Anonymous
2026-09-07 06:16:28
(19 hours ago)
34.85.191.207 detected and blocked by apache-modsecurity after 1 try
Brute-Force
Anonymous
2026-09-07 06:15:10
(19 hours ago)
Web App Attack
🇳🇿
Antinson
2026-09-07 04:59:53
(20 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot
🇹🇷
pashait
2026-09-07 03:59:08
(21 hours ago)
Auto-blocked by Seczar SecureOps — IPS Web Attack Signature (32 events in 5min) at 2026-09-07 03:59
Web App Attack
Bad Web Bot
🇳🇱
0xffffffff
2026-09-06 09:06:41
(1 day ago)
[2026-09-06 12:06:39.783307] [authz_core:error] [pid 1447578:tid 132048199071424] [client 34.85.191. ...
show more
[2026-09-06 12:06:39.783307] [authz_core:error] [pid 1447578:tid 132048199071424] [client 34.85.191.207:51264] AH01630: client denied by server configuration: /var/www/html/api , error_notes:wrong-host , URI:'/api/.git/config'
[2026-09-06 12:06:39.783819] [authz_core:error] [pid 872468:tid 132048148715200] [client 34.85.191.207:51274] AH01630: client denied by server configuration: /var/www/html/wordpress , error_notes:wrong-host , URI:'/wordpress/.git/config'
[2026-09-06 12:06:39.784061] [authz_core:error] [pid 872468:tid 132048148715200] [client 34.85.191.207:51288] AH01630: client denied by server configuration: /var/www/html/app , error_notes:wrong-host , URI:'/app/.git/config'
[2026-09-06 12:06:39.784224] [authz_core:error] [pid 872468:tid 132048148715200] [client 34.85.191.207:51308] AH01630: client denied by server configuration: /var/www/html/www , error_notes:wrong-host , URI:'/www/.git/config'
[2026-09-06 12:06:39.784369] [authz_core:error] [pid 872468:tid 132048148715200] [client 34.85.191.207:5129
show less
Web App Attack
Bad Web Bot
🇨🇿
ddw
2026-09-06 05:27:47
(1 day ago)
ModSecurity detection - Rules: 930130(Restricted File Access Attempt)
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 03:14:41
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.85.191.207 (207.191.85.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.191.207 (207.191.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:14:35.723847 2026] [security2:error] [pid 9252:tid 9252] [client 34.85.191.207:50684] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barbaraedidin.com"] [uri "/src/.git/config"] [unique_id "apzam_mtb0jU_83NYeejawAAADs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
SwinT
2026-09-06 02:00:10
(1 day ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 02:00:02
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.85.191.207 (207.191.85.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.191.207 (207.191.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 21:59:58.108553 2026] [security2:error] [pid 5871:tid 5871] [client 34.85.191.207:48020] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.abq4you.com"] [uri "/.git/config"] [unique_id "apzJHuBPKA85HawCBmrCPwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-05 23:12:13
(2 days ago)
Web attack/malicious scanning detected
Web App Attack
🇩🇪
Jarda_H
2026-09-05 22:49:21
(2 days ago)
http-sensitive-files
Web App Attack
🇳🇱
e.fierstra
2026-09-05 20:35:21
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
IndigoRidge
2026-09-05 12:26:38
(2 days ago)
[05/Sep/2026:08:26:38.154779 --0400] apwKfrGdfJ7iVXQM176R4wAAAAk 34.85.191.207 43792 127.0.0.1 7080
...
show more
[05/Sep/2026:08:26:38.154779 --0400] apwKfrGdfJ7iVXQM176R4wAAAAk 34.85.191.207 43792 127.0.0.1 7080
[05/Sep/2026:08:26:38.160183 --0400] apwKfisRpWmRTO4zo2rHdQAAAI8 34.85.191.207 43794 127.0.0.1 7080
[05/Sep/2026:08:26:38.162637 --0400] apwKfrGdfJ7iVXQM176R5AAAAAs 34.85.191.207 43806 127.0.0.1 7080
[05/Sep/2026:08:26:38.168237 --0400] apwKfisRpWmRTO4zo2rHdgAAAJA 34.85.191.207 43822 127.0.0.1 7080
[05/Sep/2026:08:26:38.213404 --0400] apwKfnff4X66-nEln9-sXgAAAEE 34.85.191.207 43838 127.0.0.1 7080
...
show less
Web App Attack
🇩🇪
sigurg
2026-09-05 10:43:09
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇫🇷
YF
2026-09-05 10:30:45
(2 days ago)
Distributed subnet attack — coordinated scanning from multiple IPs in the same /24
DDoS Attack
Web App Attack