๐ซ๐ฎ
payincog
2026-08-24 16:00:30
(15 hours ago)
Date: Aug 24 18:25:19 2026 EAT | Reported IP: 34.81.53.89 mod_security | id: 930130 949110 | TW/pay. ...
show more
Date: Aug 24 18:25:19 2026 EAT | Reported IP: 34.81.53.89 mod_security | id: 930130 949110 | TW/pay.my_domain/- | Connections: 1 | Blocked: Permanent Block: [LF_MODSEC] | Logs: ; Restricted File Access Attempt; Restricted File Access Attempt; Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5)
show less
SQL Injection
Brute-Force
Bad Web Bot
๐ฆ๐ช
CG
2026-08-24 15:59:47
(15 hours ago)
Web application attack, Automated scan
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
CBJ
2026-08-24 15:43:47
(16 hours ago)
fail2ban: apache-filepath-recon
...
Web App Attack
๐ซ๐ท
ELYAZ
2026-08-24 15:32:33
(16 hours ago)
(y3) Failed access -byebye- from 34.81.53.89 (TW/Taiwan/89.53.81.34.bc.googleusercontent.com): (CF_ ...
show more
(y3) Failed access -byebye- from 34.81.53.89 (TW/Taiwan/89.53.81.34.bc.googleusercontent.com): (CF_ENABLE)
show less
Hacking
๐ฉ๐ช
Blexyel
2026-08-24 15:27:17
(16 hours ago)
34.81.53.89 - - [24/Aug/2026:17:27:17 +0200] "GET /.git/config HTTP/1.1" 404 435 "-" "Mozilla/5.0 (W ...
show more
34.81.53.89 - - [24/Aug/2026:17:27:17 +0200] "GET /.git/config HTTP/1.1" 404 435 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36" "share.fomx.gay"
...
show less
Brute-Force
Web App Attack
๐ฌ๐ง
consul.to
2026-08-24 15:24:23
(16 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 15:21:33
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.53.89 (89.53.81.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.53.89 (89.53.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 11:21:28.614168 2026] [security2:error] [pid 30945:tid 30945] [client 34.81.53.89:25432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "starstrategy.ltd"] [uri "/.git/config"] [unique_id "aoxheHSlX8isAEoylrZjtAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
bescared
2026-08-24 15:18:55
(16 hours ago)
F2B - Malicious activity detected. URL Probing. -8ff06ede-
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 15:04:34
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.53.89 (89.53.81.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.53.89 (89.53.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 11:04:26.580066 2026] [security2:error] [pid 4160:tid 4160] [client 34.81.53.89:10084] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "williams-rodriguez.org"] [uri "/.git/config"] [unique_id "aoxdejQnkt4ZLpWJNhUSMwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-08-24 14:26:33
(17 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit Block. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: astropot.online | URI: /.git/config | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 14:04:28
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.53.89 (89.53.81.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.53.89 (89.53.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 10:04:22.602337 2026] [security2:error] [pid 28835:tid 28835] [client 34.81.53.89:36542] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "periodpiano.org"] [uri "/.git/config"] [unique_id "aoxPZgxE5m1jAULjR0-8agAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 13:04:20
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.53.89 (89.53.81.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.53.89 (89.53.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 09:04:14.394979 2026] [security2:error] [pid 16462:tid 16478] [client 34.81.53.89:41224] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "classactionlawsuit.org"] [uri "/.git/config"] [unique_id "aoxBTveLCcVO386flblZzgAAAI0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 12:44:17
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.53.89 (89.53.81.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.53.89 (89.53.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 08:44:12.523310 2026] [security2:error] [pid 14559:tid 14559] [client 34.81.53.89:53864] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "circleway.org"] [uri "/.git/config"] [unique_id "aow8nAFNOUd_SpRAMDlqxwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack