🇷🇴
iulianh
2026-09-10 21:09:48
(56 minutes ago)
80,443
Brute-Force
SSH
🇺🇸
TPI-Abuse
2026-09-10 16:06:30
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.78.72 (72.78.97.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.78.72 (72.78.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 12:06:22.782615 2026] [security2:error] [pid 2271:tid 2271] [client 34.97.78.72:43262] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.clowaterart.com.aromatherapyricebags.com"] [uri "/.git/config"] [unique_id "aqLVfoqp3dLkaaxHbzdIqQAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇮
mnazibo
2026-09-10 13:00:04
(9 hours ago)
Date: 10/Sep/2026 15:47:10 | Reported IP: 34.97.78.72 mod_security | id: 930130 932130 932235 932260 ...
show more
Date: 10/Sep/2026 15:47:10 | Reported IP: 34.97.78.72 mod_security | id: 930130 932130 932235 932260 933135 934100 934130 942151 942550 | JP/group.my_domain/- | Connections: 265 | Blocked: Permanent Block: [LF_MODSEC] | URIs: /; /actions/.env; /admin/.env; /administrator/.env; /administrator/phpinfo.php; /admin-panel/.env; /admin/phpinfo.php; /angular/.env; /ansible/.env; /api/dev/.env; /api/.env; /api/staging/.env; /api/v1/.env; /api/v2/.env; /api/v3/.env; /app/.env; /application_default_credentials.json; /application/.env; /apps/.env; /aws/.env; /azure/.env; /backend/.env; /backup/.env; /backups/.env; /beta/.env; /beta/phpinfo.php; /bin/.env; /bootstrap/.env; /brevo/.env; /build/.env; /buildkite/.env; /bulk/.env; /cache/.env; /cakephp/.env; /campaign/.env; /cd/.env; /ci/.env; /circleci/.env; /client/.env; /cloud/.env; /cms/.env; /codeigniter/.env; /config/app/.env; /config/.env; /.config/gcloud/application_default_credentials.json; /c
show less
SQL Injection
Brute-Force
Bad Web Bot
🇩🇪
IVski.com
2026-09-10 12:11:37
(9 hours ago)
IVski WAF | Sensitive file probe - looking for exposed .git/config
Hacking
Brute-Force
Web App Attack
🇫🇷
Octopuce
2026-09-10 11:45:28
(10 hours ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
Anonymous
2026-09-10 11:17:24
(10 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇸🇪
vaia.cloud
2026-09-10 09:20:02
(12 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
🇳🇱
Site.eu
2026-09-10 09:00:44
(13 hours ago)
Excessive multi-domain requests
Brute-Force
🇺🇸
TPI-Abuse
2026-09-10 08:52:50
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.78.72 (72.78.97.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.78.72 (72.78.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 04:52:43.062821 2026] [security2:error] [pid 6617:tid 6617] [client 34.97.78.72:35482] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.clisanchezenterprises.com.almudenastrust.com"] [uri "/.git/config"] [unique_id "aqJv254WZXmh740ytyF-lAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-10 08:18:06
(13 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇫🇷
masterguru
2026-09-10 07:13:56
(14 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
Anonymous
2026-09-10 06:20:02
(15 hours ago)
Banned by Fail2Ban on server
Web App Attack
Anonymous
2026-09-10 06:20:01
(15 hours ago)
suspicious request in access.log
Web App Attack
🇫🇷
masterguru
2026-09-10 06:14:40
(15 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-10 06:08:46
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.78.72 (72.78.97.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.78.72 (72.78.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 02:08:42.067383 2026] [security2:error] [pid 15606:tid 15606] [client 34.97.78.72:40338] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.clinicadentaldiaz.aticom.es"] [uri "/.git/config"] [unique_id "aqJJamJXZ5btOYRAQQpmfgAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack