Anonymous
2026-09-16 07:47:40
(6 hours ago)
PSCSERV WPSCAN 34.95.13.78
Bad Web Bot
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-09-16 07:28:37
(6 hours ago)
Scanning for web/db/file exploits on www.becatech.be
SQL Injection
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-16 02:17:34
(11 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ซ๐ฎ
paissangroup
2026-09-15 13:13:18
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
LRob
2026-09-15 13:01:56
(1 day ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-15 13:01 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 12:20:56
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.95.13.78 (78.13.95.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.95.13.78 (78.13.95.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 08:20:50.189271 2026] [security2:error] [pid 23740:tid 23740] [client 34.95.13.78:38440] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sicktrax.com"] [uri "/.git/config"] [unique_id "aqk4IkPm-JSU5-lO89a6OAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-09-15 11:30:52
(1 day ago)
34.95.13.78 - - [15/Sep/2026:11:29:51 +0000] "POST / HTTP/1.1" 403 14392 "-" "Mozilla/5.0 (Macintosh ...
show more
34.95.13.78 - - [15/Sep/2026:11:29:51 +0000] "POST / HTTP/1.1" 403 14392 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.95.13.78"
34.95.13.78 - - [15/Sep/2026:11:29:51 +0000] "POST / HTTP/1.1" 403 14392 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.95.13.78"
34.95.13.78 - - [15/Sep/2026:11:29:51 +0000] "GET /.git/config HTTP/1.1" 403 14282 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.95.13.78"
34.95.13.78 - - [15/Sep/2026:11:29:51 +0000] "GET /.env HTTP/1.1" 403 14281 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.95.13.78"
34.95.13.78 - - [15/Sep/2026:11:29:52 +0000] "GET /.env.local HTTP/1.1" 403 14282 "-" "Mozilla/5.0 (Macinto
...
show less
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-15 11:13:55
(1 day ago)
cloudlinux2 fail2ban: 2026-09-15 13:08:59,061 fail2ban.filter [1908]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-15 13:08:59,061 fail2ban.filter [1908]: INFO [plesk-modsecurity] Found 39.194.3.66 - 2026-09-15 13:08:58cloudlinux2 fail2ban: 2026-09-15 13:09:39,513 fail2ban.filter [1908]: INFO [recidive] Found 34.95.13.78 - 2026-09-15 13:09:39cloudlinux2 fail2ban: 2026-09-15 13:09:39,426 fail2ban.filter [1908]: INFO [plesk-modsecurity] Found 34.95.13.78 - 2026-09-15 13:09:39cloudlinux2 fail2ban: 2026-09-15 13:09:39,122 fail2ban.filter [1908]: INFO [plesk-modsecurity] Found 34.95.13.78 - 2026-09-15 13:09:38cloudlinux2 fail2ban: 2026-09-15 13:09:39,510 fail2ban.actions [1908]: NOTICE [plesk-modsecurity] Ban 34.95.13.78cloudlinux2 fail2ban: 2026-09-15 13:09:39,207 fail2ban.filter [1908]: INFO [plesk-modsecurity] Found 34.95.13.78 - 2026-09-15 13:09:39cloudlinux2 fail2ban: 2026-09-15 13:09:39,316 fail2ban.filter [1908]: INFO [plesk-modsecurity] Found 34.95.13.78 - 2026-09-15 13:09:39cloudlinux2 fail2ban: 2026-09-15 13:09:49,
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 10:11:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.95.13.78 (78.13.95.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.95.13.78 (78.13.95.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 06:11:26.032268 2026] [security2:error] [pid 6516:tid 6516] [client 34.95.13.78:51290] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "siciliafamily.com"] [uri "/.git/config"] [unique_id "aqkZzkdNxc5OjsehqJqiywAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-15 07:55:03
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-09-15 06:18:42
(1 day ago)
Web App Attack
๐น๐ท
hostopya.com
2026-09-15 05:36:05
(1 day ago)
[plesk-apache] 6 failed attempt(s). Log: [Tue Sep 15 08:36:03.301322 2026] [authz_core:error] [pid 1 ...
show more
[plesk-apache] 6 failed attempt(s). Log: [Tue Sep 15 08:36:03.301322 2026] [authz_core:error] [pid 102079] [client 34.95.13.78:0] AH01630: client denied by server configuration: /var/www/vhosts/wiantex.com/public/.env|[Tue Sep 15 08:36:03.557622 2026] [authz_core:error] [pid 139796] [client 34.95.13.78:0] AH01630: client denied by server configuration: /var/www/vhosts/wiantex.com/public/.env.local|[Tue Sep 15 08:36:03.813757 2026] [authz_core:error] [pid 148070] [client 34.95.13.78:0] AH01630: client denied by server configuration: /var/www/vhosts/wiantex.com/public/.env.production|[Tue Sep 15 08:36:04.070458 2026] [authz_core:error] [pid 148046] [client 34.95.13.78:0] AH01630: client denied by server configuration: /var/www/vhosts/wiantex.com/public/.env.staging|[Tue Sep 15 08:36:04.327875 2026] [authz_core:error] [pid 139798] [client 34.95.13.78:0] AH01630: client denied by server configuration: /var/www/vhosts/wiantex.com/public/.env.development
show less
Brute-Force
Web App Attack