๐ฉ๐ช
ghostwarriors
2026-09-02 18:50:07
(32 minutes ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐จ๐ญ
zynex
2026-09-02 18:29:48
(52 minutes ago)
URL Probing: /.env
Web App Attack
๐ฉ๐ช
yitzhaq
2026-09-02 18:28:23
(54 minutes ago)
34.87.240.117 - - [02/Sep/2026:20:28:17 +0200] "GET / HTTP/1.1" 200 5527 "-" "Mozilla/5.0 (Windows N ...
show more
34.87.240.117 - - [02/Sep/2026:20:28:17 +0200] "GET / HTTP/1.1" 200 5527 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.87.240.117 - - [02/Sep/2026:20:28:17 +0200] "POST / HTTP/1.1" 200 1506 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.87.240.117 - - [02/Sep/2026:20:28:18 +0200] "GET /.git/config HTTP/1.1" 403 517 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.87.240.117 - - [02/Sep/2026:20:28:18 +0200] "POST / HTTP/1.1" 200 1506 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.87.240.117 - - [02/Sep/2026:20:28:18 +0200] "GET /.env HTTP/1.1" 404 514 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.87.240.117 - - [02/Sep/2026
show less
Web App Attack
Hacking
๐บ๐ธ
Lee Daniel
2026-09-02 16:47:20
(2 hours ago)
34.87.240.117 - - [02/Sep/2026:12:47:19 -0400] "GET /.env HTTP/1.1" 403 6307 "-" "Mozilla/5.0 (Macin ...
show more
34.87.240.117 - - [02/Sep/2026:12:47:19 -0400] "GET /.env HTTP/1.1" 403 6307 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-02 14:22:52
(4 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฎ๐ช
thecivvie
2026-09-02 13:45:01
(5 hours ago)
foomuuri firewall banned tcp/443 6 attempts
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-02 12:31:57
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.87.240.117 (117.240.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.240.117 (117.240.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 08:31:49.535560 2026] [security2:error] [pid 15425:tid 15425] [client 34.87.240.117:48734] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thechoiceint.com"] [uri "/.git/config"] [unique_id "apgXNUCa9iF2XOI59aOY1gAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 12:12:27
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.87.240.117 (117.240.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.240.117 (117.240.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 08:12:23.556549 2026] [security2:error] [pid 5848:tid 5848] [client 34.87.240.117:53816] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thechildrenscharity.net"] [uri "/.git/config"] [unique_id "apgSp24FW-DuxmS2PnLrAgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 11:26:10
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.87.240.117 (117.240.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.240.117 (117.240.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 07:26:06.613574 2026] [security2:error] [pid 30470:tid 30470] [client 34.87.240.117:52972] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thecharlesmadu.com"] [uri "/.git/config"] [unique_id "apgHzt6WJh6vDuGXpUafJQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Apache
2026-09-02 10:46:31
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.87.240.117 (AU/Australia/117.240.87.34.bc.go ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.240.117 (AU/Australia/117.240.87.34.bc.googleusercontent.com): 5 in the last 300 secs (CF_ENABLE)
show less
Brute-Force
Web App Attack
๐บ๐ธ
antlac1
2026-09-02 09:50:21
(9 hours ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 07:46:09
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.87.240.117 (117.240.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.240.117 (117.240.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 03:46:03.014975 2026] [security2:error] [pid 5956:tid 5956] [client 34.87.240.117:51300] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thecalls.net"] [uri "/.git/config"] [unique_id "apfUO2OSb2z977yhH5m5IQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-02 07:23:11
(11 hours ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-02 06:11:14
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.87.240.117 (117.240.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.240.117 (117.240.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 02:11:10.297739 2026] [security2:error] [pid 6002:tid 6002] [client 34.87.240.117:45658] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thebumans.com"] [uri "/.git/config"] [unique_id "ape9_g8ZAS6TD0Rhvp15UQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
dbmwebdesign
2026-09-02 05:20:06
(14 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack