🇺🇸
TPI-Abuse
2026-09-05 01:23:44
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.106.235.27 (27.235.106.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.235.27 (27.235.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 21:23:40.559423 2026] [security2:error] [pid 25058:tid 25058] [client 34.106.235.27:57178] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "konar-steenberg.com"] [uri "/.git/config"] [unique_id "aptvHBhjNI0j25fh29DtXAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-05 00:37:11
(14 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 21:45:41
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.106.235.27 (27.235.106.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.235.27 (27.235.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:45:34.253944 2026] [security2:error] [pid 1732:tid 1732] [client 34.106.235.27:34692] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.regal.tr"] [uri "/htdocs/.git/config"] [unique_id "aps7_uP0ao1DI4pGQ8maFwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 21:21:01
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.106.235.27 (27.235.106.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.235.27 (27.235.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:20:57.631926 2026] [security2:error] [pid 8298:tid 8369] [client 34.106.235.27:40246] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.frasers.biz"] [uri "/html/.git/config"] [unique_id "aps2OSdJYu0S8RePPKmfZgAAAMU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
clamehost.it
2026-09-04 19:05:51
(20 hours ago)
Automatic report - Brute Force attack using this IP address
Brute-Force
🇺🇸
TPI-Abuse
2026-09-04 18:39:26
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.106.235.27 (27.235.106.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.235.27 (27.235.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 14:39:18.710925 2026] [security2:error] [pid 23002:tid 23033] [client 34.106.235.27:33898] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.gell.us"] [uri "/src/.git/config"] [unique_id "apsQVsUEohzoiyy4PKUi2QAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 16:33:20
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.106.235.27 (27.235.106.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.235.27 (27.235.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 12:33:14.786320 2026] [security2:error] [pid 22035:tid 22035] [client 34.106.235.27:44376] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dadlounge.com"] [uri "/htdocs/.git/config"] [unique_id "apryytlmBVi2ARB2L9vxHAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
FreeMyIP
2026-09-04 14:31:31
(1 day ago)
Automated fail2ban report: web application attack / scanning for exploitable paths.
Bad Web Bot
Web App Attack
🇬🇧
WebNiraj
2026-09-04 13:59:40
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 34.106.235.27 (US/United States/27.235.106.34.b ...
show more
(mod_security) mod_security (id:949110) triggered by 34.106.235.27 (US/United States/27.235.106.34.bc.googleusercontent.com): 5 in the last 3600 secs [SIGMA]
show less
Brute-Force
🇫🇷
dynamix
2026-09-04 12:17:59
(1 day ago)
Multiple WAF Violations
Web App Attack
🇬🇧
Aetherweb Ark
2026-09-04 09:07:02
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 34.106.235.27 (US/United States/27.235.106.34.b ...
show more
(mod_security) mod_security (id:949110) triggered by 34.106.235.27 (US/United States/27.235.106.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
🇷🇴
iulianh
2026-09-04 07:55:35
(1 day ago)
80,443
Brute-Force
SSH
🇮🇹
CoreTech srl
2026-09-04 07:13:56
(1 day ago)
cloudlinux2 fail2ban: 2026-09-04 09:10:35,371 fail2ban.filter [1594]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-04 09:10:35,371 fail2ban.filter [1594]: INFO [plesk-modsecurity] Found 35.254.154.189 - 2026-09-04 09:10:35cloudlinux2 fail2ban: 2026-09-04 09:12:09,185 fail2ban.filter [1594]: INFO [plesk-modsecurity] Found 34.106.235.27 - 2026-09-04 09:12:09cloudlinux2 fail2ban: 2026-09-04 09:12:09,159 fail2ban.filter [1594]: INFO [plesk-modsecurity] Found 34.106.235.27 - 2026-09-04 09:12:09cloudlinux2 fail2ban: 2026-09-04 09:12:09,195 fail2ban.filter [1594]: INFO [plesk-modsecurity] Found 34.106.235.27 - 2026-09-04 09:12:09cloudlinux2 fail2ban: 2026-09-04 09:12:09,128 fail2ban.filter [1594]: INFO [plesk-modsecurity] Found 34.106.235.27 - 2026-09-04 09:12:09cloudlinux2 fail2ban: 2026-09-04 09:12:09,152 fail2ban.filter [1594]: INFO [plesk-modsecurity] Found 34.106.235.27 - 2026-09-04 09:12:09cloudlinux2 fail2ban: 2026-09-04 09:12:09,204 fail2ban.filter [1594]: INFO [plesk-modsecurity] Found 34.106.235.27 - 2026-09-04 09
show less
Brute-Force
🇺🇸
TPI-Abuse
2026-09-04 06:30:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.106.235.27 (27.235.106.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.235.27 (27.235.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 02:30:16.818619 2026] [security2:error] [pid 12725:tid 12725] [client 34.106.235.27:56264] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cloud.tidarat.com"] [uri "/backend/.git/config"] [unique_id "appleBlfvpcgpY-1vWRXjwAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-04 06:05:03
(1 day ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack