🇺🇸
TPI-Abuse
2026-08-31 01:55:45
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.128.72.83 (83.72.128.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.72.83 (83.72.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 21:55:39.038028 2026] [security2:error] [pid 3240141:tid 3240228] [client 34.128.72.83:42280] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fostexlaw.com"] [uri "/.git/config"] [unique_id "apTfG7FULgoX57KyQ4pnmwAAAEg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇿🇦
conure.sh
2026-08-31 00:26:24
(3 hours ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 2 domain(s) in 0s
Web App Attack
🇺🇸
TPI-Abuse
2026-08-30 21:53:30
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.128.72.83 (83.72.128.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.72.83 (83.72.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 17:53:25.247449 2026] [security2:error] [pid 7862:tid 7862] [client 34.128.72.83:3524] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "compupackinc.com"] [uri "/.git/config"] [unique_id "apSmVWKw0pOTrNBi50DxfQAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-30 19:16:47
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.128.72.83 (83.72.128.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.72.83 (83.72.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 15:16:39.828929 2026] [security2:error] [pid 21428:tid 21428] [client 34.128.72.83:44442] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bywaterpress.com"] [uri "/.git/config"] [unique_id "apSBl4307WqZ6inZBlTefwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇩
Burayot
2026-08-30 18:59:07
(8 hours ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.128.72.83 (ID/Indonesia/83.72.12 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.128.72.83 (ID/Indonesia/83.72.128.34.bc.googleusercontent.com): 2 in the last 3600 secs
show less
Web App Attack
🇩🇪
big-cloud.nl
2026-08-30 16:03:33
(11 hours ago)
Try to access /.git/config
Web App Attack
🇪🇸
alferez
2026-06-15 03:36:21
(2 months ago)
Searching .(env|sql|zip|tar|rar) files
Hacking
Exploited Host
Web App Attack
🇳🇱
e.fierstra
2026-06-15 00:20:45
(2 months ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 00:17:51
(2 months ago)
Multiple, malicious web requests detected
Port Scan
Hacking
🇳🇱
Savvii
2026-06-14 23:16:53
(2 months ago)
20 attempts against mh-misbehave-ban on jammytest
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
zynex
2026-06-14 23:08:25
(2 months ago)
URL Probing: /settings.php
Web App Attack
🇺🇸
TPI-Abuse
2026-06-14 20:50:00
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 34.128.72.83 (83.72.128.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.128.72.83 (83.72.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 16:49:51.490935 2026] [security2:error] [pid 27365:tid 27365] [client 34.128.72.83:40256] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||littlepeopledelivery.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "littlepeopledelivery.com"] [uri "/.config/gcloud/credentials.db"] [unique_id "ai8T74rYng4jlEREal2MzgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇦
Mediashaker
2026-06-14 17:03:53
(2 months ago)
(CT) IP 34.128.72.83 (ID/Indonesia/83.72.128.34.bc.googleusercontent.com) found to have 789 connecti ...
show more
(CT) IP 34.128.72.83 (ID/Indonesia/83.72.128.34.bc.googleusercontent.com) found to have 789 connections
show less
DDoS Attack
🇮🇹
VHosting
2026-06-14 05:30:03
(2 months ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
Anonymous
2026-06-14 03:33:39
(2 months ago)
[Sun Jun 14 05:33:37.153462 2026] [proxy_fcgi:error] [pid 3017:tid 3061] [client 34.128.72.83:34214] ...
show more
[Sun Jun 14 05:33:37.153462 2026] [proxy_fcgi:error] [pid 3017:tid 3061] [client 34.128.72.83:34214] AH01071: Got error 'Primary script unknown'
[Sun Jun 14 05:33:37.162318 2026] [proxy_fcgi:error] [pid 1922:tid 2024] [client 34.128.72.83:34224] AH01071: Got error 'Primary script unknown'
[Sun Jun 14 05:33:37.164071 2026] [proxy_fcgi:error] [pid 1924:tid 2075] [client 34.128.72.83:34198] AH01071: Got error 'Primary script unknown'
[Sun Jun 14 05:33:37.203072 2026] [proxy_fcgi:error] [pid 5701:tid 5745] [client 34.128.72.83:34184] AH01071: Got error 'Primary script unknown'
[Sun Jun 14 05:33:37.220879 2026] [proxy_fcgi:error] [pid 5701:tid 5750] [client 34.128.72.83:34302] AH01071: Got error 'Primary script unknown'
...
show less
Brute-Force
Web App Attack