🇳🇱
Site.eu
2026-09-12 10:27:43
(3 hours ago)
Excessive multi-domain requests
Brute-Force
🇺🇸
TPI-Abuse
2026-09-12 06:00:42
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.87.193.215 (215.193.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.193.215 (215.193.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 02:00:38.433657 2026] [security2:error] [pid 8491:tid 8491] [client 34.87.193.215:43000] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "usagreenrecycling.com"] [uri "/.git/config"] [unique_id "aqTqhslhJo7yqzlSeAg7tgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 05:21:03
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.87.193.215 (215.193.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.193.215 (215.193.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 01:20:57.619137 2026] [security2:error] [pid 17605:tid 17605] [client 34.87.193.215:36270] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "usaenquirer.com"] [uri "/.git/config"] [unique_id "aqThOf5EUpIXRz_AcPLxaAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 04:18:50
(9 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.87.193.215 (215.193.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.87.193.215 (215.193.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 00:18:46.994355 2026] [security2:error] [pid 447:tid 447] [client 34.87.193.215:35194] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||usaangelinvestors.com|F|2"] [data ".env.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "usaangelinvestors.com"] [uri "/.env.bak"] [unique_id "aqTSpoOSZxWL2bKyosxhFwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-11 18:15:47
(19 hours ago)
Excessive 404/403 errors
Brute-Force
🇺🇸
TPI-Abuse
2026-09-11 17:56:12
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.87.193.215 (215.193.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.193.215 (215.193.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 13:56:08.063574 2026] [security2:error] [pid 6949:tid 6949] [client 34.87.193.215:46512] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vidalwrightlaw.com"] [uri "/.git/config"] [unique_id "aqRAuDWSODqKlfVd4L1mCwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
kosada.com
2026-09-11 17:52:02
(19 hours ago)
Repeated exploit attempts, for example: /.env.staging /.env (HTTP/1.1 port 443, user agent: "Mozilla ...
show more
Repeated exploit attempts, for example: /.env.staging /.env (HTTP/1.1 port 443, user agent: "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36")
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 17:15:24
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.87.193.215 (215.193.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.193.215 (215.193.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 13:15:17.629922 2026] [security2:error] [pid 5431:tid 5431] [client 34.87.193.215:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vidacellenlaweb.com"] [uri "/.git/config"] [unique_id "aqQ3JbtVatyMsnVO8P3i-QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
ger-stg-sifi1
2026-09-11 16:43:48
(20 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 16:03:13
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.87.193.215 (215.193.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.193.215 (215.193.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 12:03:08.894821 2026] [security2:error] [pid 28131:tid 28131] [client 34.87.193.215:38220] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "victotex.com"] [uri "/.git/config"] [unique_id "aqQmPE0M2K62zCIUXhLaqwAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 14:49:56
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.87.193.215 (215.193.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.193.215 (215.193.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 10:49:49.815100 2026] [security2:error] [pid 4846:tid 4846] [client 34.87.193.215:47208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "victorvictorinc.com.victorvictor.biz"] [uri "/.git/config"] [unique_id "aqQVDbyvB7YFf_TwY8-kbQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
BlueWire Hosting
2026-09-11 14:13:17
(23 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
🇳🇱
debestelapp
2026-09-11 13:40:13
(23 hours ago)
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 11:29:22
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.87.193.215 (215.193.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.193.215 (215.193.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 07:29:16.155023 2026] [security2:error] [pid 1818796:tid 1819612] [client 34.87.193.215:39488] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "victorchiarizia.com"] [uri "/.git/config"] [unique_id "aqPmDBjxZJ4jL5ekSsw20QAAAU0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
cmbplf
2026-09-11 11:27:28
(1 day ago)
8.050 requests with url.path *.env
1.530 requests with url.path *phpinfo.php
250 requests with ur ...
show more
8.050 requests with url.path *.env
1.530 requests with url.path *phpinfo.php
250 requests with url.path *credentials.json
127 requests with url.path *.php.bak
show less
Brute-Force
Bad Web Bot