๐บ๐ธ
TPI-Abuse
2026-07-28 12:18:00
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 3.34.41.92 (ec2-3-34-41-92.ap-northeast-2.compu ...
show more
(mod_security) mod_security (id:210492) triggered by 3.34.41.92 (ec2-3-34-41-92.ap-northeast-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 08:17:55.823330 2026] [security2:error] [pid 1394980:tid 1394980] [client 3.34.41.92:52720] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bmpproductions.com.aktkaro.com"] [uri "/.git/config"] [unique_id "amid8zheCXVUNNrUStKmjgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 09:43:18
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 3.34.41.92 (ec2-3-34-41-92.ap-northeast-2.compu ...
show more
(mod_security) mod_security (id:210492) triggered by 3.34.41.92 (ec2-3-34-41-92.ap-northeast-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 05:43:10.190866 2026] [security2:error] [pid 835629:tid 835629] [client 3.34.41.92:41422] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.blusottosopra.salvoni.org"] [uri "/.git/config"] [unique_id "amh5rvdJeIv1rn9e2BdSGQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 07:01:24
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 3.34.41.92 (ec2-3-34-41-92.ap-northeast-2.compu ...
show more
(mod_security) mod_security (id:210492) triggered by 3.34.41.92 (ec2-3-34-41-92.ap-northeast-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 03:01:16.861448 2026] [security2:error] [pid 2643241:tid 2643241] [client 3.34.41.92:60230] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bluespringssports.com.johnandramonadunn.com"] [uri "/.git/config"] [unique_id "amhTvMhIuLqAS9lBusIUfAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 04:12:44
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 3.34.41.92 (ec2-3-34-41-92.ap-northeast-2.compu ...
show more
(mod_security) mod_security (id:210492) triggered by 3.34.41.92 (ec2-3-34-41-92.ap-northeast-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 00:12:38.912986 2026] [security2:error] [pid 521343:tid 521343] [client 3.34.41.92:48776] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bluemarineboats.com.greenlight.us"] [uri "/.git/config"] [unique_id "amgsNv8T3phIxNYalRa51gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
Halux
2026-07-28 02:06:55
(17 hours ago)
3.34.41.92 Probing protected path or service
Web App Attack
๐ซ๐ท
masterguru
2026-07-28 00:53:57
(18 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐ซ๐ท
masterguru
2026-07-27 22:01:29
(21 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-07-27 21:59:46
(21 hours ago)
Auto-ban: >3000 req/min op 2026-07-27
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-27 19:04:59
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 3.34.41.92 (ec2-3-34-41-92.ap-northeast-2.compu ...
show more
(mod_security) mod_security (id:210492) triggered by 3.34.41.92 (ec2-3-34-41-92.ap-northeast-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 15:04:51.803488 2026] [security2:error] [pid 4171391:tid 4171391] [client 3.34.41.92:32874] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.calvetparis.marcelacalvet.com"] [uri "/.git/config"] [unique_id "amer02YV3OEM_lQXZE2vQgAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Octopuce
2026-07-27 10:23:05
(1 day ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-07-27 05:58:46
(1 day ago)
Probing websites for vulnerabilities
Web App Attack
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-07-27 04:05:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 3.34.41.92 (ec2-3-34-41-92.ap-northeast-2.compu ...
show more
(mod_security) mod_security (id:210492) triggered by 3.34.41.92 (ec2-3-34-41-92.ap-northeast-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 00:05:42.898693 2026] [security2:error] [pid 3799287:tid 3799287] [client 3.34.41.92:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.eddysgroup.com"] [uri "/.git/config"] [unique_id "ambZFpzbyu7h_rxfANhddAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
poundawebsiteltd
2026-07-26 09:28:28
(2 days ago)
Malicious activity in general-malicious. Evidence: (apache_probe) Failed Access (403/404) 3.34.41.92 ...
show more
Malicious activity in general-malicious. Evidence: (apache_probe) Failed Access (403/404) 3.34.41.92 (KR/South Korea/[REDACTED_DOMAIN]): 20 in the last 3600 secs | UA: (apache_probe) Failed Access (403/404) 3.34.41.92 (KR/South Korea/ec2-3-34-41-92.ap-northeast-2.compute.amazonaws.com): 20 in the last 3600 secs
show less
Brute-Force
Web App Attack
๐ฎ๐น
VHosting
2026-07-26 02:45:05
(2 days ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-07-26 01:50:27
(2 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack