🇳🇱
Site.eu
2026-09-12 18:10:03
(20 minutes ago)
Excessive multi-domain requests
Brute-Force
🇬🇧
Apache
2026-09-12 17:56:44
(33 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.81.118.238 (TW/Taiwan/238.118.81.34.bc.googl ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.118.238 (TW/Taiwan/238.118.81.34.bc.googleusercontent.com): 5 in the last 300 secs (CF_ENABLE)
show less
Brute-Force
Web App Attack
🇺🇸
Lee Daniel
2026-09-12 17:55:20
(34 minutes ago)
34.81.118.238 - - [12/Sep/2026:13:55:20 -0400] "GET /.env HTTP/1.1" 403 6299 "-" "Mozilla/5.0 (Macin ...
show more
34.81.118.238 - - [12/Sep/2026:13:55:20 -0400] "GET /.env HTTP/1.1" 403 6299 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-12 14:25:39
(4 hours ago)
[Drupal AbuseIPDB module] Request path is blacklisted. /wp-admin/phpinfo.php
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 13:09:22
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.118.238 (238.118.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.118.238 (238.118.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 09:09:15.199440 2026] [security2:error] [pid 32531:tid 32531] [client 34.81.118.238:41642] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theledman.net"] [uri "/.git/config"] [unique_id "aqVO-7WmkaAtWwmIfNov_gAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 12:32:02
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.118.238 (238.118.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.118.238 (238.118.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 08:31:55.824971 2026] [security2:error] [pid 29974:tid 29974] [client 34.81.118.238:38728] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thefiregoddess.cain2016.org"] [uri "/.git/config"] [unique_id "aqVGO8SXMWtSS_8O-yYbTgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-12 11:01:49
(7 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 08:52:48
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.118.238 (238.118.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.118.238 (238.118.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 04:52:43.979490 2026] [security2:error] [pid 30591:tid 30591] [client 34.81.118.238:33554] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theknowledgemaster.com"] [uri "/.git/config"] [unique_id "aqUS2zvBTl77dJ958ILpDAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 08:34:07
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.118.238 (238.118.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.118.238 (238.118.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 04:34:02.958393 2026] [security2:error] [pid 23447:tid 23447] [client 34.81.118.238:34806] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theklines.net"] [uri "/.git/config"] [unique_id "aqUOemPPb1CI9v4A2pDz-gAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 06:30:23
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.118.238 (238.118.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.118.238 (238.118.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 02:30:18.186013 2026] [security2:error] [pid 3230850:tid 3230871] [client 34.81.118.238:60838] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thekeetons.net.jameskeeton.com"] [uri "/.git/config"] [unique_id "aqTxehrqfdG5zMzEVGxwQQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
lavnet.net
2026-09-12 05:34:03
(12 hours ago)
[Sat Sep 12 05:34:02.771475 2026] [authz_core:error] [pid 324866:tid 324969] [client 34.81.118.238:4 ...
show more
[Sat Sep 12 05:34:02.771475 2026] [authz_core:error] [pid 324866:tid 324969] [client 34.81.118.238:47728] AH01630: client denied by server configuration: /var/www/thejunkymonkey.com/web/index.php
[Sat Sep 12 05:34:02.771855 2026] [authz_core:error] [pid 324866:tid 324969] [client 34.81.118.238:47728] AH01630: client denied by server configuration: /var/www/thejunkymonkey.com/web/index.php
[Sat Sep 12 05:34:03.042487 2026] [authz_core:error] [pid 324866:tid 324967] [client 34.81.118.238:47728] AH01630: client denied by server configuration: /var/www/thejunkymonkey.com/web/index.php
...
show less
Brute-Force
🇸🇬
naveeddaros
2026-09-12 05:26:48
(13 hours ago)
HTTP Flood DDoS attack detected
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-12 03:36:35
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.118.238 (238.118.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.118.238 (238.118.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 23:36:30.593624 2026] [security2:error] [pid 13722:tid 13722] [client 34.81.118.238:60854] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theebees.com"] [uri "/.git/config"] [unique_id "aqTIvvw5_QXK4dnyFbs2wgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
wbsouza
2026-09-12 03:36:20
(14 hours ago)
CrowdSec: infra/bad-path-probe — automated firewall drops on self-hosted IDS sensor
Hacking
🇬🇧
consul.to
2026-09-12 02:37:08
(15 hours ago)
Web attack/malicious scanning detected
Web App Attack