🇺🇸
TPI-Abuse
2026-09-14 03:53:42
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.234.21.69 (69.21.234.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.21.69 (69.21.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 23:53:37.569000 2026] [security2:error] [pid 22617:tid 22617] [client 8.234.21.69:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yggdrasil.org"] [uri "/.git/config"] [unique_id "aqdvwfuzJ_MwaZyuC_lnNwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
ecs.ge
2026-09-14 03:53:00
(7 hours ago)
Automatic Fail2Ban report from jail plesk-modsecurity: multiple matching events detected.
Web App Attack
Hacking
Anonymous
2026-09-14 01:07:02
(10 hours ago)
Automated web scanner. Requested suspicious paths: /.git/config. UTC: 2026-09-14 00:27:41.
Web App Attack
🇳🇱
Site.eu
2026-09-14 00:48:45
(10 hours ago)
Excessive 404/403 errors
Brute-Force
🇳🇱
Site.eu
2026-09-14 00:32:59
(10 hours ago)
Excessive multi-domain requests
Brute-Force
🇳🇱
e.fierstra
2026-09-13 23:53:59
(11 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-13 20:05:13
(15 hours ago)
Scanning/Probing (14)
Brute-Force
Web App Attack
🇫🇷
dynamix
2026-09-13 19:01:58
(16 hours ago)
Multiple WAF Violations
Web App Attack
🇳🇱
ConsulHosting
2026-09-13 19:01:58
(16 hours ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
🇩🇪
zumbo.net
2026-09-13 18:36:20
(16 hours ago)
[Sun Sep 13 21:36:19.270401 2026] [proxy_fcgi:error] [pid 24420:tid 24430] [client 8.234.21.69:0] AH ...
show more
[Sun Sep 13 21:36:19.270401 2026] [proxy_fcgi:error] [pid 24420:tid 24430] [client 8.234.21.69:0] AH01071: Got error 'Primary script unknown'
[Sun Sep 13 21:36:19.419337 2026] [proxy_fcgi:error] [pid 24420:tid 24467] [client 8.234.21.69:0] AH01071: Got error 'Primary script unknown'
[Sun Sep 13 21:36:19.548919 2026] [proxy_fcgi:error] [pid 24420:tid 24442] [client 8.234.21.69:0] AH01071: Got error 'Primary script unknown'
[Sun Sep 13 21:36:19.698510 2026] [proxy_fcgi:error] [pid 24422:tid 24432] [client 8.234.21.69:0] AH01071: Got error 'Primary script unknown'
[Sun Sep 13 21:36:19.856551 2026] [proxy_fcgi:error] [pid 24420:tid 24456] [client 8.234.21.69:0] AH01071: Got error 'Primary script unknown'
...
show less
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 16:52:13
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.234.21.69 (69.21.234.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.21.69 (69.21.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 12:52:05.075721 2026] [security2:error] [pid 2740:tid 2740] [client 8.234.21.69:49078] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yerevanpress.am"] [uri "/.git/config"] [unique_id "aqbUtTy5sF5oTuk6XLxLKgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
cmbplf
2026-09-13 15:47:06
(19 hours ago)
1.232 requests with url.path *phpinfo.php
199 requests with url.path *credentials.json
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-13 13:39:49
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.234.21.69 (69.21.234.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.21.69 (69.21.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 09:39:42.988809 2026] [security2:error] [pid 3255573:tid 3255706] [client 8.234.21.69:55562] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yellowsunset.com.appraisalteam.net"] [uri "/.git/config"] [unique_id "aqannvYG5F6M0c0j4QhnowAAAcY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
debestelapp
2026-09-11 18:35:13
(2 days ago)
Web App Attack
Anonymous
2026-09-11 13:35:02
(2 days ago)
suspicious request in access.log
Web App Attack