🇺🇸
TPI-Abuse
2026-09-20 22:22:27
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.92.219 (219.92.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.92.219 (219.92.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 18:22:24.187149 2026] [security2:error] [pid 6150:tid 6150] [client 34.47.92.219:36582] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ohwaitiforgot.com"] [uri "/.git/config"] [unique_id "arBcoF69xKXlZgRsKST73AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
tecnicorioja
2026-09-20 22:00:42
(16 hours ago)
wp-login attack [20/Sep/2026:17:33:47
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-20 21:36:56
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.92.219 (219.92.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.92.219 (219.92.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 17:36:51.724382 2026] [security2:error] [pid 15110:tid 15110] [client 34.47.92.219:49160] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ohsojobarter.com"] [uri "/.git/config"] [unique_id "arBR84AzSjJeOL0HM91F1wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-20 20:45:01
(18 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-20 20:16:13
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.92.219 (219.92.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.92.219 (219.92.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 16:16:09.567718 2026] [security2:error] [pid 8988:tid 8988] [client 34.47.92.219:45028] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ohnosound.com"] [uri "/.git/config"] [unique_id "arA_CetXCbE4-_l-aLgrsAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-20 18:56:14
(20 hours ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-20 18:41:41
(20 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-20 17:47:43
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.92.219 (219.92.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.92.219 (219.92.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 13:47:38.736900 2026] [security2:error] [pid 12416:tid 12416] [client 34.47.92.219:50424] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ohiobabe.com"] [uri "/.git/config"] [unique_id "arAcOsaQm51e-CPNuKEBkwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇦
URAN Publishing Service
2026-09-20 17:32:21
(21 hours ago)
[20/Sep/2026:20:32:20 +0300] -- 34.47.92.219 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/ ...
show more
[20/Sep/2026:20:32:20 +0300] -- 34.47.92.219 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 17:07:45
(21 hours ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: KR, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: KR, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-20 15:44:22
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.92.219 (219.92.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.92.219 (219.92.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 11:44:19.370711 2026] [security2:error] [pid 19846:tid 19846] [client 34.47.92.219:57884] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ohanameetup.party"] [uri "/.git/config"] [unique_id "aq__U_jRrk4stkkYKI74nwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇮
oh.mg
2026-09-20 14:45:22
(1 day ago)
[Sun Sep 20 16:45:22.023644 2026] [security2:error] [pid 955506:tid 955516] [client 34.47.92.219:544 ...
show more
[Sun Sep 20 16:45:22.023644 2026] [security2:error] [pid 955506:tid 955516] [client 34.47.92.219:54470] [client 34.47.92.219] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 50)"] [ver "OWASP_CRS/4.10.0-dev"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "oh.ke"] [uri "/"] [unique_id "aq_xgqVXBKEDP9luzlnLwAAAAQg"]
[Sun Sep 20 16:45:22.327936 2026] [security2:error] [pid 955506:tid 955519] [client 34.47.92.219:54470] [client 34.47.92.219] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 50)"] [ver "OWASP_CRS/4.10.0-dev"] [tag "anomaly-evaluation
...
show less
Web App Attack
Bad Web Bot
🇮🇹
VHosting
2026-09-20 14:45:04
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack