๐ฉ๐ช
LRob
2026-09-21 01:27:04
(2 days ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-21 01:27 UTC
show less
Hacking
Web App Attack
Anonymous
2026-09-21 00:30:31
(2 days ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ท๐ด
iulianh
2026-09-21 00:09:32
(2 days ago)
80,443
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-09-20 23:14:39
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.65.154.97 (97.154.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.154.97 (97.154.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 19:14:34.759888 2026] [security2:error] [pid 364:tid 364] [client 34.65.154.97:53070] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "web87.dnchosting.com"] [uri "/.git/config"] [unique_id "arBo2t9MOUliIQJVZXhO-wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 22:56:37
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.65.154.97 (97.154.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.154.97 (97.154.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 18:56:31.619733 2026] [security2:error] [pid 855:tid 855] [client 34.65.154.97:54644] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "web71.dnchosting.com"] [uri "/.git/config"] [unique_id "arBkn767YEf-e7s0ZvuC9gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
gadix
2026-09-20 21:59:41
(2 days ago)
[20/Sep/2026:23:59:39.928693 +0200] arBXS5N-HvEsz728hL3UFAAAAAE 34.65.154.97 53566 127.0.0.1 7081
[2 ...
show more
[20/Sep/2026:23:59:39.928693 +0200] arBXS5N-HvEsz728hL3UFAAAAAE 34.65.154.97 53566 127.0.0.1 7081
[20/Sep/2026:23:59:40.705915 +0200] arBXTBTzXQJbggRuV_PqogAAAAk 34.65.154.97 53590 127.0.0.1 7081
[20/Sep/2026:23:59:40.723712 +0200] arBXTFbbPNmGJxA1xeD1SQAAAAU 34.65.154.97 53596 127.0.0.1 7081
...
show less
Web App Attack
๐ฌ๐ง
Vert Paysage
2026-09-20 21:44:22
(2 days ago)
SecurityShield WAF: Signature WAF [CRS-942180] critical โ Detects basic SQL authentication bypass at ...
show more
SecurityShield WAF: Signature WAF [CRS-942180] critical โ Detects basic SQL authentication bypass attempts 1/3
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-20 19:08:44
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.65.154.97 (97.154.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.154.97 (97.154.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 15:08:36.833238 2026] [security2:error] [pid 15472:tid 15472] [client 34.65.154.97:45610] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "web242.dnchosting.com"] [uri "/.git/config"] [unique_id "arAvNJDdgzIoTvEg0h2jnQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 18:39:34
(2 days ago)
Multiple, malicious web requests detected
Port Scan
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-20 18:16:59
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.65.154.97 (97.154.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.154.97 (97.154.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 14:16:53.688207 2026] [security2:error] [pid 26948:tid 26948] [client 34.65.154.97:47356] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "web199.dnchosting.com"] [uri "/.git/config"] [unique_id "arAjFe_vjd9FxnKa1Y56SQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-20 17:44:20
(3 days ago)
Multiple WAF Violations
Web App Attack
๐ฎ๐น
VHosting
2026-09-20 17:15:05
(3 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 17:06:16
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.65.154.97 (97.154.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.154.97 (97.154.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 13:06:08.368748 2026] [security2:error] [pid 12938:tid 12938] [client 34.65.154.97:33354] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "web118.dnchosting.com"] [uri "/.git/config"] [unique_id "arASgHLSaHPqX7rgqHqY5gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack