๐ซ๐ท
masterguru
2026-09-03 13:40:15
(2 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 12:44:23
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.234.245.44 (44.245.234.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.245.44 (44.245.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 08:44:15.482827 2026] [security2:error] [pid 30976:tid 30976] [client 35.234.245.44:54710] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.pixals.net"] [uri "/.git/config"] [unique_id "aplrn2vMInbnpOdNEViSRwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-03 11:05:02
(4 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 08:45:17
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.234.245.44 (44.245.234.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.245.44 (44.245.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 04:45:10.698710 2026] [security2:error] [pid 18566:tid 18566] [client 35.234.245.44:60456] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.pitigliano.montepulciano.org"] [uri "/.git/config"] [unique_id "apkzlliZ7rsCHjombKGJJwAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-03 06:24:05
(9 hours ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hazzard
2026-09-03 05:44:02
(10 hours ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-03 05:16:21
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.234.245.44 (44.245.234.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.245.44 (44.245.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 01:16:14.038549 2026] [security2:error] [pid 4112545:tid 4112566] [client 35.234.245.44:45068] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.piroskazalkadi.richardleeweatherman.com"] [uri "/.git/config"] [unique_id "apkCnsjNNWecyRyS98UBGAAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
zumbo.net
2026-09-03 04:59:53
(11 hours ago)
[Thu Sep 03 07:59:52.113866 2026] [proxy_fcgi:error] [pid 584287:tid 584301] [client 35.234.245.44:0 ...
show more
[Thu Sep 03 07:59:52.113866 2026] [proxy_fcgi:error] [pid 584287:tid 584301] [client 35.234.245.44:0] AH01071: Got error 'Primary script unknown'
[Thu Sep 03 07:59:52.218630 2026] [proxy_fcgi:error] [pid 584288:tid 584315] [client 35.234.245.44:0] AH01071: Got error 'Primary script unknown'
[Thu Sep 03 07:59:52.338404 2026] [proxy_fcgi:error] [pid 584287:tid 584292] [client 35.234.245.44:0] AH01071: Got error 'Primary script unknown'
[Thu Sep 03 07:59:52.448022 2026] [proxy_fcgi:error] [pid 584287:tid 584325] [client 35.234.245.44:0] AH01071: Got error 'Primary script unknown'
[Thu Sep 03 07:59:52.565081 2026] [proxy_fcgi:error] [pid 584287:tid 584320] [client 35.234.245.44:0] AH01071: Got error 'Primary script unknown'
...
show less
Brute-Force
Web App Attack
๐ธ๐ช
konseptit
2026-09-03 04:51:11
(11 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.234.245.44 (CA/Canada/44.245.234.35. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.234.245.44 (CA/Canada/44.245.234.35.bc.googleusercontent.com)
show less
SQL Injection
๐ณ๐ฑ
Site.eu
2026-09-03 04:32:31
(11 hours ago)
Excessive multi-domain requests
Brute-Force
๐ฉ๐ช
Balthasar Morpheus Jรถrmundur (JKweb Service)
2026-09-03 04:31:41
(11 hours ago)
JKweb Security: Severe and dangerous web attack detected. Vulnerability Wordpress Scanning, Director ...
show more
JKweb Security: Severe and dangerous web attack detected. Vulnerability Wordpress Scanning, Directory Brute-Forcing / Content Discovery, Predictable Resource Location / Forced Browsing, Scan for administration and debugging interfaces of modern frameworks, Scan for Spring Boot Actuator Leaks, Scan for Cloud & Infrastructure Credentials, Scan for Database & Backup Dumps, Scan for IDE- und Editor-Configurations, Scan for CI/CD Pipelines & GitHub Workflows etc. The Attacker is permanently banned by Fail2Ban, configurate by JKweb Security a brand of JKweb Service.
show less
Port Scan
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 04:10:01
(11 hours ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 03:34:00
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.234.245.44 (44.245.234.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.245.44 (44.245.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 23:33:55.288138 2026] [security2:error] [pid 15976:tid 15976] [client 35.234.245.44:37684] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.pipperonline.gulftelecom.com"] [uri "/.git/config"] [unique_id "apjqo7vyiPrACX7EQWcIvQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-03 03:00:04
(13 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐ฉ๐ช
iNetWorker
2026-09-03 00:47:55
(15 hours ago)
trolling for resource vulnerabilities
Web App Attack