🇵🇱
strefapi_com
2026-09-12 10:12:37
(1 hour ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 09:30:54
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.65.69.53 (53.69.65.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.69.53 (53.69.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 05:30:47.912658 2026] [security2:error] [pid 2946:tid 2946] [client 34.65.69.53:47860] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stat-alliance.com"] [uri "/.git/config"] [unique_id "aqUbx89DxP1KXXEaNW_GBgAAAFY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-12 09:28:25
(2 hours ago)
Excessive 404/403 errors
Brute-Force
🇬🇧
consul.to
2026-09-12 08:50:03
(2 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 07:46:37
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.69.53 (53.69.65.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.69.53 (53.69.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 03:46:31.221471 2026] [security2:error] [pid 32548:tid 32548] [client 34.65.69.53:46288] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "starvationacres.us"] [uri "/.git/config"] [unique_id "aqUDV6kwLNiBTDo_0piIcAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-09-12 06:13:55
(5 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
🇧🇪
cmbplf
2026-09-12 05:25:52
(6 hours ago)
9.668 requests with url.path *.env
1.948 requests with url.path *phpinfo.php
314 requests with ur ...
show more
9.668 requests with url.path *.env
1.948 requests with url.path *phpinfo.php
314 requests with url.path *credentials.json
240 requests with url.path *.php.bak
show less
Brute-Force
Bad Web Bot
🇵🇱
webadmin
2026-09-12 05:19:16
(6 hours ago)
2026-09-12T04:33:43.067085+02:00 tytan mobile-sai-api[4129]: [error] client: 34.65.69.53 server: sta ...
show more
2026-09-12T04:33:43.067085+02:00 tytan mobile-sai-api[4129]: [error] client: 34.65.69.53 server: startapp.sai.pl, request: "GET", url: http://startapp.sai.pl/google-key.json [404]: Not Found
2026-09-12T07:19:11.677457+02:00 tytan mobile-sai-api[4129]: [error] client: 34.65.69.53 server: startapp.sai.pl, request: "POST", url: http://startapp.sai.pl/ [405]: Method Not Allowed
2026-09-12T07:19:12.864908+02:00 tytan mobile-sai-api[4129]: [error] client: 34.65.69.53 server: startapp.sai.pl, request: "POST", url: http://startapp.sai.pl/ [405]: Method Not Allowed
2026-09-12T07:19:15.031114+02:00 tytan mobile-sai-api[4129]: [error] client: 34.65.69.53 server: startapp.sai.pl, request: "POST", url: http://startapp.sai.pl/ [405]: Method Not Allowed
show less
Web App Attack
🇳🇱
Site.eu
2026-09-12 05:11:41
(6 hours ago)
Excessive multi-domain requests
Brute-Force
🇺🇸
TPI-Abuse
2026-09-12 05:05:06
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.69.53 (53.69.65.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.69.53 (53.69.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 01:05:00.831432 2026] [security2:error] [pid 7702:tid 7702] [client 34.65.69.53:35338] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "startordoro.com"] [uri "/.git/config"] [unique_id "aqTdfAtgQoyIFwYBX_JaowAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
marten_o
2026-09-12 04:10:47
(7 hours ago)
34.65.69.53 - - [12/Sep/2026:06:10:47 +0200] "GET /tmp/phpinfo.php HTTP/1.1" 500 574 "-" "Mozilla/5. ...
show more
34.65.69.53 - - [12/Sep/2026:06:10:47 +0200] "GET /tmp/phpinfo.php HTTP/1.1" 500 574 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 407 772
...
show less
Web App Attack
🇩🇪
IVski.com
2026-09-12 03:54:00
(7 hours ago)
IVski WAF | Sensitive file probe - looking for exposed .git/config
Hacking
Brute-Force
Web App Attack
🇩🇪
FD-IX
2026-09-12 03:16:47
(8 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
🇩🇪
Vegascosmetics
2026-09-12 03:09:12
(8 hours ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after first-seen suspicion / AbuseIPDB repu ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after first-seen suspicion / AbuseIPDB reputation policy (no URL signature). Evidence: Suspicion-Ban (Score 72>=65, Abuse 74, NonEU, first-seen)
show less
Hacking
Exploited Host
Web App Attack
🇵🇱
webadmin
2026-09-12 02:33:43
(8 hours ago)
2026-09-12T04:32:17.406474+02:00 tytan mobile-sai-api[4129]: [error] client: 34.65.69.53 server: sta ...
show more
2026-09-12T04:32:17.406474+02:00 tytan mobile-sai-api[4129]: [error] client: 34.65.69.53 server: startapp.sai.pl, request: "POST", url: http://startapp.sai.pl/ [405]: Method Not Allowed
2026-09-12T04:32:18.229679+02:00 tytan mobile-sai-api[4129]: [error] client: 34.65.69.53 server: startapp.sai.pl, request: "POST", url: http://startapp.sai.pl/ [405]: Method Not Allowed
2026-09-12T04:32:20.225805+02:00 tytan mobile-sai-api[4129]: [error] client: 34.65.69.53 server: startapp.sai.pl, request: "POST", url: http://startapp.sai.pl/ [405]: Method Not Allowed
2026-09-12T04:33:43.060885+02:00 tytan mobile-sai-api[4129]: [error] client: 34.65.69.53 server: startapp.sai.pl, request: "GET", url: http://startapp.sai.pl/.git/config [404]: Not Found
show less
Web App Attack