🇫🇷
IRISIO
2026-09-06 07:08:57
(38 minutes ago)
scans/SQL injection/spam posts : 6 queries
Web App Attack
SQL Injection
🇦🇺
screwlooseit.com.au
2026-09-06 04:28:17
(3 hours ago)
Blocked by CSF 13 firewall - Rule: 78.172.80.34.bc.googleusercontent.com
Web App Attack
🇫🇷
Octopuce
2026-09-05 23:30:22
(8 hours ago)
Aggressive web search of vulnerable pages: /backup.gz /backup.sql.gz /backup.tgz /backup_full.bz2 /b ...
show more
Aggressive web search of vulnerable pages: /backup.gz /backup.sql.gz /backup.tgz /backup_full.bz2 /backups.sql ...
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 02:37:35
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.172.78 (78.172.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.172.78 (78.172.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 22:37:29.612362 2026] [security2:error] [pid 13452:tid 13452] [client 34.80.172.78:43076] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.rachelfia.com"] [uri "/htdocs/.git/config"] [unique_id "apjdaUhQ3TRMf3CyjItMAgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 01:49:15
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.172.78 (78.172.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.172.78 (78.172.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 21:49:08.770949 2026] [security2:error] [pid 30648:tid 30648] [client 34.80.172.78:37510] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.parkhan.com"] [uri "/html/.git/config"] [unique_id "apjSFMmHRf-HpxLe0BFv1QAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 01:03:23
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.172.78 (78.172.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.172.78 (78.172.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 21:03:15.945091 2026] [security2:error] [pid 10620:tid 10620] [client 34.80.172.78:37672] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "azfilmguild.org"] [uri "/backend/.git/config"] [unique_id "apjHU1l_ZaQ7jx0zEwJOrwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-02 16:05:15
(3 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
🇳🇱
debestelapp
2026-09-02 14:35:10
(3 days ago)
Web App Attack
🇺🇸
antlac1
2026-09-02 06:44:49
(4 days ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
Anonymous
2026-09-02 05:32:11
(4 days ago)
[ns3.backorder.gr] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/wordpress/.git/config ...
show more
[ns3.backorder.gr] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/wordpress/.git/config | /app/.git/config | /html/.git/config
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 05:19:26
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.172.78 (78.172.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.172.78 (78.172.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:19:19.939286 2026] [security2:error] [pid 24159:tid 24159] [client 34.80.172.78:45652] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.waxjet510.com"] [uri "/wordpress/.git/config"] [unique_id "apex17Sb-OrUz6AJJ2PNIgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
ISPLtd
2026-09-02 05:16:08
(4 days ago)
Sep 2 02:16:07 34.80.172.78 TCP SPT=35046 DPT=80 SYN
Sep 2 02:16:07 34.80.172.78 TCP SPT=35022 DPT ...
show more
Sep 2 02:16:07 34.80.172.78 TCP SPT=35046 DPT=80 SYN
Sep 2 02:16:07 34.80.172.78 TCP SPT=35022 DPT=80 SYN
Sep 2 02:16:07 34.80.172.78 TCP SPT=35036 DPT=80 SYN
...
show less
DDoS Attack
Anonymous
2026-09-02 04:33:09
(4 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-02 04:20:42
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.172.78 (78.172.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.172.78 (78.172.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:20:34.275554 2026] [security2:error] [pid 30186:tid 30186] [client 34.80.172.78:33074] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "digitalplanner.xyz"] [uri "/htdocs/.git/config"] [unique_id "apekEinVfrKPMa9Gxlf9hAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 02:52:34
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.172.78 (78.172.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.172.78 (78.172.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 22:52:26.645700 2026] [security2:error] [pid 21586:tid 21586] [client 34.80.172.78:57552] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "djbadger.badgerkelley.com"] [uri "/app/.git/config"] [unique_id "apePanEwi1XA9xMggY3SNAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack