🇮🇹
ivanbiagi7
2026-09-06 09:30:03
(14 hours ago)
Wazuh detected repeated HTTP client errors consistent with automated web probing. Wazuh rule=31151.
Web App Attack
🇩🇪
gadix
2026-09-06 07:18:18
(16 hours ago)
[06/Sep/2026:09:18:17.997472 +0200] ap0TuXc_DovWwdoGM5F_tQAAABc 8.234.84.9 54778 127.0.0.1 7081
[06/ ...
show more
[06/Sep/2026:09:18:17.997472 +0200] ap0TuXc_DovWwdoGM5F_tQAAABc 8.234.84.9 54778 127.0.0.1 7081
[06/Sep/2026:09:18:18.003153 +0200] ap0TuqBY728kOPcBAqCN3AAAAE4 8.234.84.9 54790 127.0.0.1 7081
[06/Sep/2026:09:18:18.010783 +0200] ap0TuqBY728kOPcBAqCN3QAAAE4 8.234.84.9 54800 127.0.0.1 7081
...
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 04:31:15
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.234.84.9 (9.84.234.8.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.84.9 (9.84.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 00:31:09.196949 2026] [security2:error] [pid 21125:tid 21125] [client 8.234.84.9:49260] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.creareformis.com"] [uri "/html/.git/config"] [unique_id "apzsjSye76jmAWZN53QAbAAAAGI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-06 02:30:04
(21 hours ago)
suspicious request in access.log
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 23:51:43
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 8.234.84.9 (9.84.234.8.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.84.9 (9.84.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 19:51:38.531504 2026] [security2:error] [pid 19831:tid 19831] [client 8.234.84.9:52682] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cassialifesci.com"] [uri "/app/.git/config"] [unique_id "apyrCi7TJaJdBMXzwb9NkQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 23:09:22
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 8.234.84.9 (9.84.234.8.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.84.9 (9.84.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 19:09:15.175253 2026] [security2:error] [pid 27860:tid 27860] [client 8.234.84.9:43426] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brazilianbottom.com"] [uri "/app/.git/config"] [unique_id "apyhG8mU8yHTnVUZGhPllQAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-05 22:41:25
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-05 21:49:33
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 8.234.84.9 (9.84.234.8.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210730) triggered by 8.234.84.9 (9.84.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 17:49:25.315705 2026] [security2:error] [pid 25953:tid 25953] [client 8.234.84.9:55494] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||livresanciens.fritsknuf.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "livresanciens.fritsknuf.com"] [uri "/backup.sql"] [unique_id "apyOZYXyhAei0d_aypYyygAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
pscriptos
2026-09-05 21:46:18
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇳🇱
e.fierstra
2026-09-05 21:33:22
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 20:52:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 8.234.84.9 (9.84.234.8.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 8.234.84.9 (9.84.234.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 16:52:25.310756 2026] [security2:error] [pid 22046:tid 22061] [client 8.234.84.9:47830] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "epstransparency.org"] [uri "/html/.git/config"] [unique_id "apyBCWjU7nGdeZkaUZXwcwAAAME"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇵🇱
webadmin
2026-09-05 10:25:11
(1 day ago)
2026-09-05T12:25:10.199270+02:00 tytan mobile-sai-api[4129]: [error] client: 8.234.84.9 server: 213. ...
show more
2026-09-05T12:25:10.199270+02:00 tytan mobile-sai-api[4129]: [error] client: 8.234.84.9 server: 213.25.105.152, request: "GET", url: http://213.25.105.152/app/.git/config [404]: Not Found
2026-09-05T12:25:10.199270+02:00 tytan mobile-sai-api[4129]: [error] client: 8.234.84.9 server: 213.25.105.152, request: "GET", url: http://213.25.105.152/.git/config [404]: Not Found
2026-09-05T12:25:10.199270+02:00 tytan mobile-sai-api[4129]: [error] client: 8.234.84.9 server: 213.25.105.152, request: "GET", url: http://213.25.105.152/public/.git/config [404]: Not Found
2026-09-05T12:25:10.199270+02:00 tytan mobile-sai-api[4129]: [error] client: 8.234.84.9 server: 213.25.105.152, request: "GET", url: http://213.25.105.152/src/.git/config [404]: Not Found
show less
Web App Attack