Anonymous
2026-09-27 14:05:36
(2 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ธ๐ช
vaia.cloud
2026-09-27 13:55:01
(2 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
Anonymous
2026-09-27 13:50:13
(2 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ง๐ช
cmbplf
2026-09-27 08:10:14
(8 hours ago)
32.606 requests from untrusted country (1w6d12h)
Brute-Force
Bad Web Bot
Anonymous
2026-09-27 07:00:11
(9 hours ago)
Bot / scanning and/or hacking attempts: GET / HTTP/1.1, GET /frontend/.env HTTP/1.1, GET /.env~ HTTP ...
show more
Bot / scanning and/or hacking attempts: GET / HTTP/1.1, GET /frontend/.env HTTP/1.1, GET /.env~ HTTP/1.1, GET /server/.env HTTP/1.1, GET /backend/.env HTTP/1.1, GET /public/.env HTTP/1.1, GET /core/.env HTTP/1.1, GET /src/.env HTTP/1.1, GET /.env.sample HTTP/1.1, GET /private/.env HTTP/1.1, GET /admin/.env HTTP/1.1, GET /core/app/.env HTTP/1.1, GET /site/.env HTTP/1.1, GET /config/.env HTTP/1.1
show less
Hacking
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-09-27 06:49:19
(9 hours ago)
Scanning for web/db/file exploits on www.tuinenhuis.nl.mach3shop.nl
SQL Injection
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 20:34:53
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.99.64 (64.99.50.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.99.64 (64.99.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 16:34:46.322132 2026] [security2:error] [pid 21527:tid 21527] [client 34.50.99.64:59422] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.lendren.com"] [uri "/.git/config"] [unique_id "argsZo0NUSWDoueQBpvvVAAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-26 12:40:08
(1 day ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-26 09:22:15
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.50.99.64 (64.99.50.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.99.64 (64.99.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 05:22:08.804374 2026] [security2:error] [pid 1659:tid 1659] [client 34.50.99.64:48278] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.tyllo.title26.com"] [uri "/.git/config"] [unique_id "areOwNAAgGJy6hqOyB8ROwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-25 05:15:35
(2 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ฎ๐น
VHosting
2026-09-24 07:00:05
(3 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-09-22 09:45:52
(5 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 04:56:31
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.99.64 (64.99.50.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.99.64 (64.99.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 00:56:27.709350 2026] [security2:error] [pid 2551:tid 2551] [client 34.50.99.64:37736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.usashooters.gemexpressions.com"] [uri "/.git/config"] [unique_id "arIKe3Tp2qbo18vMzwHAIAAAADY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 02:43:48
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.99.64 (64.99.50.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.99.64 (64.99.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 22:43:44.109475 2026] [security2:error] [pid 4415:tid 4415] [client 34.50.99.64:35462] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.usaenquirer.com.bamedica.com"] [uri "/.git/config"] [unique_id "arHrYH_EE1lbB_WcLHBy7AAAADg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 23:16:24
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.99.64 (64.99.50.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.99.64 (64.99.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 19:16:16.876110 2026] [security2:error] [pid 25646:tid 25646] [client 34.50.99.64:51052] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.urrguide.com.coolingsprings.org"] [uri "/.git/config"] [unique_id "arG6wAaLI8N4DmWt4P5VkQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack