๐ณ๐ฑ
wlt-blocker
2026-09-03 22:41:25
(22 minutes ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 22:01:07
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.81.210.188 (188.210.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.210.188 (188.210.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 18:01:00.108302 2026] [security2:error] [pid 30850:tid 30850] [client 34.81.210.188:18462] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "securitymontana.com"] [uri "/.git/config"] [unique_id "apnuHDmgT7WBSkFWTVf3nQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
spot
2026-09-03 21:54:53
(1 hour ago)
34.81.210.188 - - [03/Sep/2026:22:54:48 +0100] "GET /.git/config HTTP/1.1" 301 569 "-" "Mozilla/5.0 ...
show more
34.81.210.188 - - [03/Sep/2026:22:54:48 +0100] "GET /.git/config HTTP/1.1" 301 569 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.36"
...
show less
Web App Attack
Hacking
๐ฉ๐ช
thesimonmanuel
2026-09-03 20:43:22
(2 hours ago)
34.81.210.188 - - [04/Sep/2026:02:13:21 +0530] "GET /.git/config HTTP/1.1" 499 0 "-" "Mozilla/5.0 (W ...
show more
34.81.210.188 - - [04/Sep/2026:02:13:21 +0530] "GET /.git/config HTTP/1.1" 499 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.36"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 20:35:50
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.210.188 (188.210.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.210.188 (188.210.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 16:35:47.245911 2026] [security2:error] [pid 23464:tid 23464] [client 34.81.210.188:62974] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sabbathschoolguide.com"] [uri "/.git/config"] [unique_id "apnaIztH-pL7UyJ5pzdM4QAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-09-03 20:08:00
(2 hours ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [ice01,ice02,wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
paissangroup
2026-09-03 19:45:03
(3 hours ago)
Multiple WAF Violations
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-03 19:33:57
(3 hours ago)
cloudlinux2 fail2ban: 2026-09-03 21:29:22,675 fail2ban.filter [1472]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-03 21:29:22,675 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 35.227.101.75 - 2026-09-03 21:29:22cloudlinux2 fail2ban: 2026-09-03 21:29:28,686 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 35.227.35.122 - 2026-09-03 21:29:28cloudlinux2 fail2ban: 2026-09-03 21:29:44,976 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 207.154.247.228 - 2026-09-03 21:29:44cloudlinux2 fail2ban: 2026-09-03 21:29:45,066 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 207.154.247.228 - 2026-09-03 21:29:45cloudlinux2 fail2ban: 2026-09-03 21:30:10,587 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 35.184.244.140 - 2026-09-03 21:30:10cloudlinux2 fail2ban: 2026-09-03 21:30:08,435 fail2ban.actions [1472]: NOTICE [plesk-modsecurity] Unban 18.145.7.72cloudlinux2 fail2ban: 2026-09-03 21:30:53,350 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 35.237.229.237 - 2026-09-03 21:30:53cloudlinux2 f
show less
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-09-03 19:30:51
(3 hours ago)
[Fri Sep 04 05:30:50.148676 2026] [security2:error] [pid 558812] [client 34.81.210.188:5938] [client ...
show more
[Fri Sep 04 05:30:50.148676 2026] [security2:error] [pid 558812] [client 34.81.210.188:5938] [client 34.81.210.188] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "iaki.com.au"] [uri "/.git/config"] [unique_id "apnK6qtTdR8S5tHNKZSz2wAAABo"]
...
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-03 19:29:49
(3 hours ago)
[03/Sep/2026:22:29:49 +0300] -- 34.81.210.188 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git ...
show more
[03/Sep/2026:22:29:49 +0300] -- 34.81.210.188 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 19:21:06
(3 hours ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-09-03 19:08:00
(3 hours ago)
Fail2Ban - [RECIDIVE]Repeat offender across multiple jails on recidive ... [ice02,mx02,wa01]
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
๐ฎ๐ฉ
Burayot
2026-09-03 19:02:49
(4 hours ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.81.210.188 (TW/Taiwan/188.210.81 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.81.210.188 (TW/Taiwan/188.210.81.34.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 18:38:25
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.210.188 (188.210.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.210.188 (188.210.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 14:38:20.282300 2026] [security2:error] [pid 17304:tid 17304] [client 34.81.210.188:31282] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "teenybikini.com"] [uri "/.git/config"] [unique_id "apm-nBMCGlzpFUO0DwprHQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-09-03 18:00:24
(5 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking