|
๐ง๐ท
45.205.1.8
|
|
26/Mar/2026:01:52:52.518359 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
26/Mar/2026:01:52:52.518359 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 45.205.1.8] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "141.224.196.208:443"] [severity "WARNING"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "141.224.196.208"] [uri "/"] [unique_id "acSDZC60E6lv_kxiW6lEnQAAABA"]
26/Mar/2026:01:52:53.339973 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 45.205.1.8] ModSecurity: Warning. Match of "within %{tx.allowed_methods}" against "REQUEST_METHOD" required. [file "/usr/share/modsecurity-crs/rules/REQUEST-911-METHOD-ENFORCEMENT.conf"] [line "44"] [id "911100"] [msg
...
show less
|
Web App Attack
|
|
๐ง๐ฌ
45.88.138.44
|
|
26/Mar/2026:01:19:54.160270 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
26/Mar/2026:01:19:54.160270 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 45.88.138.44] ModSecurity: Warning. Matched phrase "/.env" at REQUEST_FILENAME. [file "/usr/share/modsecurity-crs/rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Restricted File Access Attempt"] [data "Matched Data: /.env found within REQUEST_FILENAME: /.env"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [tag "PCI/6.5.4"] [hostname "jordymarije.nl"] [uri "/.env"] [unique_id "acR7qj6h8RQuXaTGQsItlQAAAAQ"]
26/Mar/2026:01:19:54.160270 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 45.88.138.44] ModSecurity: Warning. Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inb
...
show less
|
Web App Attack
|
|
๐บ๐ธ
20.169.104.253
|
|
26/Mar/2026:01:15:14.718503 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
26/Mar/2026:01:15:14.718503 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 20.169.104.253] ModSecurity: Warning. Matched phrase "zgrab" at REQUEST_HEADERS:User-Agent. [file "/usr/share/modsecurity-crs/rules/REQUEST-913-SCANNER-DETECTION.conf"] [line "55"] [id "913100"] [msg "Found User-Agent associated with security scanner"] [data "Matched Data: zgrab found within REQUEST_HEADERS:User-Agent: mozilla/5.0 zgrab/0.x"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-reputation-scanner"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/118/224/541/310"] [tag "PCI/6.5.10"] [hostname "141.224.196.208"] [uri "/"] [unique_id "acR6knnhV0G1pHDKocFSOAAAAAU"]
26/Mar/2026:01:15:14.718503 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 20.169.104.253] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity
...
show less
|
Web App Attack
|
|
๐บ๐ธ
162.243.51.145
|
|
26/Mar/2026:00:46:55.338413 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
26/Mar/2026:00:46:55.338413 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 162.243.51.145] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "141.224.196.208"] [severity "WARNING"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "141.224.196.208"] [uri "/"] [unique_id "acRz754-TRAdz8pxw164DgAAAAs"]
26/Mar/2026:00:46:55.426398 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 162.243.51.145] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host hea
...
show less
|
Web App Attack
|
|
๐ณ๐ฑ
172.94.9.253
|
|
26/Mar/2026:00:32:07.949353 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
26/Mar/2026:00:32:07.949353 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 172.94.9.253] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "141.224.196.208"] [severity "WARNING"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "141.224.196.208"] [uri "/.git/config"] [unique_id "acRwd-VRB2QGlhXtUPEhZAAAABU"]
26/Mar/2026:00:32:07.949353 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 172.94.9.253] ModSecurity: Warning. String match within "/accept-charset/ /content-encoding/ /proxy/ /lock-token/ /content-range/ /if/" at TX:header_name_accept-charset. [file "/usr/share/modsecurity-crs/rule
...
show less
|
Web App Attack
|
|
๐ต๐ฆ
141.98.82.26
|
|
26/Mar/2026:00:29:41.435502 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
26/Mar/2026:00:29:41.435502 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 141.98.82.26] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "141.224.196.208"] [severity "WARNING"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "141.224.196.208"] [uri "/"] [unique_id "acRv5e7gfXQTrchgIqt1lgAAAAA"]
26/Mar/2026:00:29:41.435502 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 141.98.82.26] ModSecurity: Warning. String match within "/accept-charset/ /content-encoding/ /proxy/ /lock-token/ /content-range/ /if/" at TX:header_name_accept-charset. [file "/usr/share/modsecurity-crs/rules/REQUEST-9
...
show less
|
Web App Attack
|
|
๐ง๐ท
45.205.1.8
|
|
26/Mar/2026:00:04:20.143964 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
26/Mar/2026:00:04:20.143964 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 45.205.1.8] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "141.224.196.208:443"] [severity "WARNING"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "141.224.196.208"] [uri "/"] [unique_id "acRp9BkwrtAfiErVL4r9FAAAABM"]
26/Mar/2026:00:04:20.826870 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 45.205.1.8] ModSecurity: Warning. Match of "within %{tx.allowed_methods}" against "REQUEST_METHOD" required. [file "/usr/share/modsecurity-crs/rules/REQUEST-911-METHOD-ENFORCEMENT.conf"] [line "44"] [id "911100"] [msg
...
show less
|
Web App Attack
|
|
๐ณ๐ฑ
176.65.149.253
|
|
25/Mar/2026:23:40:41.254032 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:23:40:41.254032 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 176.65.149.253] ModSecurity: Warning. Operator EQ matched 0 at REQUEST_HEADERS. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "550"] [id "920280"] [msg "Request Missing a Host Header"] [severity "WARNING"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "ramongames.nl"] [uri "/api/.env"] [unique_id "acRkaQ3UFedEjXUGuKNhfwAAAAE"]
25/Mar/2026:23:40:41.254032 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 176.65.149.253] ModSecurity: Warning. Matched phrase "/.env" at REQUEST_FILENAME. [file "/usr/share/modsecurity-crs/rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Restricted File Access Attempt"] [data "Matched Data: /.env f
...
show less
|
Web App Attack
|
|
๐ณ๐ฑ
46.151.178.13
|
|
25/Mar/2026:22:41:37.682004 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:22:41:37.682004 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 46.151.178.13] ModSecurity: Warning. Match of "within %{tx.allowed_methods}" against "REQUEST_METHOD" required. [file "/usr/share/modsecurity-crs/rules/REQUEST-911-METHOD-ENFORCEMENT.conf"] [line "44"] [id "911100"] [msg "Method is not allowed by policy"] [data "PROPFIND"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272/220/274"] [tag "PCI/12.1"] [hostname "141.224.196.208"] [uri "/"] [unique_id "acRWkWz67L0jVHUdx489nAAAAA0"]
25/Mar/2026:22:41:37.682004 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 46.151.178.13] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "H
...
show less
|
Web App Attack
|
|
๐ง๐ท
45.205.1.8
|
|
25/Mar/2026:22:13:17.895550 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:22:13:17.895550 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 45.205.1.8] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "141.224.196.208:443"] [severity "WARNING"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "141.224.196.208"] [uri "/"] [unique_id "acRP7Xxxr4_C-a1GLIAf7AAAAAg"]
25/Mar/2026:22:13:18.682325 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 45.205.1.8] ModSecurity: Warning. Match of "within %{tx.allowed_methods}" against "REQUEST_METHOD" required. [file "/usr/share/modsecurity-crs/rules/REQUEST-911-METHOD-ENFORCEMENT.conf"] [line "44"] [id "911100"] [msg
...
show less
|
Web App Attack
|
|
๐ณ๐ฑ
46.151.178.13
|
|
25/Mar/2026:21:32:29.808639 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:21:32:29.808639 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 46.151.178.13] ModSecurity: Warning. Match of "within %{tx.allowed_methods}" against "REQUEST_METHOD" required. [file "/usr/share/modsecurity-crs/rules/REQUEST-911-METHOD-ENFORCEMENT.conf"] [line "44"] [id "911100"] [msg "Method is not allowed by policy"] [data "PROPFIND"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272/220/274"] [tag "PCI/12.1"] [hostname "141.224.196.208"] [uri "/"] [unique_id "acRGXQ0QIInePzrBphHuBwAAABY"]
25/Mar/2026:21:32:29.808639 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 46.151.178.13] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "H
...
show less
|
Web App Attack
|
|
๐ณ๐ฑ
204.76.203.25
|
|
25/Mar/2026:21:26:15.444708 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:21:26:15.444708 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 204.76.203.25] ModSecurity: Warning. Matched phrase "/.env" at REQUEST_FILENAME. [file "/usr/share/modsecurity-crs/rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Restricted File Access Attempt"] [data "Matched Data: /.env found within REQUEST_FILENAME: /.env"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [tag "PCI/6.5.4"] [hostname "im.vetspons.nl"] [uri "/.env"] [unique_id "acRE53hnNGqzypGSbBZmVwAAAAk"]
25/Mar/2026:21:26:15.444708 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 204.76.203.25] ModSecurity: Warning. Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "I
...
show less
|
Web App Attack
|
|
๐ง๐ท
45.205.1.8
|
|
25/Mar/2026:21:12:51.382019 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:21:12:51.382019 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 45.205.1.8] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "141.224.196.208:443"] [severity "WARNING"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "141.224.196.208"] [uri "/"] [unique_id "acRBw_A_y8kPCi1clarGTQAAAAU"]
25/Mar/2026:21:12:52.510035 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 45.205.1.8] ModSecurity: Warning. Match of "within %{tx.allowed_methods}" against "REQUEST_METHOD" required. [file "/usr/share/modsecurity-crs/rules/REQUEST-911-METHOD-ENFORCEMENT.conf"] [line "44"] [id "911100"] [msg
...
show less
|
Web App Attack
|
|
๐ฎ๐ณ
103.120.189.68
|
|
25/Mar/2026:21:05:50.809162 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:21:05:50.809162 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 103.120.189.68] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "141.224.196.208"] [severity "WARNING"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "141.224.196.208"] [uri "/"] [unique_id "acRAHoRH84bzqo2-cImDcwAAAAk"]
25/Mar/2026:21:05:51.090754 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 103.120.189.68] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host hea
...
show less
|
Web App Attack
|
|
๐บ๐ฆ
185.254.197.90
|
|
25/Mar/2026:20:56:40.917634 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:20:56:40.917634 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 185.254.197.90] ModSecurity: Warning. Matched phrase "/.env" at REQUEST_FILENAME. [file "/usr/share/modsecurity-crs/rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Restricted File Access Attempt"] [data "Matched Data: /.env found within REQUEST_FILENAME: /.env"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [tag "PCI/6.5.4"] [hostname "office.vetspons.nl"] [uri "/.env"] [unique_id "acQ9-BwFPcPjiixR_xFZcAAAAAQ"]
25/Mar/2026:20:56:40.917634 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 185.254.197.90] ModSecurity: Warning. Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [
...
show less
|
Web App Attack
|
|
๐ฉ๐ช
64.89.163.23
|
|
25/Mar/2026:20:47:19.587077 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:20:47:19.587077 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 64.89.163.23] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "141.224.196.208"] [severity "WARNING"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "141.224.196.208"] [uri "/.env"] [unique_id "acQ7x9Vjo59RlBAfoD5dVwAAABA"]
25/Mar/2026:20:47:19.587077 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 64.89.163.23] ModSecurity: Warning. Matched phrase "/.env" at REQUEST_FILENAME. [file "/usr/share/modsecurity-crs/rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Restricted File Acce
...
show less
|
Web App Attack
|
|
๐ณ๐ฑ
204.76.203.25
|
|
25/Mar/2026:20:15:38.759408 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:20:15:38.759408 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 204.76.203.25] ModSecurity: Warning. Matched phrase "/.env" at REQUEST_FILENAME. [file "/usr/share/modsecurity-crs/rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Restricted File Access Attempt"] [data "Matched Data: /.env found within REQUEST_FILENAME: /.env"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [tag "PCI/6.5.4"] [hostname "mak.vetspons.nl"] [uri "/.env"] [unique_id "acQ0Wji8dRai2ufIGGDsNQAAAAI"]
25/Mar/2026:20:15:38.759408 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 204.76.203.25] ModSecurity: Warning. Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "
...
show less
|
Web App Attack
|
|
๐ง๐ท
45.205.1.8
|
|
25/Mar/2026:19:30:59.575231 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:19:30:59.575231 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 45.205.1.8] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "141.224.196.208:443"] [severity "WARNING"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "141.224.196.208"] [uri "/"] [unique_id "acQp4x-3xPCq7_O468giXwAAAAk"]
25/Mar/2026:19:31:00.240636 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 45.205.1.8] ModSecurity: Warning. Match of "within %{tx.allowed_methods}" against "REQUEST_METHOD" required. [file "/usr/share/modsecurity-crs/rules/REQUEST-911-METHOD-ENFORCEMENT.conf"] [line "44"] [id "911100"] [msg
...
show less
|
Web App Attack
|
|
๐ฑ๐บ
64.89.160.82
|
|
25/Mar/2026:19:25:53.175741 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:19:25:53.175741 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 64.89.160.82] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "141.224.196.208"] [severity "WARNING"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "141.224.196.208"] [uri "/.env"] [unique_id "acQosahG68LJvG1qOuhPuQAAABE"]
25/Mar/2026:19:25:53.175741 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 64.89.160.82] ModSecurity: Warning. Matched phrase "/.env" at REQUEST_FILENAME. [file "/usr/share/modsecurity-crs/rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Restricted File Acce
...
show less
|
Web App Attack
|
|
๐ง๐ท
45.205.1.8
|
|
25/Mar/2026:17:55:44.767408 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:17:55:44.767408 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 45.205.1.8] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "141.224.196.208:443"] [severity "WARNING"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "141.224.196.208"] [uri "/"] [unique_id "acQTkGnZK6MYEY5ZmmYprQAAAA4"]
25/Mar/2026:17:55:45.442904 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 45.205.1.8] ModSecurity: Warning. Match of "within %{tx.allowed_methods}" against "REQUEST_METHOD" required. [file "/usr/share/modsecurity-crs/rules/REQUEST-911-METHOD-ENFORCEMENT.conf"] [line "44"] [id "911100"] [msg
...
show less
|
Web App Attack
|
|
๐ฎ๐น
172.235.235.248
|
|
25/Mar/2026:17:49:00.736779 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:17:49:00.736779 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 172.235.235.248] ModSecurity: Warning. Operator EQ matched 0 at REQUEST_HEADERS. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "550"] [id "920280"] [msg "Request Missing a Host Header"] [severity "WARNING"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "ramongames.nl"] [uri "/"] [unique_id "acQR_HJM7C6jAmR3u4izKwAAAAE"]
25/Mar/2026:17:49:48.289289 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 172.235.235.248] ModSecurity: Warning. Operator EQ matched 0 at REQUEST_HEADERS. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "550"] [id "920280"] [msg "Request Missing a Host Header"] [severity "WARNING"] [ver "OWASP_CRS/3.
...
show less
|
Web App Attack
|
|
๐ณ๐ฑ
195.178.110.246
|
|
25/Mar/2026:17:35:55.888408 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:17:35:55.888408 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 195.178.110.246] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "141.224.196.208"] [severity "WARNING"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "141.224.196.208"] [uri "/.git/credentials"] [unique_id "acQO60zifEZFmjnWAB-lxAAAAAM"]
25/Mar/2026:17:35:55.888408 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 195.178.110.246] ModSecurity: Warning. String match within "/accept-charset/ /content-encoding/ /proxy/ /lock-token/ /content-range/ /if/" at TX:header_name_accept-charset. [file "/usr/share/modsecuri
...
show less
|
Web App Attack
|
|
๐ณ๐ฑ
46.151.178.13
|
|
25/Mar/2026:17:34:16.284895 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:17:34:16.284895 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 46.151.178.13] ModSecurity: Warning. Match of "within %{tx.allowed_methods}" against "REQUEST_METHOD" required. [file "/usr/share/modsecurity-crs/rules/REQUEST-911-METHOD-ENFORCEMENT.conf"] [line "44"] [id "911100"] [msg "Method is not allowed by policy"] [data "PROPFIND"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272/220/274"] [tag "PCI/12.1"] [hostname "141.224.196.208"] [uri "/"] [unique_id "acQOiEzifEZFmjnWAB-lrwAAAAM"]
25/Mar/2026:17:34:16.284895 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 46.151.178.13] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "H
...
show less
|
Web App Attack
|
|
๐ท๐บ
81.29.142.6
|
|
25/Mar/2026:17:19:18.407750 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:17:19:18.407750 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 81.29.142.6] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "141.224.196.208"] [severity "WARNING"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "141.224.196.208"] [uri "/"] [unique_id "acQLBnczfCVlH0Q0y-NuSQAAAAM"]
25/Mar/2026:17:19:19.294340 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 81.29.142.6] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is
...
show less
|
Web App Attack
|
|
๐ง๐ท
45.205.1.8
|
|
25/Mar/2026:16:47:41.868678 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Mar/2026:16:47:41.868678 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 45.205.1.8] ModSecurity: Warning. Pattern match "^[\\\\\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "736"] [id "920350"] [msg "Host header is a numeric IP address"] [data "141.224.196.208:443"] [severity "WARNING"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "141.224.196.208"] [uri "/"] [unique_id "acQDnSisLNTopwvgPWC-lgAAAA8"]
25/Mar/2026:16:47:42.547719 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 45.205.1.8] ModSecurity: Warning. Match of "within %{tx.allowed_methods}" against "REQUEST_METHOD" required. [file "/usr/share/modsecurity-crs/rules/REQUEST-911-METHOD-ENFORCEMENT.conf"] [line "44"] [id "911100"] [msg
...
show less
|
Web App Attack
|