🇸🇪
vaia.cloud
2026-09-07 23:05:02
(2 minutes ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
🇮🇹
VHosting
2026-09-07 20:20:03
(2 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇸🇪
vaia.cloud
2026-09-07 17:50:02
(5 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 10:08:54
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.200.94.49 (49.94.200.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.200.94.49 (49.94.200.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 06:08:49.695593 2026] [security2:error] [pid 2634:tid 2634] [client 35.200.94.49:50534] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.fpstudios.puoci.com"] [uri "/.git/config"] [unique_id "ap6NMR1EBH3vHu_vHUuspwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-07 10:00:11
(13 hours ago)
| Suspicious URL access.
Web App Attack
Hacking
SQL Injection
🇳🇱
Site.eu
2026-09-07 08:19:50
(14 hours ago)
Excessive 404/403 errors
Brute-Force
🇭🇺
miszterx.hu
2026-09-07 07:59:34
(15 hours ago)
XORP (haproxy): 269x HTTP 404/403/500 or handshake failure in 24h. Automated report from log_check_i ...
show more
XORP (haproxy): 269x HTTP 404/403/500 or handshake failure in 24h. Automated report from log_check_iptables_generator.sh (xorp.hu)
show less
Web App Attack
Anonymous
2026-09-07 05:44:57
(17 hours ago)
Multiple web server 400 error codes from same source ip
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 05:42:13
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.200.94.49 (49.94.200.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.200.94.49 (49.94.200.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 01:42:08.431178 2026] [security2:error] [pid 4182:tid 4182] [client 35.200.94.49:53984] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.fsmfl.com"] [uri "/.git/config"] [unique_id "ap5OsA1Lb2ldCroa_MpMyQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-07 02:58:51
(20 hours ago)
Excessive multi-domain requests
Brute-Force
🇫🇷
masterguru
2026-09-07 02:02:35
(21 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 01:30:11
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.200.94.49 (49.94.200.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.200.94.49 (49.94.200.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 21:30:05.818561 2026] [security2:error] [pid 17821:tid 17821] [client 35.200.94.49:43212] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.fruitsinthedesert.prayers4america.com"] [uri "/.git/config"] [unique_id "ap4TnW278wORKBODMs3NzwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 00:51:05
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.200.94.49 (49.94.200.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.200.94.49 (49.94.200.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 20:50:59.817706 2026] [security2:error] [pid 15632:tid 15632] [client 35.200.94.49:47034] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.fruitacpa.com.rooksfamily.com"] [uri "/.git/config"] [unique_id "ap4Kc4cfj3LijmXbQ68jygAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
CoreTech srl
2026-09-07 00:23:56
(22 hours ago)
cloudlinux2 fail2ban: 2026-09-07 02:19:29,681 fail2ban.filter [2048]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-07 02:19:29,681 fail2ban.filter [2048]: INFO [plesk-modsecurity] Found 134.122.105.4 - 2026-09-07 02:19:29cloudlinux2 fail2ban: 2026-09-07 02:19:58,759 fail2ban.filter [2048]: INFO [plesk-wordpress] Found 92.119.36.141 - 2026-09-07 02:19:58cloudlinux2 fail2ban: 2026-09-07 02:19:49,667 fail2ban.actions [2048]: NOTICE [plesk-modsecurity] Unban 34.18.216.28cloudlinux2 fail2ban: 2026-09-07 02:20:20,520 fail2ban.filter [2048]: INFO [plesk-wordpress] Found 136.144.33.58 - 2026-09-07 02:20:20cloudlinux2 fail2ban: 2026-09-07 02:21:56,586 fail2ban.filter [2048]: INFO [plesk-modsecurity] Found 34.80.236.234 - 2026-09-07 02:21:56cloudlinux2 fail2ban: 2026-09-07 02:21:57,013 fail2ban.actions [2048]: NOTICE [plesk-modsecurity] Ban 34.80.236.234cloudlinux2 fail2ban: 2026-09-07 02:21:56,564 fail2ban.filter [2048]: INFO [plesk-modsecurity] Found 34.80.236.234 - 2026-09-07 02:21:56cloudlinux2 fail2ban: 2026-09-07 02:21:57,015
show less
Web App Attack
🇩🇪
LRob
2026-09-06 23:44:55
(23 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config (+1 more) | 2026-09-06 23:44 UTC
show less
Hacking
Web App Attack