|
๐บ๐ธ
34.139.234.69
|
|
[Wed Aug 19 20:04:50.337718 2026] [security2:error] [pid 3842981:tid 3842981] [client 34.139.234.69: ...
show more
[Wed Aug 19 20:04:50.337718 2026] [security2:error] [pid 3842981:tid 3842981] [client 34.139.234.69:0] [client 34.139.234.69] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "pop-the-slots.com"] [uri "/rclone.conf"] [unique_id "aoYMYl5wUzd1RJdsm_5m3wAAAAM"]
[Wed Aug 19 20:04:50.384954 2026] [security2:error] [pid 3804201:tid 3804201] [client 34.139.234.69:0] [client 34.139.234.69] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [
...
show less
|
Hacking
Web App Attack
|
|
๐ณ๐ฑ
2001:1c00:5:b400:891c:390:21e2:efde
|
|
[Wed Aug 19 19:06:34.682614 2026] [security2:error] [pid 3752978:tid 3752978] [client 2001:1c00:5:b4 ...
show more
[Wed Aug 19 19:06:34.682614 2026] [security2:error] [pid 3752978:tid 3752978] [client 2001:1c00:5:b400:891c:390:21e2:efde:64593] [client 2001:1c00:5:b400:891c:390:21e2:efde] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "fambus.nl"] [uri "/wpad.dat"] [unique_id "aoX-ugOjaYNzu_Xj7NKL_wAAACo"]
[Wed Aug 19 19:06:34.962962 2026] [security2:error] [pid 3752946:tid 3752946] [client 2001:1c00:5:b400:891c:390:21e2:efde:61746] [client 2001:1c00:5:b400:891c:390:21e2:efde] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"
...
show less
|
Hacking
Web App Attack
|
|
๐บ๐ธ
31.58.226.248
|
|
[Wed Aug 19 18:30:41.565648 2026] [security2:error] [pid 3752945:tid 3752945] [client 31.58.226.248: ...
show more
[Wed Aug 19 18:30:41.565648 2026] [security2:error] [pid 3752945:tid 3752945] [client 31.58.226.248:36318] [client 31.58.226.248] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "fambus.nl"] [uri "/.git/HEAD"] [unique_id "aoX2UdeQSyqTZsF_OCZOawAAABk"]
[Wed Aug 19 18:30:41.661127 2026] [security2:error] [pid 3752978:tid 3752978] [client 31.58.226.248:36332] [client 31.58.226.248] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [se
...
show less
|
Hacking
Web App Attack
|
|
๐บ๐ธ
34.73.216.34
|
|
[Wed Aug 19 17:49:00.298768 2026] [security2:error] [pid 3694195:tid 3694195] [client 34.73.216.34:0 ...
show more
[Wed Aug 19 17:49:00.298768 2026] [security2:error] [pid 3694195:tid 3694195] [client 34.73.216.34:0] [client 34.73.216.34] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "pop-the-slots.com"] [uri "/.aws/credentials"] [unique_id "aoXsjHjmAju3slwx1ePLmgAAAAA"]
[Wed Aug 19 17:49:00.298109 2026] [security2:error] [pid 3730288:tid 3730288] [client 34.73.216.34:0] [client 34.73.216.34] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"]
...
show less
|
Hacking
Web App Attack
|
|
๐ณ๐ฑ
93.123.109.228
|
|
[Wed Aug 19 17:00:21.613628 2026] [security2:error] [pid 3693395:tid 3693395] [client 93.123.109.228 ...
show more
[Wed Aug 19 17:00:21.613628 2026] [security2:error] [pid 3693395:tid 3693395] [client 93.123.109.228:51516] [client 93.123.109.228] ModSecurity: Warning. Pattern match "^[\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "94.209.38.171"] [severity "WARNING"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "94.209.38.171"] [uri "/"] [unique_id "aoXhJX9tB2jHBJyFHa7qvAAAABU"]
[Wed Aug 19 17:00:21.675765 2026] [security2:error] [pid 3700830:tid 3700830] [client 93.123.109.228:51520] [client 93.123.109.228] ModSecurity: Warning. Pattern match "^[\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920
...
show less
|
Hacking
Web App Attack
|
|
๐บ๐ธ
34.148.153.217
|
|
[Wed Aug 19 16:30:04.160045 2026] [security2:error] [pid 3693392:tid 3693392] [client 34.148.153.217 ...
show more
[Wed Aug 19 16:30:04.160045 2026] [security2:error] [pid 3693392:tid 3693392] [client 34.148.153.217:0] [client 34.148.153.217] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "pop-the-slots.com"] [uri "/.aws/config"] [unique_id "aoXaDDv3iJIbaiUOcWJeQwAAAAw"]
[Wed Aug 19 16:30:04.219458 2026] [security2:error] [pid 3695802:tid 3695802] [client 34.148.153.217:0] [client 34.148.153.217] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)
...
show less
|
Hacking
Web App Attack
|
|
๐ธ๐ฌ
2600:1900:0:3e02::1001:7417
|
|
[Wed Aug 19 14:05:11.104911 2026] [security2:error] [pid 3600958:tid 3600958] [client 2600:1900:0:3e ...
show more
[Wed Aug 19 14:05:11.104911 2026] [security2:error] [pid 3600958:tid 3600958] [client 2600:1900:0:3e02::1001:7417] [client 2600:1900:0:3e02::1001] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "fambus.nl"] [uri "/backend/.env"] [unique_id "aoW4F848rLUHcgebqRp6pQAAAAE"]
[Wed Aug 19 14:05:11.712866 2026] [security2:error] [pid 3600958:tid 3600958] [client 2600:1900:0:3e02::1001:7417] [client 2600:1900:0:3e02::1001] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly
...
show less
|
Hacking
Web App Attack
|
|
๐ธ๐ฌ
2600:1900:0:3e02::1001
|
|
[Wed Aug 19 14:05:11.110733 2026] [security2:error] [pid 3600959:tid 3600959] [client 2600:1900:0:3e ...
show more
[Wed Aug 19 14:05:11.110733 2026] [security2:error] [pid 3600959:tid 3600959] [client 2600:1900:0:3e02::1001:44940] [client 2600:1900:0:3e02::1001] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "fambus.nl"] [uri "/.env"] [unique_id "aoW4FyrlCzPcFinWSjqMGgAAAAk"]
[Wed Aug 19 14:05:11.720936 2026] [security2:error] [pid 3600959:tid 3600959] [client 2600:1900:0:3e02::1001:44940] [client 2600:1900:0:3e02::1001] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score
...
show less
|
Hacking
Web App Attack
|
|
๐ธ๐ฌ
34.96.48.129
|
|
[Wed Aug 19 14:05:10.509447 2026] [security2:error] [pid 3600956:tid 3600956] [client 34.96.48.129:4 ...
show more
[Wed Aug 19 14:05:10.509447 2026] [security2:error] [pid 3600956:tid 3600956] [client 34.96.48.129:49798] [client 34.96.48.129] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "fambus.nl"] [uri "/app/.env"] [unique_id "aoW4FtVWLoSPGWq4CV77BAAAAAA"]
[Wed Aug 19 14:05:11.115282 2026] [security2:error] [pid 3600956:tid 3600956] [client 34.96.48.129:49798] [client 34.96.48.129] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severit
...
show less
|
Hacking
Web App Attack
|
|
๐บ๐ธ
34.96.46.157
|
|
[Wed Aug 19 13:34:58.095567 2026] [security2:error] [pid 3580862:tid 3580862] [client 34.96.46.157:2 ...
show more
[Wed Aug 19 13:34:58.095567 2026] [security2:error] [pid 3580862:tid 3580862] [client 34.96.46.157:20691] [client 34.96.46.157] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "fambus.nl"] [uri "/application/.env"] [unique_id "aoWxAg0qfgbYmnl8Lmsr9QAAAA4"]
[Wed Aug 19 13:34:58.099091 2026] [security2:error] [pid 3580860:tid 3580860] [client 34.96.46.157:29205] [client 34.96.46.157] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"]
...
show less
|
Hacking
Web App Attack
|
|
๐บ๐ธ
2600:1900:0:2d00::1201
|
|
[Wed Aug 19 13:34:55.943034 2026] [security2:error] [pid 3580848:tid 3580848] [client 2600:1900:0:2d ...
show more
[Wed Aug 19 13:34:55.943034 2026] [security2:error] [pid 3580848:tid 3580848] [client 2600:1900:0:2d00::1201:44388] [client 2600:1900:0:2d00::1201] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "fambus.nl"] [uri "/laravel/.env"] [unique_id "aoWw_5DbeJ25mZ-6UKW_sgAAAAU"]
[Wed Aug 19 13:34:56.163554 2026] [security2:error] [pid 3580848:tid 3580848] [client 2600:1900:0:2d00::1201:44388] [client 2600:1900:0:2d00::1201] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomal
...
show less
|
Hacking
Web App Attack
|
|
๐บ๐ธ
104.196.34.157
|
|
[Wed Aug 19 12:22:56.422467 2026] [security2:error] [pid 3499323:tid 3499323] [client 104.196.34.157 ...
show more
[Wed Aug 19 12:22:56.422467 2026] [security2:error] [pid 3499323:tid 3499323] [client 104.196.34.157:0] [client 104.196.34.157] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "pop-the-slots.com"] [uri "/.aws/config"] [unique_id "aoWgIHjZ6F4UTFj1_Oh9RwAAACY"]
[Wed Aug 19 12:22:56.431397 2026] [security2:error] [pid 3499298:tid 3499298] [client 104.196.34.157:0] [client 104.196.34.157] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)
...
show less
|
Hacking
Web App Attack
|
|
๐บ๐ธ
65.49.1.80
|
|
[Wed Aug 19 11:26:21.518589 2026] [security2:error] [pid 3410714:tid 3410714] [client 65.49.1.80:520 ...
show more
[Wed Aug 19 11:26:21.518589 2026] [security2:error] [pid 3410714:tid 3410714] [client 65.49.1.80:52098] [client 65.49.1.80] ModSecurity: Warning. Pattern match "^[\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "94.209.38.171"] [severity "WARNING"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "94.209.38.171"] [uri "/"] [unique_id "aoWS3cfdf3PE-CjsS85pSgAAACI"]
[Wed Aug 19 11:53:52.103662 2026] [security2:error] [pid 3499322:tid 3499322] [client 65.49.1.80:16940] [client 65.49.1.80] ModSecurity: Warning. Pattern match "^[\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host
...
show less
|
Hacking
Web App Attack
|
|
๐บ๐ธ
34.138.5.59
|
|
[Wed Aug 19 11:32:19.541915 2026] [security2:error] [pid 3410809:tid 3410809] [client 34.138.5.59:0] ...
show more
[Wed Aug 19 11:32:19.541915 2026] [security2:error] [pid 3410809:tid 3410809] [client 34.138.5.59:0] [client 34.138.5.59] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "pop-the-slots.com"] [uri "/.aws/config"] [unique_id "aoWUQ-nO_-HC2aci-hifewAAADQ"]
[Wed Aug 19 11:32:19.835914 2026] [security2:error] [pid 3410595:tid 3410595] [client 34.138.5.59:0] [client 34.138.5.59] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity
...
show less
|
Hacking
Web App Attack
|
|
๐ณ๐ฑ
93.123.109.228
|
|
[Wed Aug 19 10:01:47.905971 2026] [security2:error] [pid 3410714:tid 3410714] [client 93.123.109.228 ...
show more
[Wed Aug 19 10:01:47.905971 2026] [security2:error] [pid 3410714:tid 3410714] [client 93.123.109.228:57798] [client 93.123.109.228] ModSecurity: Warning. Pattern match "^[\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "94.209.38.171"] [severity "WARNING"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "94.209.38.171"] [uri "/"] [unique_id "aoV_C8fdf3PE-CjsS85pAwAAACI"]
[Wed Aug 19 10:01:47.964683 2026] [security2:error] [pid 3410813:tid 3410813] [client 93.123.109.228:57806] [client 93.123.109.228] ModSecurity: Warning. Pattern match "^[\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920
...
show less
|
Hacking
Web App Attack
|
|
๐บ๐ธ
34.24.31.165
|
|
[Wed Aug 19 09:20:37.179649 2026] [security2:error] [pid 3347134:tid 3347134] [client 34.24.31.165:0 ...
show more
[Wed Aug 19 09:20:37.179649 2026] [security2:error] [pid 3347134:tid 3347134] [client 34.24.31.165:0] [client 34.24.31.165] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "pop-the-slots.com"] [uri "/z9x8c7v6b5-debug-trigger-pop-the-slots.com"] [unique_id "aoV1Zbxphb-pa8lS8qgp6AAAAAU"]
[Wed Aug 19 09:20:37.189968 2026] [security2:error] [pid 3347137:tid 3347137] [client 34.24.31.165:0] [client 34.24.31.165] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Ex
...
show less
|
Hacking
Web App Attack
|
|
๐ท๐ด
80.94.95.146
|
|
[Wed Aug 19 07:57:31.650622 2026] [security2:error] [pid 3347133:tid 3347133] [client 80.94.95.146:4 ...
show more
[Wed Aug 19 07:57:31.650622 2026] [security2:error] [pid 3347133:tid 3347133] [client 80.94.95.146:43725] [client 80.94.95.146] ModSecurity: Warning. Pattern match "^[\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "94.209.38.171"] [severity "WARNING"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "94.209.38.171"] [uri "/rdweb/pages/en-us/login.aspx"] [unique_id "aoVh61W4_4cGAT-2CWAHjgAAAAQ"]
[Wed Aug 19 07:57:31.809832 2026] [security2:error] [pid 3347136:tid 3347136] [client 80.94.95.146:43958] [client 80.94.95.146] ModSecurity: Warning. Pattern match "^[\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [
...
show less
|
Hacking
Web App Attack
|
|
๐ฉ๐ช
164.92.238.139
|
|
[Wed Aug 19 07:36:35.771529 2026] [security2:error] [pid 3084494:tid 3084494] [client 164.92.238.139 ...
show more
[Wed Aug 19 07:36:35.771529 2026] [security2:error] [pid 3084494:tid 3084494] [client 164.92.238.139:12127] [client 164.92.238.139] ModSecurity: Warning. Pattern match "^[\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "94.209.38.171"] [severity "WARNING"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "94.209.38.171"] [uri "/odinhttpcall1787124995"] [unique_id "aoVdAy7M2zUqL3ywc09J-AAAABA"]
[Wed Aug 19 07:36:35.771598 2026] [security2:error] [pid 3084485:tid 3084485] [client 164.92.238.139:20099] [client 164.92.238.139] ModSecurity: Warning. Pattern match "^[\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"]
...
show less
|
Hacking
Web App Attack
|
|
๐ฎ๐ฉ
103.63.101.24
|
|
[Wed Aug 19 06:52:46.095929 2026] [security2:error] [pid 3084490:tid 3084490] [client 103.63.101.24: ...
show more
[Wed Aug 19 06:52:46.095929 2026] [security2:error] [pid 3084490:tid 3084490] [client 103.63.101.24:48826] [client 103.63.101.24] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 25)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "fambus.nl"] [uri "/"] [unique_id "aoVSvt-QlKKb_LVBf2Z91gAAAAw"]
[Wed Aug 19 06:52:46.666935 2026] [security2:error] [pid 3084490:tid 3084490] [client 103.63.101.24:48826] [client 103.63.101.24] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 25)"] [severity
...
show less
|
Hacking
Web App Attack
|
|
๐ญ๐ฐ
199.45.155.96
|
|
[Wed Aug 19 05:06:32.035121 2026] [security2:error] [pid 3002028:tid 3002028] [client 199.45.155.96: ...
show more
[Wed Aug 19 05:06:32.035121 2026] [security2:error] [pid 3002028:tid 3002028] [client 199.45.155.96:48016] [client 199.45.155.96] ModSecurity: Warning. Pattern match "^[\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "94.209.38.171"] [severity "WARNING"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "94.209.38.171"] [uri "/"] [unique_id "aoU52ExV-RcqkvNm_nqj7AAAAAU"]
[Wed Aug 19 05:06:35.500479 2026] [security2:error] [pid 3084494:tid 3084494] [client 199.45.155.96:48064] [client 199.45.155.96] ModSecurity: Warning. Pattern match "^[\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"
...
show less
|
Hacking
Web App Attack
|
|
๐ณ๐ฑ
35.204.208.46
|
|
[Wed Aug 19 05:01:24.461097 2026] [security2:error] [pid 3084494:tid 3084494] [client 35.204.208.46: ...
show more
[Wed Aug 19 05:01:24.461097 2026] [security2:error] [pid 3084494:tid 3084494] [client 35.204.208.46:0] [client 35.204.208.46] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "pop-the-slots.com"] [uri "/ads.txt"] [unique_id "aoU4pC7M2zUqL3ywc09JOgAAABA"]
[Wed Aug 19 05:01:24.603796 2026] [security2:error] [pid 3002027:tid 3002027] [client 35.204.208.46:0] [client 35.204.208.46] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [seve
...
show less
|
Hacking
Web App Attack
|
|
๐ณ๐ฑ
2001:1c00:5:b400:ddc6:6c28:d265:335f
|
|
[Wed Aug 19 03:35:02.127312 2026] [security2:error] [pid 2980959:tid 2980959] [client 2001:1c00:5:b4 ...
show more
[Wed Aug 19 03:35:02.127312 2026] [security2:error] [pid 2980959:tid 2980959] [client 2001:1c00:5:b400:ddc6:6c28:d265:335f:6614] [client 2001:1c00:5:b400:ddc6:6c28:d265:335f] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "fambus.nl"] [uri "/wpad.dat"] [unique_id "aoUkZsvgPRzAv0crbXL0GAAAABY"]
[Wed Aug 19 03:35:02.127312 2026] [security2:error] [pid 2980965:tid 2980965] [client 2001:1c00:5:b400:ddc6:6c28:d265:335f:6615] [client 2001:1c00:5:b400:ddc6:6c28:d265:335f] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.con
...
show less
|
Hacking
Web App Attack
|
|
๐บ๐ธ
74.208.26.208
|
|
[Wed Aug 19 03:25:16.497219 2026] [security2:error] [pid 2992021:tid 2992021] [client 74.208.26.208: ...
show more
[Wed Aug 19 03:25:16.497219 2026] [security2:error] [pid 2992021:tid 2992021] [client 74.208.26.208:62212] [client 74.208.26.208] ModSecurity: Warning. Pattern match "^[\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "94.209.38.171"] [severity "WARNING"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "94.209.38.171"] [uri "/.env"] [unique_id "aoUiHKM23kt-T9R82n2KQQAAAAA"]
[Wed Aug 19 03:25:16.497964 2026] [security2:error] [pid 2992021:tid 2992021] [client 74.208.26.208:62212] [client 74.208.26.208] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [li
...
show less
|
Hacking
Web App Attack
|
|
๐บ๐ธ
34.50.176.160
|
|
[Wed Aug 19 02:08:04.573608 2026] [security2:error] [pid 2972047:tid 2972047] [client 34.50.176.160: ...
show more
[Wed Aug 19 02:08:04.573608 2026] [security2:error] [pid 2972047:tid 2972047] [client 34.50.176.160:0] [client 34.50.176.160] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "pop-the-slots.com"] [uri "/fetch"] [unique_id "aoUQBAixGvZUOe9Y9gCpHwAAABg"]
[Wed Aug 19 02:08:04.590112 2026] [security2:error] [pid 2972061:tid 2972061] [client 34.50.176.160:0] [client 34.50.176.160] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 10)"] [sever
...
show less
|
Hacking
Web App Attack
|
|
๐ซ๐ท
185.177.72.53
|
|
[Wed Aug 19 02:00:17.530776 2026] [security2:error] [pid 2892463:tid 2892463] [client 185.177.72.53: ...
show more
[Wed Aug 19 02:00:17.530776 2026] [security2:error] [pid 2892463:tid 2892463] [client 185.177.72.53:0] [client 185.177.72.53] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "pop-the-slots.com"] [uri "/ \\"/.aws/config\\""] [unique_id "aoUOMZtJ94JRAVaGxOCUvQAAAAE"]
[Wed Aug 19 02:00:17.936130 2026] [security2:error] [pid 2891164:tid 2891164] [client 185.177.72.53:0] [client 185.177.72.53] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Sc
...
show less
|
Hacking
Web App Attack
|