Anonymous
2026-09-07 16:00:33
(35 minutes ago)
GET /.git/config HTTP/1.1
...
Web App Attack
🇳🇱
Savvii
2026-09-07 15:43:55
(52 minutes ago)
20 attempts against mh-misbehave-ban on onion
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
gadix
2026-09-07 15:16:29
(1 hour ago)
[07/Sep/2026:17:16:27.952900 +0200] ap7VS6ot5KP4dLafxQQAOgAAAAY 35.234.134.19 38568 127.0.0.1 7081
[ ...
show more
[07/Sep/2026:17:16:27.952900 +0200] ap7VS6ot5KP4dLafxQQAOgAAAAY 35.234.134.19 38568 127.0.0.1 7081
[07/Sep/2026:17:16:28.078654 +0200] ap7VTNAVnmG4xxZ9Pw4BKwAAAAg 35.234.134.19 38590 127.0.0.1 7081
[07/Sep/2026:17:16:28.196673 +0200] ap7VTGqR1Drb4HadcAPsPAAAAAc 35.234.134.19 38604 127.0.0.1 7081
...
show less
Web App Attack
🇮🇹
VHosting
2026-09-07 12:55:02
(3 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 12:29:24
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.234.134.19 (19.134.234.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.134.19 (19.134.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 08:29:20.823209 2026] [security2:error] [pid 5253:tid 5253] [client 35.234.134.19:59296] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.moontouchmassage.leadek.com"] [uri "/.git/config"] [unique_id "ap6uIMeby7jDDfjUcefzAgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 12:07:19
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.234.134.19 (19.134.234.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.134.19 (19.134.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 08:07:12.358520 2026] [security2:error] [pid 21267:tid 21267] [client 35.234.134.19:46946] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.modernsalessolutions.wholesalelivelobsters.com"] [uri "/.git/config"] [unique_id "ap6o8C9ZYIGQ2IJSPSB8-AAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 09:35:26
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.234.134.19 (19.134.234.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.134.19 (19.134.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 05:35:21.063747 2026] [security2:error] [pid 3400:tid 3400] [client 35.234.134.19:56494] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.moonfamilies.seizetheseason.com"] [uri "/.git/config"] [unique_id "ap6FWc2tP8o2azagLyKmcgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Hippoline
2026-09-07 08:52:48
(7 hours ago)
[Mon Sep 07 10:52:30.560362 2026] [authz_core:error] [pid 30029] [client 35.234.134.19:55192] AH0163 ...
show more
[Mon Sep 07 10:52:30.560362 2026] [authz_core:error] [pid 30029] [client 35.234.134.19:55192] AH01630: client denied by server configuration: /var/www/modern-art.lu/web/cakephp
[Mon Sep 07 10:52:47.467001 2026] [authz_core:error] [pid 26984] [client 35.234.134.19:53338] AH01630: client denied by server configuration: /var/www/modern-art.lu/web/phpinfo.php
[Mon Sep 07 10:52:47.638238 2026] [authz_core:error] [pid 26984] [client 35.234.134.19:53338] AH01630: client denied by server configuration: /var/www/modern-art.lu/web/info.php
[Mon Sep 07 10:52:47.713834 2026] [authz_core:error] [pid 26984] [client 35.234.134.19:53338] AH01630: client denied by server configuration: /var/www/modern-art.lu/web/php.php
[Mon Sep 07 10:52:47.802771 2026] [authz_core:error] [pid 26984] [client 35.234.134.19:53338] AH01630: client denied by server configuration: /var/www/modern-art.lu/web/i.php
...
show less
Brute-Force
Web App Attack
🇧🇪
cmbplf
2026-09-07 08:10:29
(8 hours ago)
16.772 requests in 1 hour (3mos1w6d)
Brute-Force
Bad Web Bot
🇳🇱
Savvii
2026-09-07 08:09:37
(8 hours ago)
20 attempts against mh-misbehave-ban on ceres
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 07:35:14
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.234.134.19 (19.134.234.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.134.19 (19.134.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 03:35:08.372101 2026] [security2:error] [pid 2937:tid 2944] [client 35.234.134.19:54566] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mooks.chat.n2play.net"] [uri "/.git/config"] [unique_id "ap5pLL0W7F8lDO3UKxn0VwAAAEQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-07 07:29:58
(9 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇪🇸
elcruzado.es
2026-09-07 05:29:46
(11 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.234.134.19 (GB/United Kingdom/19.134 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.234.134.19 (GB/United Kingdom/19.134.234.35.bc.googleusercontent.com)
show less
SQL Injection
🇬🇧
openstrike.co.uk
2026-09-07 05:13:22
(11 hours ago)
251 attacks on config grabbing URLs (type 2), VC URLs, env grabbing URLs, PHP URLs:
GET /application ...
show more
251 attacks on config grabbing URLs (type 2), VC URLs, env grabbing URLs, PHP URLs:
GET /application_default_credentials.json HTTP/1.1
GET /.git/config HTTP/1.1
GET /config/app/.env HTTP/1.1
GET /includes/phpinfo.php HTTP/1.1
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 03:51:31
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.234.134.19 (19.134.234.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.134.19 (19.134.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 23:51:24.171150 2026] [security2:error] [pid 7857:tid 7857] [client 35.234.134.19:36690] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.montidaunitour.com.my-spec.com"] [uri "/.git/config"] [unique_id "ap40vFw0r9xurnY8JYccwAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack