๐ฉ๐ช
Gwyneth Llewelyn
2026-09-02 11:14:46
(3 hours ago)
2026/09/02 12:14:38 [error] 380594#380594: *2266670 access forbidden by rule, client: 34.92.27.137, ...
show more
2026/09/02 12:14:38 [error] 380594#380594: *2266670 access forbidden by rule, client: 34.92.27.137, server: webapp.gwynethllewelyn.net, request: "GET /.env HTTP/1.1", host: "webapp.gwynethllewelyn.net"
34.92.27.137 - - [02/Sep/2026:12:14:38 +0100] "GET /.env HTTP/1.1" 403 1178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
2026/09/02 12:14:44 [error] 380594#380594: *2266670 access forbidden by rule, client: 34.92.27.137, server: webapp.gwynethllewelyn.net, request: "GET /app/.env HTTP/1.1", host: "webapp.gwynethllewelyn.net"
show less
Brute-Force
Web App Attack
๐ฉ๐ช
webanyone
2026-09-02 10:17:19
(4 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐ฉ๐ช
LRob
2026-09-02 10:07:43
(4 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config (+1 more) | 2026-09-02 10:07 UTC
show less
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-09-02 10:05:37
(4 hours ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-02 10:03:16
(4 hours ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-09-02 09:41:36
(4 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
Anonymous
2026-09-02 09:30:03
(4 hours ago)
| Suspicious URL access.
Web App Attack
Hacking
SQL Injection
Anonymous
2026-09-02 09:27:36
(4 hours ago)
Blocked by siteaihub.com: live autoban: immediate: /.git/config
Hacking
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-02 08:53:57
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.92.27.137 (137.27.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.27.137 (137.27.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 04:53:54.071990 2026] [security2:error] [pid 5320:tid 5320] [client 34.92.27.137:40994] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "web92.dnchosting.com"] [uri "/.git/config"] [unique_id "apfkIpqeMpKoe2y82-3kpAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 08:35:24
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.92.27.137 (137.27.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.27.137 (137.27.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 04:35:18.699366 2026] [security2:error] [pid 2522:tid 2522] [client 34.92.27.137:55336] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "web71.dnchosting.com"] [uri "/.git/config"] [unique_id "apffxp28HAyjqFUkR0LKogAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 08:07:15
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.92.27.137 (137.27.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.27.137 (137.27.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 04:07:09.990461 2026] [security2:error] [pid 10329:tid 10329] [client 34.92.27.137:34738] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "web58.dnchosting.com"] [uri "/.git/config"] [unique_id "apfZLdNZvZYVolmY6UG5WwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 07:51:59
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.92.27.137 (137.27.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.27.137 (137.27.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 03:51:52.071527 2026] [security2:error] [pid 21162:tid 21162] [client 34.92.27.137:48506] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "web50.dnchosting.com"] [uri "/.git/config"] [unique_id "apfVmC0lXZrbW-0wgMhJmQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 07:50:16
(6 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐ฎ๐น
Inartis
2026-09-02 07:49:31
(6 hours ago)
34.92.27.137 - - [02/Sep/2026:09:49:29 +0200] "GET /.git/config HTTP/1.1" 404 418 "-" "Mozilla/5.0 ( ...
show more
34.92.27.137 - - [02/Sep/2026:09:49:29 +0200] "GET /.git/config HTTP/1.1" 404 418 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
Inartis
2026-09-02 07:13:37
(7 hours ago)
34.92.27.137 - - [02/Sep/2026:09:13:35 +0200] "GET /.git/config HTTP/1.1" 404 458 "-" "Mozilla/5.0 ( ...
show more
34.92.27.137 - - [02/Sep/2026:09:13:35 +0200] "GET /.git/config HTTP/1.1" 404 458 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.92.27.137 - - [02/Sep/2026:09:13:36 +0200] "GET /.env HTTP/1.1" 404 458 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack