5056002026][security2:error][pid1036660:tid1037539][client34.47.9.156:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.aidweb.ch.81-17-25-250.cpanel.site\"][uri\"/src/.git/config\"][unique_id\"apA6WdU8arfwYAD3NJ-z0QAAAMU\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 11:45:58
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.9.156 (156.9.47.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.9.156 (156.9.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 07:45:53.213342 2026] [security2:error] [pid 1368:tid 1368] [client 34.47.9.156:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "perl-photo.com"] [uri "/public/.git/config"] [unique_id "apAjcUwJeoard8rfGFb0xwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
stinpriza
2026-08-27 07:37:22
(1 day ago)
common Web Exploits being scanned
Web App Attack
๐ฉ๐ช
4server
2026-08-27 06:09:59
(1 day ago)
[ThuAug2708:09:53.5364472026][security2:error][pid763460:tid763525][client34.47.9.156:0]ModSecurity: ...
show more
[ThuAug2708:09:53.5364472026][security2:error][pid763460:tid763525][client34.47.9.156:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"autodiscover.admin-services.ch\"][uri\"/www/.git/config\"][unique_id\"ao_UseSME-2MSt6kIf2JoQAAAIQ\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ฌ๐ง
consul.to
2026-08-27 05:12:54
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ฎ
payincog
2026-08-27 05:00:40
(1 day ago)
Date: Aug 27 07:17:16 2026 EAT | Reported IP: 34.47.9.156 mod_security | id: 930130 949110 | CA/pay. ...
show more
Date: Aug 27 07:17:16 2026 EAT | Reported IP: 34.47.9.156 mod_security | id: 930130 949110 | CA/pay.my_domain/- | Connections: 1 | Blocked: Permanent Block: [LF_MODSEC] | Logs: ; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score:
show less
SQL Injection
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-27 03:15:51
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.47.9.156 (156.9.47.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.9.156 (156.9.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 23:15:45.262413 2026] [security2:error] [pid 1512410:tid 1512450] [client 34.47.9.156:57496] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.shareamillion.credit-card-cap.com"] [uri "/app/.git/config"] [unique_id "ao-r4SUqsdKv42CNcx0e6gAAAUA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 02:50:19
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.47.9.156 (156.9.47.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.9.156 (156.9.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 22:50:15.075181 2026] [security2:error] [pid 4191:tid 4191] [client 34.47.9.156:57224] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "goldenvalley1.com"] [uri "/src/.git/config"] [unique_id "ao-l5z0W6jB4FkZXimBWlAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-08-27 02:41:21
(1 day ago)
Aggressive scanning resulting into 404
Bad Web Bot
๐ฆ๐บ
Klaverstyn
2026-08-27 02:36:29
(1 day ago)
Repeated 403 Forbidden responses
Web App Attack
๐ธ๐ช
vaia.cloud
2026-08-27 02:25:03
(1 day ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack